Category

Best security skills, page 9

Skills #385–432 of 3,087, ranked by score.

Security skills, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Security skills, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
385

Reference for building payment systems that meet PCI DSS: the 12 requirements, merchant levels, data that must never be stored, tokenization and encryption.

wshobson/agents40k11 repos~1.9kAutomated safety check: PassMIT4 days ago
386

Add an entry to the UPDATING file at the repository root. An agent skill from MidnightBSD/src.

MidnightBSD/src114—~1.6kAutomated safety check: PassUnknown5 days ago
387
387.Triage

Self-validates a bug bounty report draft before submission. An agent skill from yeswehack/claude-kit.

yeswehack/claude-kit109—~1kAutomated safety check: PassGPL-3.01 mo ago
388

Display Hak5 WiFi Pineapple recon scan data as a formatted table.

sneakerhax/Arsenal112—~298Automated safety check: PassGPL-3.01 mo ago
389

对 jar-analyzer-engine 构建的 SQLite 数据库执行安全审计分析查询。支持方法调用搜索、调用链追踪、Spring 组件分析、字符串搜索、漏洞模式检测等。

jar-analyzer/jar-analyzer-claude141—~2.5kAutomated safety check: PassNo licence6 mo ago
390

Use before shipping to production. An agent skill from garagon/nanostack.

garagon/nanostack207—~3.7kAutomated safety check: NotesApache-2.029 days ago
391

Decrypt and recover obfuscated strings from binaries by analyzing encryption patterns and generating decryption scripts

P4nda0s/bin-deobf-skills140—~876Automated safety check: PassNo licence4 mo ago
392

A skill your agent uses when a Granblue Fantasy Relink game patch breaks the GBFR Logs hook — signatures no longer match, "Could not find match for pattern" / "Could not find <offset" warnings…

villith/relink-logs156—~7.5kAutomated safety check: PassMIT14 days ago
393

Guides a Windows forensic examination of the NTFS Master File Table to recover deleted-file evidence, build timelines and spot timestomping.

mukul975/Anthropic-Cybersecurity-Skills34k—~2.7kAutomated safety check: PassApache-2.01 mo ago
394

OpenClaw 安全检测工具,基于安全实践指南验证配置安全、权限隔离、网络策略、日志审计和运行时完整性. An agent skill from jd-opensource/JoySafeter.

jd-opensource/JoySafeter313—~1.2kAutomated safety check: PassApache-2.01 mo ago
395

Manages who can reach Claude through a Discord channel: approve pairing codes, edit the allowlist and set direct-message and group policy.

anthropics/claude-plugins-official38k1 repo~1.1kAutomated safety check: PassApache-2.0today
396

Update copyright year references across the project at the beginning of each calendar year.

MichaelGrafnetter/DSInternals2k—~404Automated safety check: PassMIT27 days ago
397

This skill should be used when the user asks to "identify web application vulnerabilities", "explain common security flaws", "understand vulnerability categories", "learn about injection attacks"…

zebbern/claude-code-guide4.7k8 repos~6.1kAutomated safety check: PassMITtoday
398

Systematic static analysis of ELF firmware binaries using command-line tools (file, strings, readelf, objdump, xxd).

OrbitCurve/firmware-reverse-engineering215—~3.2kAutomated safety check: PassApache-2.01 mo ago
399

Audit source code for exploitable vulnerabilities using threat-model-driven review, taint tracing, invariant checking, and variant analysis.

trilwu/secskills157—~3.2kAutomated safety check: PassMIT1 mo ago
400

Recovers internal keys from legacy ZipCrypto-protected ZIP archives in CTF challenges through a known-plaintext method, instead of brute force.

zhaoxuya520/reverse-skill40k1 repo~1.5kAutomated safety check: PassMIT17 days ago
401

Enriches IOCs, campaigns, impersonation and scams from public sources, including bounded X search through Xquik, and checks each lead against independent evidence.

zhaoxuya520/reverse-skill40k1 repo~1kAutomated safety check: PassMIT17 days ago
402

Audits the Safe multisig wallets of DeFi protocols for governance misconfigurations, scoring each against a finding library and producing a severity-ranked report.

forefy/.context152—~1.4kAutomated safety check: PassMIT4 days ago
403

Perform post-implementation security review on recent code changes and produce prioritized hardening recommendations with file evidence and fix guidance.

Bald0Wang/DeepSeek-Oracle187—~694Automated safety check: PassNo licence7 mo ago
404

Security code review for Tauri/Rust/TypeScript desktop apps and Hono/oRPC APIs.

deadlock-mod-manager/deadlock-mod-manager477—~1.8kAutomated safety check: PassCC-BY-SA-4.0today
405

A skill your agent uses when an OpenClaw maintainer or owner is reviewing a ClawHub malicious-skill profile proposal PR: checking proposals/<GHSA-ID/clawscan.yml, reading the private vulnerability…

openclaw/clawscan143—~1.9kAutomated safety check: PassMIT2 days ago
406
406.Manage HeadersOfficial

Inspects and configures the security headers a Power Pages site sends to browsers — Content Security Policy, frame and clickjacking protection, cross-origin sharing, cookie behavior, and related…

microsoft/power-platform-skills979—~3kAutomated safety check: NotesMITtoday
407

Reviews APIs, configuration schemas and library interfaces for footguns, the designs where the easy path leads to insecure use, using a four-phase analysis.

trailofbits/skills7.4k3 repos~3kAutomated safety check: PassCC-BY-SA-4.02 days ago
408

Explores and triages a CycloneDX BOM interactively with the cdxi REPL, using built-in commands for dependency trees, licenses, services, cryptographic assets, audit findings, evidence occurrences…

cdxgen/cdxgen1.1k—~1.2kAutomated safety check: PassApache-2.0yesterday
409

Checks that the bb, pt and ctf workflow driver is set up correctly on a machine: vault content, skill symlinks, hooks, imports and a live smoke test, with fixes for failures.

Encod3d-Sec/TORCH329—~611Automated safety check: PassMIT1 mo ago
410
410.Zeroization AuditOfficial

Finds sensitive data that C, C++ or Rust code never wipes from memory, including wipes the compiler optimizes away, using source, assembly and control-flow analysis.

trailofbits/skills7.4k4 repos~5.9kAutomated safety check: NotesCC-BY-SA-4.02 days ago
411

Audits, detects gaps, and remediates Android permissions and IPC component security vulnerabilities.

rosuH/EasyWatermark1.9k1 repo~7kAutomated safety check: PassMIT3 days ago
412

Manage OpenClaw GitHub Actions and Blacksmith CI capacity, runner-registration budgets, fanout caps, main-push single-flight, shard sizing, hosted-runner offload, queue health, and safe…

openclaw/openclaw392k—~14kAutomated safety check: PassMITtoday
413

Plan, execute, document, and retest authorized security assessments of AI agents and multi-agent workflows using safe adversarial cases, synthetic identities, canaries, and evidence-based findings.

seb1n/awesome-ai-agent-skills206—~2.8kAutomated safety check: PassMIT2 mo ago
414

Creates a new Earl HCL template for a specific API, database, or shell command.

mathematic-inc/earl113—~2.8kAutomated safety check: PassApache-2.0yesterday
415

Learn from public breach disclosures — extract the audit question each one implies and check your own stack.

briiirussell/cybersecurity-skills413—~3.5kAutomated safety check: NotesMIT4 mo ago
416

PHP Web 源码命令注入审计工具。识别命令执行 Sink(exec/system/shellexec 等),追踪用户输入进入命令拼接,输出可利用性分级、PoC 与修复建议(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~465Automated safety check: PassNo licence6 mo ago
417

Mod a PC game the user owns, taking an idea to working in the real game and recorded.

rehan-remade/universal-modder5.8k—~2.9kAutomated safety check: PassMITtoday
418

Adding, removing or changing a tool on RedAmon's INBOUND MCP server, where external agents connect in with a personal access token.

samugit83/redamon3k—~1.8kAutomated safety check: PassMITyesterday
419

A skill your agent uses when 用户需要对代码进行安全审计、发现安全漏洞、上线前安全评估、检查代码是否存在安全风险时。触发场景:代码安全审计、安全审计、白盒审计、安全扫描、漏洞检测、漏洞挖掘、SQL注入、命令注入、XSS、SSRF、反序列化、认证绕过、越权、代码安全检查、security audit、code…

ProgrammerAnthony/Expert-Coding-Harness235—~1.6kAutomated safety check: PassMIT5 mo ago
420

Generate prioritized CVE watchlists and actionable security recommendations for repositories.

ArabelaTso/Skills-4-SE253—~1.7kAutomated safety check: PassApache-2.01 mo ago
421

Close a case or alert with proper reason and documentation. An agent skill from dandye/ai-runbooks.

dandye/ai-runbooks127—~615Automated safety check: PassApache-2.01 mo ago
422

Perform a requested security review of a NemoClaw PR or a PR linked to an issue.

NVIDIA/NemoClaw23k—~1.1kAutomated safety check: PassApache-2.0today
423

Triage a CVE / Dependabot alert in a JS/TS project and recommend the least-invasive fix.

getlago/lago-front163—~2.9kAutomated safety check: PassMITtoday
424

Vulnerability and security scan (defensive, your own repo): dependency CVEs plus risky code patterns (secrets, injection, weak authz), severity x reachability triaged and remediated without…

maddhruv/absolute2181 repo~1.2kAutomated safety check: PassMIT3 mo ago
425

Security audit workflow for OPC code, providers, plugins, Electron surfaces, local HTTP bridges, filesystem access, and command execution.

LING71671/Open-ClaudeCode962—~321Automated safety check: NotesUnknown2 mo ago
426

Reference for ten classes of DeFi smart contract bugs, each with root cause, vulnerable code, fix, grep patterns and paid examples, for audits and bug bounty reviews.

tradecatlabs/vibe-coding-cn17k2 repos~10kAutomated safety check: PassMITtoday
427

Research notes drawn from Trail of Bits, SlowMist, ConsenSys, Immunefi and Cyfrin on smart contract audit methodology, with Slither, Echidna and Medusa setup.

tradecatlabs/vibe-coding-cn17k2 repos~9.9kAutomated safety check: PassMITtoday
428

Seven-question triage gate, Immunefi report format and dissected paid bounty examples for deciding whether a smart contract finding is worth submitting.

tradecatlabs/vibe-coding-cn17k2 repos~7.7kAutomated safety check: PassMITtoday
429

Web shell samples for detection and analysis: PHP, ASP, ASPX, JSP, Python, Perl shells.

Eyadkelleh/awesome-skills-security388—~636Automated safety check: PassNo licence4 mo ago
430

Reconstruct CTF key, serial, and flag verifiers using known plaintext, repeating XOR, encoded constants, bytecode replacement, hash constraints, SMT, and bounded brute force.

manyuegong33/r0crawl_skills310—~434Automated safety check: PassNo licence19 days ago
431

Runs Trivy filesystem scan against the repo root and emits structured vulnerability findings (CVE, package, versions) in the SDLC reviewer schema.

epam/ai-dial-chat504—~1.2kAutomated safety check: PassApache-2.0today
432

Extracts app.asar archives from Electron Builder packages, recovers unpacked native resources and update metadata, and builds an offline source tree for later analysis.

ptn1411/skill220—~683Automated safety check: NotesNo licence17 days ago