Category

Best security skills, page 13

Skills #577–624 of 3,085, ranked by score.

Security skills, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Security skills, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
577

Run a security vulnerability assessment based on KISA guidelines.

cdppcorp/KESE-KIT360—~2.3kAutomated safety check: PassMIT6 mo ago
578

Generate a complete Semgrep rule bundle (rule.yml + tests.md + README.md) from a CVE description and a bad-code example.

skrun-dev/skrun210—~1.3kAutomated safety check: PassMIT18 days ago
579

Git workflow, CI/GitHub Actions, and supply-chain pinning rules for Mistral Vibe.

mistralai/mistral-vibe5.1k—~1kAutomated safety check: PassApache-2.0yesterday
580

Detects price oracle manipulation and flash loan attack vectors in DeFi smart contracts.

quillai-network/quillshield_skills130—~2.8kAutomated safety check: PassMIT6 mo ago
581

Deep security review of a Convex app: authorization model, data access paths per table, HTTP action exposure, rate limiting, file storage access, scheduled function trust, and a written findings…

waynesutton/builder-skills406—~2.6kAutomated safety check: PassApache-2.012 days ago
582

Audit the repository against the OpenSSF Baseline with darnit, resolve the controls darnit defers to LLM analysis or could not verify, and record per-control verdicts plus the attained Baseline level.

alpha-omega-security/scrutineer242—~1.4kAutomated safety check: NotesMITtoday
583

A skill your agent uses for authorized source-code security review and SAST workflows including Semgrep, CodeQL patterns, dangerous API hunting, and fix verification.

zhaoxuya520/reverse-skill41k2 repos~374Automated safety check: WarnMIT18 days ago
584

A skill your agent uses for authorized digital forensics including memory dumps, disk timelines, PCAP investigation, artifact triage, and IR evidence preservation.

zhaoxuya520/reverse-skill41k2 repos~389Automated safety check: WarnMIT18 days ago
585

A skill your agent uses for authorized email security review including phishing analysis, header authentication (SPF/DKIM/DMARC), BEC patterns, and mailbox token abuse research.

zhaoxuya520/reverse-skill41k2 repos~259Automated safety check: WarnMIT18 days ago
586

A skill your agent uses for authorized hardware and embedded interface security research including UART/JTAG discovery, debug pad triage, secure boot overview, and offline firmware extraction support.

zhaoxuya520/reverse-skill41k2 repos~266Automated safety check: WarnMIT18 days ago
587

A skill your agent uses for authorized RF/SDR security research including signal identification, replay feasibility study in shielded labs, and wireless protocol analysis outside classic Wi-Fi.

zhaoxuya520/reverse-skill41k2 repos~232Automated safety check: WarnMIT18 days ago
588

A skill your agent uses for blue-team threat hunting, detection engineering with Sigma/YARA, SIEM query design, and incident detection validation.

zhaoxuya520/reverse-skill41k2 repos~344Automated safety check: WarnMIT18 days ago
589

A skill your agent uses for authorized wireless security assessment including Wi-Fi capture, WPA handshake analysis, rogue AP detection research, and lab-only deauth testing.

zhaoxuya520/reverse-skill41k2 repos~255Automated safety check: WarnMIT18 days ago
590

Uses Meta's LlamaGuard moderation model to screen prompts and model replies against six safety categories, with vLLM, FastAPI and NeMo Guardrails setups.

Orchestra-Research/AI-Research-SKILLs13k2 repos~2.3kAutomated safety check: PassMIT3 mo ago
591

This skill should be used when the user asks to "verify code", "run verification", "check quality", "validate changes", or before creating a PR.

Galaxy-Dawn/claude-scholar5.7k1 repo~888Automated safety check: PassMIT17 days ago
592

Guidance for designing secure APIs on Azure - authentication, authorization, gateway controls, input validation, rate limiting, secret management, and runtime threat detection - aligned to OWASP API…

vinayaklatthe/microsoft-security-skills175—~2.2kAutomated safety check: PassMIT3 mo ago
593

Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool.

getknit/knit133—~1.2kAutomated safety check: PassGPL-3.0yesterday
594
594.Auto

Autonomous, non-interactive run of the whole lifecycle for one development task — size, plan, build, gate, review, fix, commit — without stopping for questions.

guardana/guardana131—~945Automated safety check: PassApache-2.0today
595

Consolidate all SAST vulnerability results from the sast/ folder into a single final report ranked by severity and confidentiality impact.

utkusen/sast-skills1.3k—~1.7kAutomated safety check: PassMIT6 mo ago
596

Build, test, or update the iccDEV ClusterFuzzLite libFuzzer integration across ASan, UBSan, and MSan.

InternationalColorConsortium/iccDEV183—~1.5kAutomated safety check: PassBSD-3-Clauseyesterday
597

Builds and debugs Arcium encrypted computation apps on Solana: Arcis circuits, Anchor orchestration, encrypted inputs and the init, queue and callback flow.

sendaifun/skills130—~2.8kAutomated safety check: PassMIT2 mo ago
598

Runs untrusted analysis targets inside Docker or Podman containers with memory, CPU and process limits, covering image builds, lifecycle, command execution and cleanup.

prime-radiant-inc/greenfield292—~2.1kAutomated safety check: PassApache-2.02 mo ago
599

Lints Dockerfiles with Hadolint for security misconfigurations and best-practice violations, locally and in CI, with strict, balanced and permissive rule templates.

AgentSecOps/SecOpsAgentKit2201 repo~4.4kAutomated safety check: PassUnknown5 mo ago
600

Static Application Security Testing (SAST) tool setup, configuration, and custom rule creation for comprehensive security scanning across multiple programming languages.

davila7/claude-code-templates33k11 repos~1.6kAutomated safety check: PassMITtoday
601

One-click deployment Skill for Windows security policies, daily security audits, behavior auditing, file baselines, logging and nightly audit task management

SafeAI-Lab-X/ClawKeeper1k—~2.1kAutomated safety check: PassNo licence1 mo ago
602

Guides writing bug bounty reports for HackerOne, Bugcrowd, Intigriti and Immunefi: impact-first titles, proven claims, CVSS 3.1 scoring and a pre-submit checklist.

awarexone/Agentic-Bug-Hunter5.3k2 repos~3.9kAutomated safety check: PassMITyesterday
603

Report/investigate RUNTIME ACTIVITY of AI agents (Agent 365 / Copilot Studio / M365 Copilot / Work IQ) — agents used, tools/connectors, channels, tokens, prompt/reply content, and Prompt Shield…

SCStelz/security-investigator249—~17kAutomated safety check: PassMIT2 days ago
604

Analyse Mitre ATT&CK tactics, techniques and sub-techniques.

tsale/awesome-dfir-skills323—~1.4kAutomated safety check: PassApache-2.04 mo ago
605

Performs a comprehensive Amazon ECS operations review across the 6 review pillars (Resiliency & HA, Observability, Security, Operations, Performance, Additional Analysis) using read-only AWS APIs…

aws/tools-for-devops-agent103—~4.8kAutomated safety check: PassApache-2.0yesterday
606

Command reference for omniroute's audit, logs, policy and telemetry commands: search and export audit trails, manage access policies and review request history for compliance work.

diegosouzapw/OmniRoute75k—~733Automated safety check: PassMITtoday
607

Documents the OmniRoute REST endpoints for creating, listing, updating, regenerating and deleting API keys, with per-key scopes, spending limits, expiry and device lists.

diegosouzapw/OmniRoute75k—~1.4kAutomated safety check: PassMITtoday
608

Documents how OmniRoute authenticates requests: Bearer credentials for the API, management-password login with session cookies, CSRF tokens and optional OIDC for the dashboard.

diegosouzapw/OmniRoute75k—~1.9kAutomated safety check: PassMITtoday
609

Find new skills on GitHub or check a specific skill before installing.

khendzel/skills-janitor122—~1.6kAutomated safety check: PassMIT10 days ago
610

Add, run or schedule a fuzz target in this repository. An agent skill from s3s-project/s3s.

s3s-project/s3s311—~838Automated safety check: PassApache-2.02 days ago
611

Reconstructs folder browsing history from Windows Shellbag registry data using SBECmd and Shellbags Explorer, even for folders that were later deleted.

mukul975/Anthropic-Cybersecurity-Skills34k—~2.3kAutomated safety check: PassApache-2.01 mo ago
612

Design and interpret advanced content discovery with ffuf and complementary web fuzzers.

cyberful/cyberful135—~1.5kAutomated safety check: PassAGPL-3.01 mo ago
613

DTC 运营与供应链——仓储物流、库存、3PL、发货时效、供应商、关税成本。触发词: 运营, operations, 供应链, 仓储, 物流, 库存, 3PL, 履约, 供应商, supply chain, fulfillment, inventory management, shipping times。复杂问题先经 afa。

afadtc/afa-dtc-skills168—~2.4kAutomated safety check: PassUnknown2 days ago
614

Review Langfuse changes for SSRF, tenant isolation, secret handling, unsafe redirects or uploads, RBAC drift, and client telemetry privacy.

langfuse/langfuse36k—~1.4kAutomated safety check: PassUnknowntoday
615

Create batched Dependabot-style pull requests for GitHub security findings in axelixlabs/axelix, grouped by dependency surface such as master/front-end, master/build.gradle.kts, or starter Gradle…

axelixlabs/axelix148—~4.2kAutomated safety check: PassLGPL-3.0today
616

Reviews staged changes, a branch, a PR or a path for bugs, security gaps and performance issues, then writes an evidence-based report and creates Beads tasks.

maslennikov-ig/claude-code-orchestrator-kit260—~2kAutomated safety check: PassUnknown7 mo ago
617

Network reconnaissance workflow using nmap, masscan, and rustscan via NyxStrike tools

CommonHuman-Lab/nyxstrike157—~639Automated safety check: PassUnknownyesterday
618

Database migration creation with mandatory RLS policies and ARCHitect approval workflow. Use when creating migrations, adding tables with RLS…

bybren-llc/safe-agentic-workflow423—~1.3kAutomated safety check: PassMIT2 mo ago
619

Build metric-driven Chimera/create-chimera-app stateful invariant testing campaigns for Solidity projects.

aviggiano/security144—~2.8kAutomated safety check: PassMIT25 days ago
620

Run a model-diverse subagent council to investigate the same problem from multiple perspectives, compare findings, and produce a final recommendation.

warpdotdev/common-skills6101 repo~1.8kAutomated safety check: PassMITyesterday
621

Scan systems and dependencies for CVEs and security vulnerabilities.

BagelHole/DevOps-Security-Agent-Skills1.2k—~2.4kAutomated safety check: PassMIT4 mo ago
622
622.Deno Sandbox SDKOfficial

Runs untrusted or AI-generated code in isolated Deno Sandbox microVMs using the @deno/sandbox SDK, with lifecycle, process and streaming guidance.

denoland/skills100—~2.7kAutomated safety check: PassMIT2 mo ago
623

Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations.

affaan-m/ECC276k5 repos~4kAutomated safety check: NotesMITyesterday
624

Generates CycloneDX BOMs for container images, OCI archives, mounted root filesystems, Electron ASAR archives, caxa executables, binaries, and Kubernetes or Dockerfile manifests using OWASP cdxgen…

cdxgen/cdxgen1.1k—~1.5kAutomated safety check: PassApache-2.0yesterday