Category
Best security skills, page 55
Security skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 2593 | Coordinate an authorized software-supply-chain audit from dependency resolution through build, artifact, release, deployment, and runtime trust. | cyberful/ | 135 | — | ~737 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2594 | 2594.Cyberful Operate Cyberful as an authorized application-security control room. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0-only | 1 mo ago |
| 2595 | Operate Ghidra headless analysis, radare2, platform binary utilities, decompilers, and targeted dynamic evidence for advanced native and bytecode security review. | cyberful/ | 135 | — | ~1.2k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2596 | Operate Prowler, Cloudsplaining, cloud CLIs, policy documents, and resource evidence for advanced AWS, Azure, GCP, and Kubernetes-adjacent posture assessment. | cyberful/ | 135 | — | ~907 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2597 | Operate Cyberful's pinned Foundry toolchain and engagement-owned Anvil lab for authorized EVM smart-contract bug bounty work. | cyberful/ | 135 | — | ~851 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2598 | Operate kubectl, kube-bench, Trivy, Prowler, and manifest/runtime evidence for advanced Kubernetes security assessment. | cyberful/ | 135 | — | ~898 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2599 | Operate AFL++, libFuzzer with Clang sanitizers, and Jazzer for advanced coverage-guided native and JVM fuzzing. | cyberful/ | 135 | — | ~1.3k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2600 | 2600.Operate Sqlmap Use sqlmap to confirm and characterize suspected SQL injection with faithful requests and bounded evidence. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2601 | 2601.Test Business Logic Coordinate testing of product invariants and multi-step workflows across money, entitlements, approvals, quotas, inventory, onboarding, and distributed state. | cyberful/ | 135 | — | ~714 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2602 | Assess sensitive-data lifecycle, secret handling, cryptographic design and implementation, key management, password storage, randomness, signing, encryption, transport protection, and side channels… | cyberful/ | 135 | — | ~924 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2603 | Assess server-side URL retrieval and network egress during authorized penetration tests or code audits. | cyberful/ | 135 | — | ~867 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2604 | Test and audit authenticated session state across cookies, opaque tokens, bearer tokens, refresh tokens, devices, browsers, APIs, and privilege transitions. | cyberful/ | 135 | — | ~915 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2605 | Reconstruct request and event causality across gateways, services, queues, workers, data stores, and external providers while preserving identity, tenant, authorization, retry, and side-effect… | cyberful/ | 135 | — | ~617 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2606 | Trace and test untrusted data through SQL, NoSQL, LDAP, XPath, XML, shell, process, template, expression-language, code-evaluation, log, spreadsheet, mail, header, and browser interpreters. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2607 | 2607.Security Patterns Security pattern matching for code audit and content inspection: grep strings for source auditing, malicious-string signatures, PHP magic hashes, error-message patterns. | Ch1nfo/ | 114 | — | ~425 | Automated safety check: Pass | MIT | 19 days ago |
| 2608 | 2608.Security Webshells Webshell samples for detection and analysis webshell 样本: PHP, ASP, ASPX, JSP, Python, Perl shells. | Ch1nfo/ | 114 | — | ~306 | Automated safety check: Pass | MIT | 19 days ago |
| 2609 | Reconnaissance and methodology playbook. An agent skill from langbyyi/CyberStrikeAI-SRC. | langbyyi/ | 129 | 1 repo | ~3.1k | Automated safety check: Warn | Apache-2.0 | 3 days ago |
| 2610 | 2610.Repo Overview Run brief --json to produce a structured overview of the repository. | alpha-omega-security/ | 242 | — | ~435 | Automated safety check: Pass | MIT | yesterday |
| 2611 | 2611.Threat Model Derive a project's security contract from its source and docs, then emit it as structured data other skills can cite. | alpha-omega-security/ | 242 | — | ~6.8k | Automated safety check: Pass | MIT | yesterday |
| 2612 | 2612.Verify Re-run a finding's reproduction against current HEAD, test its attack tree, grade five fixed evidence criteria, and account for every matched design control. | alpha-omega-security/ | 242 | — | ~5.7k | Automated safety check: Pass | MIT | yesterday |
| 2613 | Focused security audit of code, calibrated to surface real exploitable bugs and suppress theoretical findings. | PostHog/ | 40k | — | ~8.1k | Automated safety check: Warn | Unknown | today |
| 2614 | 2614.Openart Guide an OpenART agent or contributor through planning, running, extending, and debugging the framework. | AI45Lab/ | 235 | — | ~918 | Automated safety check: Notes | AGPL-3.0 | 7 days ago |
| 2615 | 2615.Agent Bom Open security platform for agentic infrastructure — broad scanning plus MCP discovery, CVEs, blast radius, SBOMs, CIS benchmarks (AWS, Azure, GCP, Snowflake), OWASP/NIST/MITRE compliance, AISVS… | LeoYeAI/ | 2.2k | — | ~4.4k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2616 | 2616.Agent Bom Analyze Analyze blast radius, attack paths, and threat landscape across your AI infrastructure. | LeoYeAI/ | 2.2k | — | ~1k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2617 | 2617.Agent Bom Compliance AI compliance and policy engine — evaluate scan results against OWASP, NIST, SOC 2, ISO 27001, CMMC, EU AI Act, AISVS v1.0, and related frameworks. | LeoYeAI/ | 2.2k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2618 | 2618.Agent Bom Registry MCP server security registry and trust assessment — look up servers in the 427+ server security metadata registry, run pre-install marketplace checks, batch fleet risk scoring, assess skill file… | LeoYeAI/ | 2.2k | — | ~969 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2619 | 2619.Agent Bom Scan Open security platform for agentic infrastructure — checks packages for CVEs (OSV, NVD, EPSS, KEV), scans container images, verifies provenance, scans filesystems, and generates SBOMs. | LeoYeAI/ | 2.2k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2620 | 2620.Bagman Secure key management for AI agents. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~2.9k | Automated safety check: Notes | MIT | 2 mo ago |
| 2621 | 2621.Clawsec Scanner Automated vulnerability scanner for agent platforms. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~4.1k | Automated safety check: Pass | MIT | 2 mo ago |
| 2622 | 2622.Console Agent Build AI agents with console.agent() - the jQuery of AI Agents. | LeoYeAI/ | 2.2k | — | ~4.1k | Automated safety check: Pass | MIT | 2 mo ago |
| 2623 | 2623.Mandate A skill your agent uses when enforcing spend limits on AI agent wallets, validating transactions before signing, configuring allowlists or approval workflows, detecting prompt injection in agent… | LeoYeAI/ | 2.2k | — | ~5k | Automated safety check: Notes | MIT | 2 mo ago |
| 2624 | 2624.Phy Regex Audit Static ReDoS (Regular Expression Denial of Service) vulnerability scanner and regex quality auditor for codebases. | LeoYeAI/ | 2.2k | — | ~5.1k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2625 | 2625.Security Auditor A skill your agent uses when reviewing code for security vulnerabilities, implementing authentication flows, auditing OWASP Top 10, configuring CORS/CSP headers, handling secrets, input validation… | LeoYeAI/ | 2.2k | — | ~2.8k | Automated safety check: Notes | MIT | 2 mo ago |
| 2626 | Analyze packet captures and network telemetry for intrusion evidence — capture and handling, the Wireshark/tshark triage funnel, Zeek log mining, Suricata rule runs, beacon and DNS-tunnel detection… | trilwu/ | 157 | — | ~5.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 2627 | Investigate security incidents in Microsoft Azure (resource and subscription control plane) -- reconstruct attacker activity from the Azure Activity Log and resource/data-plane diagnostic logs… | trilwu/ | 157 | — | ~5.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 2628 | 2628.Security Expert Security specialist perspective for the weekly review. An agent skill from mizchi/skills. | mizchi/ | 360 | — | ~455 | Automated safety check: Pass | No licence | 8 days ago |
| 2629 | CI/CD pipeline security gate design guide. An agent skill from revfactory/harness-100. | revfactory/ | 1.3k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 2630 | Code vulnerability pattern database. An agent skill from revfactory/harness-100. | revfactory/ | 1.3k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 2631 | 2631.Nuclei Suggest Browse the nuclei-templates library, recommend a scoped template set for a given stack, target, or CVE, then run it against an authorized target and report findings. | forefy/ | 152 | — | ~625 | Automated safety check: Pass | MIT | 6 days ago |
| 2632 | Provisions, scales, and operates Amazon EC2 virtual-machine workloads: instance-type selection (Graviton/Arm64, burstable T credits, GPU, instance store vs EBS), launch templates, Auto Scaling… | aws/ | 2.8k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 2633 | Installs, configures, and troubleshoots Network Flow Monitor agents on EC2 instances to monitor network path health. | aws/ | 2.8k | — | ~858 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 2634 | AWS security service suitability, coverage and cost recommendations: WAF/origin overlap, AWS Network Firewall inspection coverage and policy review, VPC endpoint, Transit Gateway/Cloud WAN… | aws/ | 2.8k | — | ~4.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 2635 | 2635.Re Format Elf ELF 格式解析:ehdr/phdr/shdr、GOT/PLT、initarray、符号恢复. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 2636 | 2636.Re Fp Runtime 函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 2637 | 2637.Re Frida Frida 动态插桩(桌面+移动统一). An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 2638 | Frida 脚本生成方法论:目标特征 → 模板选择 → 改写 → 验证。独立于执行插桩(re-frida). An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 2639 | 2639.Re Fw Emulate 固件仿真:QEMU 用户态/全系统. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 2640 | 2640.Re Hardware Io 硬件接口:JTAG/UART/flash 读取. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
Explore related skills
Topics in Security
- Security review639
- Web application vulnerabilities466
- Vulnerability scanning307
- Static analysis and SAST282
- Security operations247
- Supply chain security233
- Threat modeling224
- Penetration testing181
- Cryptography160
- Prompt injection and agent security156
- Red teaming and adversary simulation148
- Reverse engineering and malware131
- OSINT120
- Secure coding113
- Cloud security96
- Digital forensics88
- Smart contract auditing79
- Fuzzing77
- Bug bounty75
- Network security66
- Capture the flag46
- Mobile application security42
- Access reviews and audit trails38
Products these skills work with
Roles that use these skills
Other categories
- Development15,214
- Frontend & Design5,827
- Backend & APIs7,095
- Testing & QA5,045
- DevOps & Cloud5,975
- Databases2,347
- Data & Analytics3,623
- AI & LLM Engineering5,042
- Agent Workflows8,310
- Documents & Office4,299
- Writing & Content3,744
- Marketing & SEO3,900
- Sales & Support1,809
- Research & Science6,061
- Productivity & Automation4,039
- Business, Finance & HR3,855
- Legal & Compliance1,617
- Education1,078
- Media & Creative4,318
- Mobile2,746
- Product & Project Management2,329
- Knowledge Management1,439
- Game Development1,660