GitHub organization
Agent skills by AgentSecOps
- skills
- 24
- repository
- 1
Repositories by AgentSecOps
Skills by AgentSecOps, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Static application security testing (SAST) using Semgrep for vulnerability detection, security code review, and secure coding guidance with OWASP and CWE framework mapping. | AgentSecOps/ | 219 | 2 repos | ~2.4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 2 | Hardcoded secret detection and prevention in git repositories and codebases using Gitleaks. | AgentSecOps/ | 219 | 2 repos | ~4.1k | Automated safety check: Pass | Unknown | 5 mo ago |
| 3 | Aggregates scanner results into DefectDojo, deduplicates findings, tracks remediation SLAs and prepares compliance reports across products and pipelines. | AgentSecOps/ | 219 | — | ~2.3k | Automated safety check: Pass | Unknown | 5 mo ago |
| 4 | Guides authorized packet capture and analysis with TShark, Wireshark's command-line tool, for security investigations, malware detection and forensic examination of network traffic. | AgentSecOps/ | 219 | 1 repo | ~4.8k | Automated safety check: Notes | Unknown | 5 mo ago |
| 5 | Scans container images, filesystems and SBOMs with Grype for known vulnerabilities, ranks them by CVSS, EPSS and CISA KEV, and wires scans into CI/CD thresholds. | AgentSecOps/ | 219 | 1 repo | ~2.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 6 | Lints Dockerfiles with Hadolint for security misconfigurations and best-practice violations, locally and in CI, with strict, balanced and permissive rule templates. | AgentSecOps/ | 219 | 1 repo | ~4.4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 7 | Guides authorized password-hash recovery with hashcat for security audits, forensic cases and policy testing, starting with an explicit authorization check before any cracking runs. | AgentSecOps/ | 219 | 1 repo | ~3.3k | Automated safety check: Notes | Unknown | 5 mo ago |
| 8 | Runs ffuf for DAST work: directory and file discovery, GET and POST parameter fuzzing, virtual host enumeration and filtered, recursive scans. | AgentSecOps/ | 219 | 1 repo | ~3.3k | Automated safety check: Pass | Unknown | 5 mo ago |
| 9 | Fast, template-based vulnerability scanning using ProjectDiscovery's Nuclei with extensive community templates covering CVEs, OWASP Top 10, misconfigurations, and security issues across web… | AgentSecOps/ | 219 | 1 repo | ~4.1k | Automated safety check: Notes | Unknown | 5 mo ago |
| 10 | 10.Dast Zap Dynamic application security testing (DAST) using OWASP ZAP (Zed Attack Proxy) with passive and active scanning, API testing, and OWASP Top 10 vulnerability detection. | AgentSecOps/ | 219 | 1 repo | ~3.7k | Automated safety check: Pass | Unknown | 5 mo ago |
| 11 | 11.Pytm Python-based threat modeling using pytm library for programmatic STRIDE analysis, data flow diagram generation, and automated security threat identification. | AgentSecOps/ | 219 | 2 repos | ~4.4k | Automated safety check: Notes | Unknown | 5 mo ago |
| 12 | 12.Sca Trivy Software Composition Analysis (SCA) and container vulnerability scanning using Aqua Trivy for identifying CVE vulnerabilities in dependencies, container images, IaC misconfigurations, and license… | AgentSecOps/ | 219 | 2 repos | ~3.7k | Automated safety check: Pass | Unknown | 5 mo ago |
| 13 | Generic detection rule creation and management using Sigma, the universal SIEM rule format. | AgentSecOps/ | 219 | 1 repo | ~4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 14 | SQL-powered forensic investigation and system interrogation using osquery to query operating systems as relational databases. | AgentSecOps/ | 219 | 1 repo | ~4.9k | Automated safety check: Notes | Unknown | 5 mo ago |
| 15 | 15.Iac Checkov Infrastructure as Code (IaC) security scanning using Checkov with 750+ built-in policies for Terraform, CloudFormation, Kubernetes, Dockerfile, and ARM templates. | AgentSecOps/ | 219 | 1 repo | ~4.6k | Automated safety check: Pass | Unknown | 5 mo ago |
| 16 | Endpoint visibility, digital forensics, and incident response using Velociraptor Query Language (VQL) for evidence collection and threat hunting at scale. | AgentSecOps/ | 219 | 1 repo | ~3.1k | Automated safety check: Pass | Unknown | 5 mo ago |
| 17 | 17.Policy Opa Policy-as-code enforcement and compliance validation using Open Policy Agent (OPA). | AgentSecOps/ | 219 | 1 repo | ~3.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 18 | 18.Recon Nmap Network reconnaissance and security auditing using Nmap for port scanning, service enumeration, and vulnerability detection. | AgentSecOps/ | 219 | 1 repo | ~4.6k | Automated safety check: Notes | Unknown | 5 mo ago |
| 19 | 19.Reviewdog Automated code review and security linting integration for CI/CD pipelines using reviewdog. | AgentSecOps/ | 219 | 1 repo | ~3k | Automated safety check: Pass | Unknown | 5 mo ago |
| 20 | 20.Sast Bandit Python security vulnerability detection using Bandit SAST with CWE and OWASP mapping. | AgentSecOps/ | 219 | 1 repo | ~2.6k | Automated safety check: Pass | Unknown | 5 mo ago |
| 21 | 21.Sbom Syft Software Bill of Materials (SBOM) generation using Syft for container images, filesystems, and archives. | AgentSecOps/ | 219 | 1 repo | ~3.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 22 | 22.Webapp Nikto Web server vulnerability scanner for identifying security issues, misconfigurations, and outdated software versions. | AgentSecOps/ | 219 | 1 repo | ~2.8k | Automated safety check: Pass | Unknown | 5 mo ago |
| 23 | Automated SQL injection detection and exploitation tool for web application security testing. | AgentSecOps/ | 219 | 1 repo | ~3.2k | Automated safety check: Pass | Unknown | 5 mo ago |
| 24 | 24.API Spectral API specification linting and security validation using Stoplight's Spectral with support for OpenAPI, AsyncAPI, and Arazzo specifications. | AgentSecOps/ | 219 | 1 repo | ~5.6k | Automated safety check: Pass | Unknown | 5 mo ago |
Questions, answered from the data.
What is the best skill by AgentSecOps?
Sast Semgrep from AgentSecOps/SecOpsAgentKit ranks first of the 24 skills by AgentSecOps listed here, with the highest score: its repository has 219 GitHub stars, 2 other GitHub owners carry a copy, its SKILL.md loads about 2.4k tokens and it passes the automated safety check with no findings. Next come Secrets Gitleaks and DefectDojo Vulnerability Management.
Are AgentSecOps's skills official?
None yet. All 24 skills by AgentSecOps listed here come from community repositories; a skill counts as official when the product's own GitHub organization publishes it.
How are these skills ranked?
By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.