Category
Best security skills, page 11
Security skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 481 | CodeIgniter 框架特效安全审计工具。针对 CodeIgniter 的 CSRF、XSS 输出过滤、数据库查询构造、路由与验证器配置、会话 Cookie 安全等机制进行白盒静态审计,并映射到通用漏洞类型体系(CSRF/AUTH/XSS/SQL/CFG/SESS 等)。 | 0xShe/ | 402 | 1 repo | ~477 | Automated safety check: Pass | No licence | 6 mo ago |
| 482 | Spawning and hardening scan containers from the recon orchestrator: the security flags that look correct and break the container, and the sibling bind-mount path handling. | samugit83/ | 3k | — | ~1.7k | Automated safety check: Pass | MIT | yesterday |
| 483 | Update Mira topic articles from cases and patterns. An agent skill from vw2x/Mira. | vw2x/ | 105 | — | ~637 | Automated safety check: Pass | GPL-3.0 | 5 days ago |
| 484 | The telemetry each Active Directory technique generates and what alerts a defender: Kerberoasting produces Event 4769 with RC4 encryption (0x17) and an MDI alert, DCSync produces Event 4662 with the… | ADScanPro/ | 211 | — | ~2.4k | Automated safety check: Pass | MIT | 1 mo ago |
| 485 | 485.Security Audit Audit SkiaSharp's native dependencies for security vulnerabilities and CVEs, including Component Governance (CG) alerts from the combined skiasharp-package Azure DevOps pipeline. | mono/ | 5.6k | — | ~5.7k | Automated safety check: Pass | MIT | yesterday |
| 486 | 486.Ssti Server-Side Template Injection — fingerprint the engine first (Jinja2 / Twig / Velocity / Freemarker / ERB / Smarty / Mako / Handlebars / Pug), then escalate the engine-specific primitive to RCE or… | PentesterFlow/ | 1.4k | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 487 | Troubleshoot and repair Alibaba Cloud ECS Windows instances from inside the GuestOS or remotely via Cloud Assistant. | aliyun/ | 148 | — | ~6.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 488 | 488.Auth Bypass Test for authentication and authorization flaws including credential attacks, session issues, and access control bypasses | NeoTheCapt/ | 142 | — | ~1.3k | Automated safety check: Pass | No licence | 2 mo ago |
| 489 | 489.Correlate Ioc Check for existing SIEM alerts and case management entries related to IOCs. | dandye/ | 127 | — | ~624 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 490 | Advanced vulnerability analysis principles. An agent skill from xenitV1/Antigravity-Workflows. | xenitV1/ | 130 | 7 repos | ~1.8k | Automated safety check: Notes | MIT | 8 mo ago |
| 491 | A declarative routing engine that turns ticket / error attributes (reporter, label, project, area path, error class, environment) into a tag + AI agent + priority assignment, so cross-source… | aozyildirim/ | 102 | — | ~976 | Automated safety check: Pass | MIT | yesterday |
| 492 | SAP dependency security and MCP executable trust policy with secure upgrades, cooldowns, staged rollout, and supply-chain protection. | secondsky/ | 462 | — | ~5.9k | Automated safety check: Warn | GPL-3.0 | 4 days ago |
| 493 | Converts CycloneDX BOMs to SPDX 3.0.1 JSON-LD or between CycloneDX spec versions with cdx-convert, and validates BOMs against JSON schema, deep consistency checks, and OWASP SCVS and EU Cyber… | cdxgen/ | 1.1k | — | ~1.5k | Automated safety check: Warn | Apache-2.0 | yesterday |
| 494 | 494.Crack 7z Hash This skill provides guidance for cracking 7z archive password hashes. | lazyFrogLOL/ | 128 | — | ~1.3k | Automated safety check: Pass | No licence | 4 mo ago |
| 495 | Senior ISMS Audit Expert for internal and external information security management system auditing. | davila7/ | 32k | 1 repo | ~3.1k | Automated safety check: Pass | MIT | yesterday |
| 496 | A skill your agent uses when stitching kernels into a multi-launch ELF and the AIE compiler rejects the merged module (BD exhaustion, channel routing, herd shape conflict, IR validation error, DMA… | Xilinx/ | 150 | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 497 | Handle confidential GitHub Security Advisory response for Paperclip. | paperclipai/ | 99k | — | ~2k | Automated safety check: Pass | MIT | yesterday |
| 498 | 498.Healthcheck Host security hardening and risk-tolerance configuration for OpenClaw deployments. | trpc-group/ | 1.9k | 9 repos | ~2.6k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 499 | Applies the AI SAFE2 v3.1 governance framework to designing, building, auditing and testing AI agents, RAG pipelines, MCP and tool integrations and AI infrastructure. | CyberStrategyInstitute/ | 146 | — | ~2.7k | Automated safety check: Pass | Unknown | yesterday |
| 500 | A skill your agent uses when conducting security audits, reviewing code for vulnerabilities, or analyzing infrastructure security. | AratKruglik/ | 155 | 1 repo | ~1.1k | Automated safety check: Notes | No licence | 5 mo ago |
| 501 | 501.Ctf Crypto Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills. | ljagiello/ | 3.4k | — | ~11k | Automated safety check: Notes | MIT | 26 days ago |
| 502 | 502.Audit Security audit and code review for Solidity smart contracts. | sablier-labs/ | 353 | — | ~1.8k | Automated safety check: Pass | Unknown | 2 days ago |
| 503 | 503.Audit Prep Prepare Solidity projects for a security audit — test coverage, test quality, NatSpec docs, code hygiene, dependency health, best-practice enforcement, deployment readiness, and project… | PlamenTSV/ | 303 | — | ~3.7k | Automated safety check: Pass | MIT | 13 days ago |
| 504 | 504.Kesekit Guide Ko AI 도구(Claude, ChatGPT, Cursor, Copilot)용 시큐어 코딩 프롬프트와 가이드를 생성합니다. | cdppcorp/ | 361 | — | ~1.3k | Automated safety check: Pass | MIT | 6 mo ago |
| 505 | Detects input validation failures and arithmetic vulnerabilities in smart contracts. | quillai-network/ | 130 | — | ~3.1k | Automated safety check: Pass | MIT | 6 mo ago |
| 506 | 506.Blue Team A skill your agent uses when the user has concrete failing cases in code or a guardrail/classifier/filter/prompt/API they own — a red-team failure catalogue OR a CI/CD test-failure report (failing… | gaasher/ | 174 | — | ~3.6k | Automated safety check: Pass | MIT | 3 mo ago |
| 507 | 507.Iom Opsec IoM Operational Security (OPSEC) advisor. An agent skill from chainreactors/malice-network. | chainreactors/ | 500 | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 508 | 508.Onvifscan ONVIF device security scanner for testing authentication and brute-forcing credentials. | BrownFineSecurity/ | 859 | 1 repo | ~608 | Automated safety check: Pass | MIT | 4 mo ago |
| 509 | 509.Bandit Run bandit against the Python source in the repository and map its hits into the findings shape. | alpha-omega-security/ | 239 | — | ~615 | Automated safety check: Notes | MIT | yesterday |
| 510 | 510.Zhin Audit Audit Zhin.js changes for security, performance, lifecycle, and architecture regressions. | zhinjs/ | 136 | — | ~596 | Automated safety check: Notes | MIT | yesterday |
| 511 | 511.Keel A skill your agent uses for ANY new software project from idea to release — websites, WordPress/WooCommerce plugins, MCP servers, web apps, components, or libraries. | joseconti/ | 190 | — | ~11k | Automated safety check: Warn | GPL-3.0-or-later | 2 mo ago |
| 512 | 512.Ads Competitors Competitive Ad Intelligence. An agent skill from zubair-trabzada/ai-ads-claude. | zubair-trabzada/ | 267 | — | ~4.9k | Automated safety check: Pass | MIT | 6 mo ago |
| 513 | Apply STRIDE methodology to systematically identify threats. | sangrokjung/ | 852 | 9 repos | ~5.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 514 | 514.Add A Rule Add security coverage to Guardana the way this repository requires — as a rule, evaluator or target, never by patching the engine — with the fixtures, the framework mapping and the documentation… | guardana/ | 130 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 515 | Master network protocol reverse engineering including packet analysis, protocol dissection, and custom protocol documentation. | wshobson/ | 40k | 8 repos | ~3.2k | Automated safety check: Pass | MIT | 5 days ago |
| 516 | 516.Sast Idor Detect Insecure Direct Object Reference (IDOR) vulnerabilities in a codebase using a three-phase approach: recon (find candidates), batched verify (check authorization in parallel subagents, 3… | utkusen/ | 1.3k | — | ~4.9k | Automated safety check: Pass | MIT | 6 mo ago |
| 517 | Expert workflow for reviewing Tauri 2 desktop app security. An agent skill from mukiwu/tempo-term. | mukiwu/ | 228 | — | ~2.8k | Automated safety check: Notes | Apache-2.0 | 9 days ago |
| 518 | Remediate security vulnerabilities found by Grype or pnpm audit. | stacklok/ | 170 | — | ~2.3k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 519 | Ingest the official MITRE CWE database and generate per-domain security audit taxonomies for PromptKit. | microsoft/ | 111 | — | ~356 | Automated safety check: Pass | MIT | 21 days ago |
| 520 | Scans container images, filesystems and SBOMs with Grype for known vulnerabilities, ranks them by CVSS, EPSS and CISA KEV, and wires scans into CI/CD thresholds. | AgentSecOps/ | 220 | 1 repo | ~2.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 521 | Find bugs, security vulnerabilities, and code quality issues in local branch changes. | getsentry/ | 1k | 9 repos | ~708 | Automated safety check: Pass | Apache-2.0 | 7 days ago |
| 522 | Runs a parallel security audit with three vulnerability hunters and two proof-of-concept engineers, rating each finding by whether it is actually exploitable. | code-yeongyu/ | 70k | — | ~1.9k | Automated safety check: Pass | Unknown | yesterday |
| 523 | 523.Security Review Review code for security vulnerabilities. An agent skill from kklimuk/docx-cli. | kklimuk/ | 216 | — | ~1.7k | Automated safety check: Pass | MIT | yesterday |
| 524 | Screens a vulnerability finding with a seven-question gate and pre-submission checks before any report is written, so weak or out-of-scope findings are dropped early. | awarexone/ | 5.3k | 3 repos | ~3.4k | Automated safety check: Pass | MIT | yesterday |
| 525 | 525.Protocol Reverse A skill your agent uses for authorized reverse engineering of custom binary protocols, Protobuf/gRPC, WebSocket frames, and PCAP-driven protocol recovery. | zhaoxuya520/ | 40k | 2 repos | ~620 | Automated safety check: Warn | MIT | 18 days ago |
| 526 | Raise Go modules to caller-supplied minimum fixed versions from CVE/GO findings in any format, per tracked module root, sync go.mod/go.sum and root vendor/, audit the source module graphs, run the… | kubernetes-sigs/ | 294 | — | ~2.5k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 527 | 527.Rev Dex Dumper Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug; invisible to Frida checks), twin tools cross-check each other. | index-login/ | 144 | — | ~1.9k | Automated safety check: Pass | MIT | 10 days ago |
| 528 | 528.Watch PR Watch a pushed PR's checks with the Monitor tool, and act on the verdict. | parawanderer/ | 420 | — | ~1.9k | Automated safety check: Pass | MIT | 20 days ago |
Explore related skills
Topics in Security
- Security review637
- Web application vulnerabilities468
- Vulnerability scanning305
- Static analysis and SAST284
- Security operations246
- Supply chain security232
- Threat modeling227
- Penetration testing181
- Cryptography160
- Prompt injection and agent security154
- Red teaming and adversary simulation149
- Reverse engineering and malware129
- OSINT120
- Secure coding113
- Cloud security96
- Digital forensics88
- Smart contract auditing79
- Fuzzing76
- Bug bounty75
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails38
Products these skills work with
Roles that use these skills
Other categories
- Development15,199
- Frontend & Design5,829
- Backend & APIs7,083
- Testing & QA5,062
- DevOps & Cloud5,955
- Databases2,353
- Data & Analytics3,632
- AI & LLM Engineering5,048
- Agent Workflows8,296
- Documents & Office4,290
- Writing & Content3,764
- Marketing & SEO3,901
- Sales & Support1,837
- Research & Science6,076
- Productivity & Automation4,035
- Business, Finance & HR3,880
- Legal & Compliance1,634
- Education1,086
- Media & Creative4,311
- Mobile2,737
- Product & Project Management2,339
- Knowledge Management1,438
- Game Development1,678