Category

Best security skills, page 21

Skills #961–1,008 of 3,083, ranked by score.

Security skills, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Security skills, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
961

Squad de 15 agentes de seguranca ofensiva e defensiva (Georgia Weidman, Peter Kim, Jim Manico, Chris Sanders, Omar Santos, Marcus Carey) cobrindo pentest, red team, blue team, AppSec, recon e…

ohmyjahh/xquads-squads277—~895Automated safety check: PassMIT12 days ago
962

Scan package manifests and lockfiles for outdated and vulnerable dependencies.

cobusgreyling/loop-engineering11k—~531Automated safety check: PassMITtoday
963

Dynamic application security testing (DAST) using OWASP ZAP (Zed Attack Proxy) with passive and active scanning, API testing, and OWASP Top 10 vulnerability detection.

AgentSecOps/SecOpsAgentKit2201 repo~3.7kAutomated safety check: PassUnknown5 mo ago
964

Systematically reviews code for SQL injection, XSS, SSRF, broken access control, cryptographic failures, and other common OWASP Top 10 vulnerabilities, providing vulnerable code examples and…

zebbern/claude-code-guide4.7k—~4.7kAutomated safety check: PassMITyesterday
965

Cryptography expert for TLS, symmetric/asymmetric encryption, hashing, and key management

RightNow-AI/openfang18k—~959Automated safety check: PassApache-2.03 mo ago
966

Security audit expert for OWASP Top 10, CVE analysis, code review, and penetration testing methodology

RightNow-AI/openfang18k—~858Automated safety check: PassApache-2.03 mo ago
967

Record a vetted Hex package version in hexvet.exs after a security review — manages the audit ledger, not the scanner.

oliver-kriska/claude-elixir-phoenix565—~1.5kAutomated safety check: PassMIT6 days ago
968

Deep reentrancy vulnerability analysis for Solidity contracts.

alt-research2/SolidityGuard104—~1.8kAutomated safety check: PassUnknown4 mo ago
969

Universal SQL code review assistant that performs comprehensive security, maintainability, and code quality analysis across SQL databases (PostgreSQL, SQL Server, Oracle).

totvs/engpro-advpl-tlpp-skills143—~3.5kAutomated safety check: PassMIT6 days ago
970

S3 resiliency, security, and data protection review. An agent skill from aws/tools-for-devops-agent.

aws/tools-for-devops-agent103—~2.8kAutomated safety check: PassApache-2.02 days ago
971

Run competitive research like an intelligence agency: eight collection disciplines (OSINT to MASINT), signal-to-inference chains, and fusion.

deanpeters/Product-Manager-Skills7.2k—~6.6kAutomated safety check: PassUnknown1 mo ago
972

Understand a codebase before looking for bugs in it - what each function assumes, what it guarantees, and what it depends on elsewhere.

trailofbits/skills7.5k—~996Automated safety check: PassCC-BY-SA-4.0yesterday
973
973.Rust ReviewOfficial

Performs comprehensive Rust security review for safe/unsafe boundary issues, memory safety in unsafe blocks, concurrency hazards, panic-induced DoS, FFI safety, and async runtime mistakes.

trailofbits/skills7.5k—~11kAutomated safety check: NotesCC-BY-SA-4.0yesterday
974

Query token security audit to detect scams, honeypots, and malicious contracts before trading.

npc-live/clawfirm1561 repo~1.6kAutomated safety check: PassNo licence3 mo ago
975

Security rules for eserstack in TypeScript and Go: secrets, output hygiene, input validation, authorization, injection, SSRF, error sanitization, httpfx hardening, tokens, passwords, cookies…

eser/stack128—~598Automated safety check: PassUnknown7 days ago
976

Kimlik doğrulama eklerken, kullanıcı girdisi işlerken, secret'larla çalışırken, API endpoint'leri oluştururken veya ödeme/hassas özellikler uygularken bu skill'i kullanın.

affaan-m/ECC277k1 repo~3.2kAutomated safety check: NotesMITtoday
977

Audit GitHub pull requests before merge, including contributor-claim verification, prompt-injection resistance, malicious-code and supply-chain review, regressions, tests, documentation…

akitaonrails/my-skills216—~4.8kAutomated safety check: PassNo licence18 days ago
978

Secure LLM-powered applications with input validation, output controls, tenant isolation, and abuse prevention.

sickn33/agentic-awesome-skills47k2 repos~3.4kAutomated safety check: PassMITyesterday
979

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source event data (including Plaso output) for attack chain reconstruction and investigation…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.4kAutomated safety check: NotesApache-2.01 mo ago
980

Tool to get the caller of a function in the codebase. An agent skill from opensage-agent/opensage-adk.

opensage-agent/opensage-adk127—~208Automated safety check: PassApache-2.02 mo ago
981

Analyze user callbacks for re-entrancy defects (deadlock, corruption)

ben-manes/caffeine18k—~643Automated safety check: PassApache-2.0today
982

Helps you triage a quarterly user access review from an Okta, Azure AD, AWS IAM, GitHub, or generic CSV/JSON export.

GRCEngClub/claude-grc-engineering419—~2.4kAutomated safety check: NotesUnknown7 days ago
983

Web content discovery and technology fingerprinting using gobuster, ffuf, feroxbuster, katana, httpx, and wafw00f

CommonHuman-Lab/nyxstrike157—~907Automated safety check: PassUnknown2 days ago
984

For any security-related task — threat triage, incident response, MITRE ATT&CK mapping, CVE lookup, exploit analysis, defensive control validation, red/blue/purple team work — always consult the…

lyonzin/knowledge-rag292—~2.3kAutomated safety check: PassMIT2 days ago
985

Generates edge case, failure mode, and spec-driven test cases.

ash1794/vibe-engineering163—~1.4kAutomated safety check: PassMIT4 days ago
986

A skill your agent uses when performing deep analysis of specific findings or high-risk areas during a security audit.

ccashwell/evm-cortex131—~1.6kAutomated safety check: PassMIT11 days ago
987

Collects live operating-system inventory (OBOM) and host hardware inventory (HBOM) as CycloneDX documents using the cdxgen obom and hbom commands, including osquery-backed runtime artifacts, Linux…

cdxgen/cdxgen1.1k—~1.5kAutomated safety check: PassApache-2.0today
988

[omh] Attack paths into an operated system: turn a system's components and data flows into assets, trust boundaries, attack scenarios, controls, and the security test that proves each control holds.

rlaope/oh-my-hermes3.2k—~2.6kAutomated safety check: PassMITyesterday
989

Constructs distributor accounts, inventory binds, commission or markup, and browse-and-quote, including the ready-to-sell scene.

openqa-cn/codexqa152—~477Automated safety check: PassApache-2.08 days ago
990

Security review: (1) vet an untrusted SKILL.md or .mcp.json BEFORE installing it — the injection/exfiltration scanner; CRITICAL blocks the install; (2) audit code on an untrusted-input path (a…

redhat-et/ripwire2.4k—~2.8kAutomated safety check: WarnApache-2.0yesterday
991

Triage a single security finding — from a scanner, audit, advisory, or report — to a defensible disposition with a mitigation plan, false-positive justification, or accepted-risk writeup.

briiirussell/cybersecurity-skills413—~3.1kAutomated safety check: NotesMIT4 mo ago
992

PHP Web 源码任意文件写入审计工具。识别用户可控数据进入写入 Sink 的链路,追踪任意落点写入/路径穿越到 write,并评估写入后的可执行性(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~1.2kAutomated safety check: PassNo licence6 mo ago
993

Transform AI agents from task-followers into proactive partners.

LeoYeAI/openclaw-master-skills2.2k—~4.4kAutomated safety check: PassMIT2 mo ago
994

Meta's 86M prompt injection and jailbreak detector. An agent skill from Orchestra-Research/AI-Research-SKILLs.

Orchestra-Research/AI-Research-SKILLs13k1 repo~2.4kAutomated safety check: WarnMIT3 mo ago
995

A skill your agent uses when invalid data causes failures deep in execution - validates at every layer data passes through to make bugs structurally impossible rather than temporarily fixed

ed3dai/ed3d-plugins250—~1.2kAutomated safety check: PassNo licence1 mo ago
996

Audits an external (third-party) Claude Code plugin pinned in this marketplace for security risk before it is vendored, and writes the report to a file for downstream posting.

bitwarden/ai-plugins155—~1.8kAutomated safety check: PassUnknown2 days ago
997

Answer general or cross-domain questions with a non-pleasing rational mode: adversarial red-team and blue-team expert analysis, mutually exclusive conclusions, up to five debate rounds, saved…

digoal/blog8.6k—~2.2kAutomated safety check: PassGPL-2.02 days ago
998

Hunt for a specific APT/threat actor in your environment. An agent skill from dandye/ai-runbooks.

dandye/ai-runbooks127—~1.1kAutomated safety check: PassApache-2.01 mo ago
999

Perform a comprehensive security audit of all project files in the current working directory.

LaravelDaily/AI-Workflows-For-Laravel136—~1.9kAutomated safety check: NotesNo licence5 mo ago
1000
1000.Variant AnalysisOfficial

Hunts for the other instances of a bug already found — the variants of one root cause across a codebase.

trailofbits/skills7.5k—~967Automated safety check: PassCC-BY-SA-4.0yesterday
1001

Review Express.js security audit patterns for middleware and routes.

IgorWarzocha/Opencode-Workflows122—~1.8kAutomated safety check: PassNo licence8 mo ago
1002

Security-focused code review mapped to OWASP Top 10 and ASVS.

OWASP/secure-agent-playbook188—~549Automated safety check: PassCC-BY-4.016 days ago
1003

Analyze a codebase and produce a structured threat model at .turbo/threat-model.md covering assets, trust boundaries, attack surfaces with existing mitigations, attacker stories, and calibrated…

tobihagemann/turbo408—~2.5kAutomated safety check: PassMIT2 days ago
1004

Autonomously deep-scan entire codebase line-by-line, understand architecture and patterns, then systematically transform it to production-grade, corporate-level professional quality with optimizations

davila7/claude-code-templates33k7 repos~3.9kAutomated safety check: WarnMITtoday
1005

Container and Kubernetes security assessment — image vulnerability scanning, SBOM diff analysis, K8s cluster auditing, RBAC privilege mapping, NetworkPolicy review, container escape testing, and…

hardw00t/ai-security-arsenal105—~2.8kAutomated safety check: PassNo licence5 mo ago
1006

Check any AI agent codebase against the OWASP Agentic Security Initiative (ASI) Top 10 risks.

github/awesome-copilot40k1 repo~3kAutomated safety check: PassMIT2 days ago
1007
1007.Agent Supply ChainOfficial

Verify supply chain integrity for AI agent plugins, tools, and dependencies.

github/awesome-copilot40k1 repo~2.7kAutomated safety check: PassMIT2 days ago
1008

Quality standards for Salesforce Lightning Web Components (LWC), Aura components, and Visualforce pages.

github/awesome-copilot40k1 repo~2.4kAutomated safety check: PassMIT2 days ago