Repository

transilienceai/communitytools agent skills

Every skill in the transilienceai/communitytools repository on GitHub, ranked by score, with the commands to install them.
skills
35
GitHub stars
562

GitHub description: “Open-source Claude Code skills, agents, and slash commands for AI-powered penetration testing, bug bounty hunting, and security research”

Stars
562 (80 forks)
Licence
MIT
Last push
Jul 2026
Created
Nov 2025
  • bounty-hunters
  • hackerone
  • pentest
  • pentest-tool
  • security
  • security-research
  • security-tools

Install all skills

skills CLI (any agent)
npx skills add transilienceai/communitytools

Add --skill <name> for a single skill and -a <agent> to choose the agent (see the agent guides).

Skills in transilienceai/communitytools, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Skills in transilienceai/communitytools, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Digital forensics and incident response - Windows event log analysis, PCAP forensics, filesystem artifact analysis, AD attack detection, and timeline correlation.

transilienceai/communitytools562—~1.5kAutomated safety check: PassMIT2 mo ago
2

GitHub workflow automation — branching, committing, pushing, pull requests, issues, and code review.

transilienceai/communitytools562—~812Automated safety check: NotesMIT2 mo ago
3

Automated PCI Secure Software Standard (SSS) v2.0 readiness gap-assessment of an application from its source code and documentation.

transilienceai/communitytools562—~1.8kAutomated safety check: PassMIT2 mo ago
4

Generate ONE strong password and apply it to each referenced file (PDF, Word, Excel, PowerPoint, or any type).

transilienceai/communitytools562—~583Automated safety check: PassMIT2 mo ago
5

Skill creation, update and management — generates skill directory structure, validates against best practices, enforces line count limits.

transilienceai/communitytools562—~1.2kAutomated safety check: PassMIT2 mo ago
6

Security-focused source code review and SAST. An agent skill from transilienceai/communitytools.

transilienceai/communitytools562—~1.2kAutomated safety check: NotesMIT2 mo ago
7

Generate a Transilience-branded PDF report (pentest, vuln assessment, compliance, threat intel) from a single findings JSON using the bundled ReportLab generator.

transilienceai/communitytools562—~1.7kAutomated safety check: PassMIT2 mo ago
8

Acquire an authenticated session THROUGH MFA/OTP on an in-scope target and emit a reusable session artifact (Playwright storageState + Bearer) so executors can test the post-auth attack surface.

transilienceai/communitytools562—~1.4kAutomated safety check: PassMIT2 mo ago
9

Authentication security testing - auth bypass, JWT attacks, OAuth flaws, password attacks, 2FA bypass, CAPTCHA bypass, and bot detection evasion.

transilienceai/communitytools562—~610Automated safety check: PassMIT2 mo ago
10

Retrieve CVE risk scores from NVD. An agent skill from transilienceai/communitytools.

transilienceai/communitytools562—~565Automated safety check: NotesMIT2 mo ago
11

Evidence-safe firewall ruleset audit reference specification — 22 documented detector patterns (17 vendor-agnostic plus 5 FortiGate-specific), a 15-check semantic catalogue, CIS Fortinet FortiGate…

transilienceai/communitytools562—~2.4kAutomated safety check: PassMIT2 mo ago
12

Open-source intelligence gathering - company repository enumeration, secret scanning, git history analysis, employee footprint, and code exposure discovery.

transilienceai/communitytools562—~494Automated safety check: NotesMIT2 mo ago
13

Domain assessment and web application mapping - subdomain discovery, port scanning, endpoint enumeration, API discovery, and attack surface analysis.

transilienceai/communitytools562—~1.4kAutomated safety check: PassMIT2 mo ago
14

Re-validates every previously-confirmed finding against its current target — detects drift (patched, mitigated, re-introduced).

transilienceai/communitytools562—~1kAutomated safety check: PassMIT2 mo ago
15

Risk-based prioritisation of confirmed attack paths. An agent skill from transilienceai/communitytools.

transilienceai/communitytools562—~1.5kAutomated safety check: PassMIT2 mo ago
16

OSINT-based technology stack identification. An agent skill from transilienceai/communitytools.

transilienceai/communitytools562—~826Automated safety check: PassMIT2 mo ago
17

Threat-intel signal ingest — converts a CVE + affected-asset + claim payload into a queued engagement-scope row for the validation pipeline.

transilienceai/communitytools562—~676Automated safety check: PassMIT2 mo ago
18

Detect and break the cloud post-compromise attack chain (AWS / Azure / GCP) — per-stage CloudTrail / Activity-Log / Audit-Log detection signals and the preventive controls that close each step.

transilienceai/communitytools562—~476Automated safety check: PassMIT2 mo ago
19

Generates optimized, syntax-validated scripts on demand. An agent skill from transilienceai/communitytools.

transilienceai/communitytools562—~401Automated safety check: PassMIT2 mo ago
20

Threat Intelligence Report Design System — ReportLab-based PDF generation for A4 reports with Transilience branding, typography, and layout standards.

transilienceai/communitytools562—~6.3kAutomated safety check: PassMIT2 mo ago
21

Cryptanalysis techniques — lattice attacks, padding oracles, weak-RNG exploitation, signature forgery, secret-sharing recovery.

transilienceai/communitytools562—~465Automated safety check: PassMIT2 mo ago
22

HackTheBox platform operations and automations to solve challenges, machines and capture the flags hacking competitions

transilienceai/communitytools562—~697Automated safety check: PassMIT2 mo ago
23

Network infrastructure testing - port scanning, DNS attacks, MITM, VLAN hopping, IPv6, SMB/NetBIOS, sniffing, and DoS assessment.

transilienceai/communitytools562—~768Automated safety check: PassMIT2 mo ago
24

Injection vulnerability testing - SQL, NoSQL, OS Command, SSTI, XXE, and LDAP/XPath injection techniques.

transilienceai/communitytools562—~424Automated safety check: PassMIT2 mo ago
25

Mobile application security testing (Android + iOS) mapped to OWASP MASVS/MASTG — static reversing (Flutter AOT, Unity IL2CPP, React Native/Hermes, native ARM64, Mach-O/Swift), SAST (manifest/IPC…

transilienceai/communitytools562—~2.5kAutomated safety check: PassMIT2 mo ago
26

Fetches and extracts payloads from PayloadsAllTheThings on demand.

transilienceai/communitytools562—~1.3kAutomated safety check: PassMIT2 mo ago
27

Server-side vulnerability testing - SSRF, HTTP Request Smuggling, Path Traversal, File Upload, Insecure Deserialization, and Host Header injection.

transilienceai/communitytools562—~484Automated safety check: PassMIT2 mo ago
28

Identify and remove negative-ROI skill content — orphan files, never-read entries, duplicates, content reintroducing challenge-specific lore.

transilienceai/communitytools562—~715Automated safety check: PassMIT2 mo ago
29

Correlation, confidence scoring, and conflict resolution across all tech-stack signals.

transilienceai/communitytools562—~459Automated safety check: PassMIT2 mo ago
30

Infrastructure tech-stack identification — cloud providers, CDN/WAF, DNS services, TLS/CT, DevOps tooling, plus asset discovery (domains, subdomains, IPs).

transilienceai/communitytools562—~462Automated safety check: PassMIT2 mo ago
31

OSINT-side tech-stack identification — public repositories (GitHub/GitLab), job postings & ATS, and Wayback Machine historical snapshots.

transilienceai/communitytools562—~468Automated safety check: PassMIT2 mo ago
32

Security-posture and third-party SaaS identification — security headers, CSP, HSTS, email auth, security.txt, plus payments/analytics/auth/CRM/support integrations.

transilienceai/communitytools562—~447Automated safety check: PassMIT2 mo ago
33

Client-side vulnerability testing - XSS (reflected/stored/DOM), CSRF, CORS misconfiguration, Clickjacking, DOM-based attacks, and Prototype Pollution.

transilienceai/communitytools562—~374Automated safety check: PassMIT2 mo ago
34

Backend tech-stack identification — web servers, runtimes, languages, frameworks, databases, APIs, and CMS via HTTP headers, cookies, error pages, and API discovery.

transilienceai/communitytools562—~381Automated safety check: PassMIT2 mo ago
35

Frontend tech-stack identification — JavaScript frameworks, meta-frameworks, CSS frameworks, UI libraries, build tools, and CMS via DOM, JS globals, HTML, and bundle patterns.

transilienceai/communitytools562—~382Automated safety check: PassMIT2 mo ago

Questions, answered from the data.

What is the best skill in transilienceai/communitytools?

Dfir from transilienceai/communitytools ranks first of the 35 skills in transilienceai/communitytools listed here, with the highest score: its repository has 562 GitHub stars, its SKILL.md loads about 1.5k tokens and it passes the automated safety check with no findings. Next come GitHub Workflow and Pci Secure Software.

Are the skills in transilienceai/communitytools official?

None yet. All 35 skills in transilienceai/communitytools listed here come from community repositories; a skill counts as official when the product's own GitHub organization publishes it.

How do I install all skills from transilienceai/communitytools?

Run npx skills add transilienceai/communitytools in your project: the open-source skills CLI installs the repository's skills into your coding agent's skills folder. To install a single skill, open its page here for the exact command.

How are these skills ranked?

By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.