Category

Best security skills, page 61

Skills #2,881–2,928 of 3,084, ranked by score.

Security skills, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Security skills, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
2881

Reviews Kubernetes manifests and cluster config for security misconfigurations, ranks them by blast radius, and gives a minimal hardening patch for each.

criptogus/agent-evolve-network288—~1.3kAutomated safety check: PassApache-2.028 days ago
2882

Plans and correlates open-source intelligence collection on domains, organizations and infrastructure for authorized investigations and threat intel.

criptogus/agent-evolve-network288—~1kAutomated safety check: PassCC-BY-SA-4.028 days ago
2883

Plans and runs authorized reconnaissance to enumerate a target's external attack surface (DNS, subdomains, ports, web tech) and produces a prioritized report.

criptogus/agent-evolve-network288—~1.2kAutomated safety check: PassCC-BY-SA-4.028 days ago
2884

Hunting skill for ssrf vulnerabilities.

sickn33/agentic-awesome-skills47k1 repo~4.5kAutomated safety check: WarnMITyesterday
2885

Trigger Pattern Protocol has privileged authorities (admin, operator, upgrade authority, governance) - Inject Into Breadth agents (optional), depth-state-trace

PlamenTSV/plamen303—~3kAutomated safety check: PassMIT12 days ago
2886

Trigger Pattern updatecurrentcontractwasm detected in codebase - Inject Into Breadth agents, depth-state-trace

PlamenTSV/plamen303—~2kAutomated safety check: PassMIT12 days ago
2887

Trigger Pattern stellarbridge|sorobanbridge|horizon|anchorprotocol|bridge|crosschain|relay|wormhole|allbridge|debridge|axelar|LayerZero|sequence|emitter - Inject Into Breadth agents, depth-external

PlamenTSV/plamen303—~4.1kAutomated safety check: PassMIT12 days ago
2888

Trigger Pattern MONETARYPARAMETER flag (fee, rate, emission, cap, bps values) - Inject Into Breadth agents (merged via M4 hierarchy)

PlamenTSV/plamen303—~2.1kAutomated safety check: PassMIT12 days ago
2889

Trigger Pattern Any external module interaction detected in attacksurface.md - Inject Into Breadth agents (merged via M5 hierarchy)

PlamenTSV/plamen303—~1.1kAutomated safety check: PassMIT12 days ago
2890

Trigger Pattern Any env.invokecontract() or env.tryinvokecontract() detected in contract - Inject Into Breadth agents

PlamenTSV/plamen303—~2.2kAutomated safety check: PassMIT12 days ago
2891

Trigger Pattern Always (run during recon TASK 0, not breadth) - Inject Into Recon agent only (metabuffer.md enrichment)

PlamenTSV/plamen303—~2.4kAutomated safety check: PassMIT12 days ago
2892

Trigger FASTANDARD flag detected (protocol uses FungibleAsset standard) - Used by Breadth agents, depth-token-flow

PlamenTSV/plamen303—~3.3kAutomated safety check: PassMIT12 days ago
2893

Protocol Type Trigger NAMEDEXTERNALPROTOCOL (detected when recon finds import/interface for an identifiable external protocol — not standard libraries).

PlamenTSV/plamen303—~3.7kAutomated safety check: PassMIT12 days ago
2894

Trigger Pattern Contract upgrades via updatecurrentcontractwasm, storage migration, deprecated functions, token migrations - Inject Into Breadth agents, depth-state-trace

PlamenTSV/plamen303—~3.9kAutomated safety check: PassMIT12 days ago
2895

Trigger Pattern Always required for Soroban audits - Inject Into Breadth agents, depth-edge-case

PlamenTSV/plamen303—~1.9kAutomated safety check: PassMIT12 days ago
2896

L1 trigger - audits peer-to-peer networking for DoS vectors (resource exhaustion, amplification), eclipse attack susceptibility, and discovery table poisoning (Kademlia/devp2p).

PlamenTSV/plamen303—~4kAutomated safety check: PassMIT12 days ago
2897

Trigger REENTRANCY flag detected (dynamic dispatch, closures, dispatchable FA, function values) - Used by Breadth agents, depth-state-trace

PlamenTSV/plamen303—~2.9kAutomated safety check: PassMIT12 days ago
2898

Trigger HASMULTICONTRACT flag in templaterecommendations.md (recon detects 2+ in-scope contracts/modules sharing parameters or formulas) - Agent Type general-purpose (standal...

PlamenTSV/plamen303—~2.8kAutomated safety check: PassMIT12 days ago
2899

Trigger Pattern operator/keeper/crank requireauth checks, authority-gated functions - Inject Into Breadth agents, depth-state-trace

PlamenTSV/plamen303—~2.1kAutomated safety check: PassMIT12 days ago
2900

Trigger Pattern SEP-41 token patterns detected (approve/transfer/transferfrom/allowance/balance) - Inject Into Breadth agents, depth-token-flow, depth-edge-case

PlamenTSV/plamen303—~2.5kAutomated safety check: PassMIT12 days ago
2901

Trigger Pattern Always required for Soroban audits - Inject Into Breadth agents, depth agents

PlamenTSV/plamen303—~2.5kAutomated safety check: PassMIT12 days ago
2902

Trigger Pattern interval|period|duration|delay|cooldown|lockperiod|timelock|unbonding|claimdelay|withdrawdelay|maturity|ledgersequence|timestamp - Inject Into Breadth agents, depth-state-trace

PlamenTSV/plamen303—~3.2kAutomated safety check: PassMIT12 days ago
2903

Trigger Pattern SEP-41 token transfers, TokenClient::new, transfer/transferfrom/burn, XLM native balance - Inject Into Lifecycle, External-Env agents

PlamenTSV/plamen303—~3.2kAutomated safety check: PassMIT12 days ago
2904

Generate a STRIDE-based security threat model for a repository.

Factory-AI/factory-plugins110—~2.1kAutomated safety check: PassNo licenceyesterday
2905

Reviews package dependencies for security vulnerabilities, outdated versions, and license compliance.

aiskillstore/marketplace430—~2.2kAutomated safety check: NotesNo licenceyesterday
2906

Security auditing and vulnerability assessment specialist. An agent skill from aiskillstore/marketplace.

aiskillstore/marketplace4301 repo~383Automated safety check: PassNo licenceyesterday
2907

Turn an investment agent into a supply-chain bottleneck hunter.

aiskillstore/marketplace430—~3.4kAutomated safety check: PassMITyesterday
2908

Comprehensive dependency mapping, analysis, and visualization tool for software projects

aiskillstore/marketplace4301 repo~1.6kAutomated safety check: PassNo licenceyesterday
2909

A skill your agent uses when opening or updating a GitHub pull request after Phase 5 of /compliance:analyze-cve has applied and verified a CVE fix locally.

openshift-eng/ai-helpers120—~6.2kAutomated safety check: PassApache-2.0yesterday
2910
2910.Audit

On-demand security and code quality audit. An agent skill from MadAppGang/claude-code.

MadAppGang/claude-code284—~3.3kAutomated safety check: PassMIT6 mo ago
2911

Scan networks to discover devices, gather MAC addresses, vendors, and hostnames.

sundial-org/awesome-openclaw-skills663—~726Automated safety check: NotesNo licence7 mo ago
2912

Fail-closed security auditing for OpenClaw/ClawHub skills & repos: trufflehog secrets scanning, semgrep SAST, prompt-injection/persistence signals, and supply-chain hygiene checks before enabling or…

sundial-org/awesome-openclaw-skills663—~875Automated safety check: PassNo licence7 mo ago
2913

Assess vulnerabilities and audit for security compliance using OWASP and STRIDE methodology — a user-invoked Security Auditor workflow.

dralgorhythm/claude-agentic-framework125—~496Automated safety check: PassNo licence2 mo ago
2914

CRITICAL: Never modify files in content-addressable storage systems where the filename IS the content hash (SHA256, IPFS CID, etc.).

divinevideo/divine-mobile266—~984Automated safety check: PassMPL-2.0today
2915

Performs security review of arbitrary Go packages, including libraries, frameworks, CLIs, HTTP and gRPC services, and backend applications.

SpecterOps/skills702—~2.1kAutomated safety check: PassApache-2.015 days ago
2916

Assess identity trust topology, assurance boundaries, issuer and relying-party responsibilities, and failure containment before testing a specific authentication or authorization mechanism.

cyberful/cyberful135—~710Automated safety check: PassAGPL-3.01 mo ago
2917

Audit where access policy is decided and enforced across source, configuration, services, caches, jobs, and data stores, including deny behavior and decision-input integrity.

cyberful/cyberful135—~725Automated safety check: PassAGPL-3.01 mo ago
2918

Route a cloud-native security audit across effective IAM, infrastructure as code, build and release paths, containers, Kubernetes, serverless workloads, secrets, event sources, and control-plane…

cyberful/cyberful135—~852Automated safety check: PassAGPL-3.01 mo ago
2919

Operate a managed Firefox/Marionette laboratory for privileged chrome-context experiments, content automation, real WebDriver windows, permission readback, and synthetic X11 clipboard controls.

cyberful/cyberful135—~673Automated safety check: PassAGPL-3.01 mo ago
2920

Use the release-embedded MITRE ATT&CK snapshot as a threat-informed reasoning lens without allowing the framework to constrain novel vulnerability discovery.

cyberful/cyberful135—~1.5kAutomated safety check: PassAGPL-3.01 mo ago
2921

Test account and authenticator recovery as an assurance transition, including proofing, channel changes, support overrides, replay resistance, and post-recovery invalidation.

cyberful/cyberful135—~665Automated safety check: PassAGPL-3.01 mo ago
2922

Route file-ingestion security work across processing pipelines, deserialization and object binding, and SOAP or XML services.

cyberful/cyberful135—~600Automated safety check: PassAGPL-3.01 mo ago
2923

Route HTTP intermediary testing across request normalization, web-cache behavior, and offline traffic evidence.

cyberful/cyberful135—~630Automated safety check: PassAGPL-3.01 mo ago
2924

Test identity linking, invitation, merge, provisioning, deprovisioning, and account-association ceremonies for proof-of-control, tenant binding, uniqueness, lifecycle, and rollback failures using…

cyberful/cyberful135—~584Automated safety check: PassAGPL-3.01 mo ago
2925

Test promotions, referrals, quotas, inventory, and entitlement invariants through authorized, bounded, reversible experiments with tester-controlled accounts and assets.

cyberful/cyberful135—~633Automated safety check: PassAGPL-3.01 mo ago
2926

A skill your agent uses when drafting an ACM CCS rebuttal during the HotCRP author-response window, covering threat-model defenses, adaptive-attack objections, ethics and disclosure questions…

brycewang-stanford/Awesome-Journal-Skills1.2k—~949Automated safety check: PassMIT11 days ago
2927

A skill your agent uses when positioning an ACM CCS submission against the security big-four and specialist literature, including arXiv preprints, prior CCS/S&P/USENIX/NDSS papers, concurrent…

brycewang-stanford/Awesome-Journal-Skills1.2k—~876Automated safety check: PassMIT11 days ago
2928

A skill your agent uses when deciding whether a security project fits ACM CCS versus IEEE S&P, USENIX Security, NDSS, PETS, or a crypto/theory venue, identifying the security contribution type, and…

brycewang-stanford/Awesome-Journal-Skills1.2k—~945Automated safety check: PassMIT11 days ago