Category
Best security skills, page 58
Security skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 2737 | 2737.Nullaway Guide for resolving NullAway static analysis errors. An agent skill from nwjs/chromium.src. | nwjs/ | 160 | — | ~3k | Automated safety check: Pass | BSD-3-Clause | 6 days ago |
| 2738 | 2738.Prose Style Reusable writing-style contract for agent outputs (reports, ARCH docs, verdicts, threat models). | avelikiy/ | 103 | — | ~1k | Automated safety check: Pass | MIT | today |
| 2739 | 2739.Security Review Reviewing a diff or feature for exploitable vulnerabilities before it ships. | Zfinix/ | 113 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | today |
| 2740 | 2740.Supply Chain Supply chain mapping, supplier dependency analysis, customer concentration, geographic concentration, bottleneck identification, supply chain risk, logistics network, sourcing strategy, inventory… | agentii-ai/ | 207 | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 10 days ago |
| 2741 | 2741.Security Checklist Security best practices for Micronaut/Kotlin backend including authentication, authorization, input validation, and OWASP prevention. | c0x12c/ | 106 | — | ~672 | Automated safety check: Notes | No licence | 3 mo ago |
| 2742 | Security audit for Terraform codebases covering IAM, networking, encryption, secrets, access control, and compliance. | c0x12c/ | 106 | — | ~2k | Automated safety check: Pass | No licence | 3 mo ago |
| 2743 | Generate abstract Control Flow Graph (CFG) representations of programs showing loops, branches, and function calls for static analysis or verification. | ArabelaTso/ | 253 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2744 | Analyze CVE reachability in software repositories by examining how vulnerable dependencies are imported and used. | ArabelaTso/ | 253 | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2745 | Analyze detected vulnerabilities to assess realistic exploitability by examining control flow, input sources, sanitization logic, and execution context. | ArabelaTso/ | 253 | — | ~3.5k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2746 | Generate randomized and edge-case inputs to detect unexpected failures, bugs, and security vulnerabilities through fuzz testing. | ArabelaTso/ | 253 | — | ~4.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2747 | 2747.Static Bug Detector Analyze source code statically to detect potential functional bugs including null dereferences, incorrect condition checks, unreachable code, inconsistent state updates, logic errors, resource… | ArabelaTso/ | 253 | — | ~3.4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2748 | Statically analyze code to detect security vulnerabilities including buffer overflows, injection risks (SQL, command, XSS), insecure deserialization, improper authentication, hard-coded credentials… | ArabelaTso/ | 253 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2749 | Detects security vulnerabilities by matching code against known vulnerability patterns, insecure coding idioms, and CVE-style patterns. | ArabelaTso/ | 253 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2750 | Applies abstract interpretation using different abstract domains (intervals, octagons, polyhedra, sign, congruence) to statically analyze program variables and infer invariants, value ranges, and… | ArabelaTso/ | 253 | — | ~2.4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2751 | Performs abstract interpretation over source code to infer possible program states, variable ranges, and data properties without executing the program. | ArabelaTso/ | 253 | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2752 | 2752.Ida Inp Export Beginner-friendly workflow for IDA project export, function-range extraction, naming, type propagation, xrefs, and machine-readable artifacts. | manyuegong33/ | 310 | — | ~503 | Automated safety check: Pass | No licence | 19 days ago |
| 2753 | Automatically load this skill when investigating application outages, service degradation, or errors that could have security-related root causes — including unexplained downtime, authentication or… | aws/ | 102 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 2754 | Install-time cooldowns for npm/bun plus a sandboxed pre-install scan for bypasses. | jamditis/ | 417 | — | ~2k | Automated safety check: Warn | MIT | 5 days ago |
| 2755 | 2755.Fuzzing Python Creating fuzz driver for Python libraries using LibFuzzer. An agent skill from benchflow-ai/skillsbench. | benchflow-ai/ | 1.8k | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2756 | 2756.Threat Detection Exact detection thresholds for identifying malicious network patterns including port scans, DoS attacks, and beaconing behavior. | benchflow-ai/ | 1.8k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2757 | Use Trivy vulnerability scanner in offline mode to discover security vulnerabilities in dependency files. | benchflow-ai/ | 1.8k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2758 | Generate structured CSV security audit reports from vulnerability data with proper filtering and formatting. | benchflow-ai/ | 1.8k | — | ~3k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 2759 | Subagent for figma-from-code Phase 0b. An agent skill from bitovi/ai-enablement-prompts. | bitovi/ | 121 | — | ~1.4k | Automated safety check: Pass | MIT | 28 days ago |
| 2760 | 2760.Security Auditor Security vulnerability scanner and OWASP compliance auditor for codebases. | curiositech/ | 243 | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 2761 | 2761.Wp Security Review WordPress security code review for Codex. An agent skill from jorgerosal/wordpress-skills. | jorgerosal/ | 102 | — | ~490 | Automated safety check: Pass | MIT | 4 mo ago |
| 2762 | Maintainer workflow for the pre-PR secure loop: code, build/test, SAST/CodeQL, dynamic sanitizer checks, fixes, and concise handoff. | InternationalColorConsortium/ | 183 | — | ~1.4k | Automated safety check: Pass | BSD-3-Clause | today |
| 2763 | 2763.Next Move Ranked next offensive moves from engagement state. An agent skill from Encod3d-Sec/TORCH. | Encod3d-Sec/ | 329 | — | ~204 | Automated safety check: Pass | MIT | 1 mo ago |
| 2764 | 2764.Gemini CLI Google Gemini CLI for second opinions, architectural advice, code reviews, security audits. | secondsky/ | 227 | — | ~2.8k | Automated safety check: Pass | MIT | 11 days ago |
| 2765 | REST API security hardening with authentication, rate limiting, input validation, security headers. | secondsky/ | 227 | — | ~718 | Automated safety check: Pass | MIT | 11 days ago |
| 2766 | 2766.Csrf Protection Implements CSRF protection using synchronizer tokens, double-submit cookies, and SameSite attributes. | secondsky/ | 227 | — | ~656 | Automated safety check: Pass | MIT | 11 days ago |
| 2767 | Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. | secondsky/ | 227 | — | ~638 | Automated safety check: Pass | MIT | 11 days ago |
| 2768 | 2768.Xss Prevention XSS attack prevention with input sanitization, output encoding, Content Security Policy. | secondsky/ | 227 | — | ~1.5k | Automated safety check: Pass | MIT | 11 days ago |
| 2769 | 2769.Security Reviewer Dedicated security-audit route for OWASP-style risks, secret leaks, auth flaws, injection, unsafe input handling, SSRF/XSS, and sensitive-data exposure. | foryourhealth111-pixel/ | 3.6k | — | ~523 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 2770 | 2770.Ism Expert Australian Information Security Manual (ISM) advisor for government entities and their supply chains. | lawve-ai/ | 842 | — | ~2k | Automated safety check: Pass | Unknown | 7 days ago |
| 2771 | 2771.Sccm Recon Perform SCCM reconnaissance and takeover prerequisite validation, including site-role mapping, provider and AdminService checks, site database separation checks, and relay-path prechecks. | SpecterOps/ | 704 | — | ~1.8k | Automated safety check: Notes | Apache-2.0 | 16 days ago |
| 2772 | 2772.Security Review Perform a security-focused review of current git changes. An agent skill from SpecterOps/skills. | SpecterOps/ | 704 | — | ~556 | Automated safety check: Pass | Apache-2.0 | 16 days ago |
| 2773 | 2773.Shodan Query Shodan for reconnaissance, target enrichment, and exposed service discovery. | SpecterOps/ | 704 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 16 days ago |
| 2774 | Produce a repository-grounded application security threat model with assets, boundaries, abuse paths, priorities, and mitigations. | nightly-labs/ | 473 | — | ~379 | Automated safety check: Pass | Unknown | today |
| 2775 | 2775.Secure Code Guidance Review or write Python, JavaScript, TypeScript, or Go code using secure defaults. | nightly-labs/ | 473 | — | ~369 | Automated safety check: Pass | Unknown | today |
| 2776 | 2776.Golang Rules Go coding rules: style, patterns, security, testing. An agent skill from softspark/ai-toolkit. | softspark/ | 179 | — | ~3k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 2777 | Transform bounded HAR captures into deterministic HTTP evidence about methods, origins, paths, status classes, header presence, redirects, cookies, and body sizes without replaying traffic or… | cyberful/ | 135 | — | ~544 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2778 | Normalize and correlate bounded SARIF and Cyberful finding exports offline by rule, location, fingerprint, source, level, suppression, and evidence reference without treating scanner severity as… | cyberful/ | 135 | — | ~543 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2779 | Assess AI-system risk from architecture, intended use, affected actors, model limitations, data lineage, autonomy, human oversight, monitoring, and failure consequences. | cyberful/ | 135 | — | ~566 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2780 | Audit container runtime isolation across namespaces, capabilities, seccomp, mandatory access control, mounts, devices, daemon sockets, cgroups, identity, and host integration. | cyberful/ | 135 | — | ~545 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 2781 | Find leaked API keys, tokens, and credentials in public GitHub repositories. | uphiago/ | 1.3k | — | ~1.8k | Automated safety check: Warn | MIT | 1 mo ago |
| 2782 | 2782.Skill Scanner Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. | sundial-org/ | 663 | 1 repo | ~364 | Automated safety check: Pass | No licence | 7 mo ago |
| 2783 | 2783.Input Validation Implement comprehensive input validation to prevent XSS, SQL injection, and command injection attacks with sanitization strategies | Hack23/ | 239 | — | ~5.9k | Automated safety check: Pass | Apache-2.0 | today |
| 2784 | 2784.Osint Methodologies OSINT collection, source evaluation, data integration, verification techniques for Swedish political intelligence | Hack23/ | 239 | — | ~6.1k | Automated safety check: Pass | Apache-2.0 | today |
Explore related skills
Topics in Security
- Security review637
- Web application vulnerabilities468
- Vulnerability scanning305
- Static analysis and SAST284
- Security operations246
- Supply chain security232
- Threat modeling227
- Penetration testing181
- Cryptography160
- Prompt injection and agent security154
- Red teaming and adversary simulation149
- Reverse engineering and malware129
- OSINT120
- Secure coding113
- Cloud security96
- Digital forensics88
- Smart contract auditing79
- Fuzzing76
- Bug bounty75
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails38
Products these skills work with
Roles that use these skills
Other categories
- Development15,199
- Frontend & Design5,829
- Backend & APIs7,083
- Testing & QA5,062
- DevOps & Cloud5,955
- Databases2,353
- Data & Analytics3,632
- AI & LLM Engineering5,048
- Agent Workflows8,296
- Documents & Office4,290
- Writing & Content3,764
- Marketing & SEO3,901
- Sales & Support1,837
- Research & Science6,076
- Productivity & Automation4,035
- Business, Finance & HR3,880
- Legal & Compliance1,634
- Education1,086
- Media & Creative4,311
- Mobile2,737
- Product & Project Management2,339
- Knowledge Management1,438
- Game Development1,678