Search
Security
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 577 | Maps the state-changing entry points of a smart contract codebase and sorts them by access level, producing a structured audit report that leaves out read-only functions. | trailofbits/ | 7.5k | 1 repo | ~2.4k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 578 | 578.Docs Documentation work in this repo — the five places a user-visible change must answer, the page conventions the site build enforces, the tests that pin prose to the registry, and a simplification pass… | guardana/ | 259 | — | ~967 | Automated safety check: Pass | Apache-2.0 | today |
| 579 | 579.Kesekit Start Run a security vulnerability assessment based on KISA guidelines. | cdppcorp/ | 360 | — | ~2.3k | Automated safety check: Pass | MIT | 6 mo ago |
| 580 | Generate a complete Semgrep rule bundle (rule.yml + tests.md + README.md) from a CVE description and a bad-code example. | skrun-dev/ | 210 | — | ~1.3k | Automated safety check: Pass | MIT | 19 days ago |
| 581 | Git workflow, CI/GitHub Actions, and supply-chain pinning rules for Mistral Vibe. | mistralai/ | 5.1k | — | ~1k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 582 | Detects price oracle manipulation and flash loan attack vectors in DeFi smart contracts. | quillai-network/ | 130 | — | ~2.8k | Automated safety check: Pass | MIT | 6 mo ago |
| 583 | Deep security review of a Convex app: authorization model, data access paths per table, HTTP action exposure, rate limiting, file storage access, scheduled function trust, and a written findings… | waynesutton/ | 406 | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 13 days ago |
| 584 | 584.Compliance Audit the repository against the OpenSSF Baseline with darnit, resolve the controls darnit defers to LLM analysis or could not verify, and record per-control verdicts plus the attained Baseline level. | alpha-omega-security/ | 245 | — | ~1.4k | Automated safety check: Notes | MIT | today |
| 585 | 585.Code Audit A skill your agent uses for authorized source-code security review and SAST workflows including Semgrep, CodeQL patterns, dangerous API hunting, and fix verification. | zhaoxuya520/ | 41k | 2 repos | ~374 | Automated safety check: Warn | MIT | 19 days ago |
| 586 | A skill your agent uses for authorized digital forensics including memory dumps, disk timelines, PCAP investigation, artifact triage, and IR evidence preservation. | zhaoxuya520/ | 41k | 2 repos | ~389 | Automated safety check: Warn | MIT | 19 days ago |
| 587 | 587.Email Security A skill your agent uses for authorized email security review including phishing analysis, header authentication (SPF/DKIM/DMARC), BEC patterns, and mailbox token abuse research. | zhaoxuya520/ | 41k | 2 repos | ~259 | Automated safety check: Warn | MIT | 19 days ago |
| 588 | A skill your agent uses for authorized hardware and embedded interface security research including UART/JTAG discovery, debug pad triage, secure boot overview, and offline firmware extraction support. | zhaoxuya520/ | 41k | 2 repos | ~266 | Automated safety check: Warn | MIT | 19 days ago |
| 589 | 589.Radio Sdr A skill your agent uses for authorized RF/SDR security research including signal identification, replay feasibility study in shielded labs, and wireless protocol analysis outside classic Wi-Fi. | zhaoxuya520/ | 41k | 2 repos | ~232 | Automated safety check: Warn | MIT | 19 days ago |
| 590 | 590.Threat Hunting A skill your agent uses for blue-team threat hunting, detection engineering with Sigma/YARA, SIEM query design, and incident detection validation. | zhaoxuya520/ | 41k | 2 repos | ~344 | Automated safety check: Warn | MIT | 19 days ago |
| 591 | 591.Wifi Wireless A skill your agent uses for authorized wireless security assessment including Wi-Fi capture, WPA handshake analysis, rogue AP detection research, and lab-only deauth testing. | zhaoxuya520/ | 41k | 2 repos | ~255 | Automated safety check: Warn | MIT | 19 days ago |
| 592 | Uses Meta's LlamaGuard moderation model to screen prompts and model replies against six safety categories, with vLLM, FastAPI and NeMo Guardrails setups. | Orchestra-Research/ | 13k | 2 repos | ~2.3k | Automated safety check: Pass | MIT | 3 mo ago |
| 593 | This skill should be used when the user asks to "verify code", "run verification", "check quality", "validate changes", or before creating a PR. | Galaxy-Dawn/ | 5.7k | 1 repo | ~888 | Automated safety check: Pass | MIT | 18 days ago |
| 594 | Guidance for designing secure APIs on Azure - authentication, authorization, gateway controls, input validation, rate limiting, secret management, and runtime threat detection - aligned to OWASP API… | vinayaklatthe/ | 175 | — | ~2.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 595 | 595.Upgrade Notes Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool. | getknit/ | 133 | — | ~1.2k | Automated safety check: Pass | GPL-3.0 | yesterday |
| 596 | 596.Sast Report Consolidate all SAST vulnerability results from the sast/ folder into a single final report ranked by severity and confidentiality impact. | utkusen/ | 1.3k | — | ~1.7k | Automated safety check: Pass | MIT | 6 mo ago |
| 597 | 597.Clusterfuzzlite Build, test, or update the iccDEV ClusterFuzzLite libFuzzer integration across ASan, UBSan, and MSan. | InternationalColorConsortium/ | 183 | — | ~1.5k | Automated safety check: Pass | BSD-3-Clause | 2 days ago |
| 598 | Builds and debugs Arcium encrypted computation apps on Solana: Arcis circuits, Anchor orchestration, encrypted inputs and the init, queue and callback flow. | sendaifun/ | 130 | — | ~2.8k | Automated safety check: Pass | MIT | 2 mo ago |
| 599 | Runs untrusted analysis targets inside Docker or Podman containers with memory, CPU and process limits, covering image builds, lifecycle, command execution and cleanup. | prime-radiant-inc/ | 292 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 600 | Lints Dockerfiles with Hadolint for security misconfigurations and best-practice violations, locally and in CI, with strict, balanced and permissive rule templates. | AgentSecOps/ | 220 | 1 repo | ~4.4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 601 | Static Application Security Testing (SAST) tool setup, configuration, and custom rule creation for comprehensive security scanning across multiple programming languages. | davila7/ | 33k | 11 repos | ~1.6k | Automated safety check: Pass | MIT | today |
| 602 | One-click deployment Skill for Windows security policies, daily security audits, behavior auditing, file baselines, logging and nightly audit task management | SafeAI-Lab-X/ | 1k | — | ~2.1k | Automated safety check: Pass | No licence | 1 mo ago |
| 603 | Guides writing bug bounty reports for HackerOne, Bugcrowd, Intigriti and Immunefi: impact-first titles, proven claims, CVSS 3.1 scoring and a pre-submit checklist. | awarexone/ | 5.3k | 2 repos | ~3.9k | Automated safety check: Pass | MIT | 2 days ago |
| 604 | Report/investigate RUNTIME ACTIVITY of AI agents (Agent 365 / Copilot Studio / M365 Copilot / Work IQ) — agents used, tools/connectors, channels, tokens, prompt/reply content, and Prompt Shield… | SCStelz/ | 249 | — | ~17k | Automated safety check: Pass | MIT | 3 days ago |
| 605 | Command reference for omniroute's audit, logs, policy and telemetry commands: search and export audit trails, manage access policies and review request history for compliance work. | diegosouzapw/ | 75k | — | ~733 | Automated safety check: Pass | MIT | today |
| 606 | Documents the OmniRoute REST endpoints for creating, listing, updating, regenerating and deleting API keys, with per-key scopes, spending limits, expiry and device lists. | diegosouzapw/ | 75k | — | ~1.4k | Automated safety check: Pass | MIT | today |
| 607 | Documents how OmniRoute authenticates requests: Bearer credentials for the API, management-password login with session cookies, CSRF tokens and optional OIDC for the dashboard. | diegosouzapw/ | 75k | — | ~1.9k | Automated safety check: Pass | MIT | today |
| 608 | 608.Analysing Attack Analyse Mitre ATT&CK tactics, techniques and sub-techniques. | tsale/ | 323 | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | 5 mo ago |
| 609 | Performs a comprehensive Amazon ECS operations review across the 6 review pillars (Resiliency & HA, Observability, Security, Operations, Performance, Additional Analysis) using read-only AWS APIs… | aws/ | 103 | — | ~4.8k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 610 | 610.Janitor Discover Find new skills on GitHub or check a specific skill before installing. | khendzel/ | 122 | — | ~1.6k | Automated safety check: Pass | MIT | 11 days ago |
| 611 | 611.Fuzz Testing Add, run or schedule a fuzz target in this repository. An agent skill from s3s-project/s3s. | s3s-project/ | 311 | — | ~838 | Automated safety check: Pass | Apache-2.0 | 3 days ago |
| 612 | Reconstructs folder browsing history from Windows Shellbag registry data using SBECmd and Shellbags Explorer, even for folders that were later deleted. | mukul975/ | 34k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 613 | Design and interpret advanced content discovery with ffuf and complementary web fuzzers. | cyberful/ | 135 | — | ~1.5k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 614 | 614.Afa Ops DTC 运营与供应链——仓储物流、库存、3PL、发货时效、供应商、关税成本。触发词: 运营, operations, 供应链, 仓储, 物流, 库存, 3PL, 履约, 供应商, supply chain, fulfillment, inventory management, shipping times。复杂问题先经 afa。 | afadtc/ | 168 | — | ~2.4k | Automated safety check: Pass | Unknown | 3 days ago |
| 615 | 615.Security Review Review Langfuse changes for SSRF, tenant isolation, secret handling, unsafe redirects or uploads, RBAC drift, and client telemetry privacy. | langfuse/ | 36k | — | ~1.4k | Automated safety check: Pass | Unknown | today |
| 616 | Create batched Dependabot-style pull requests for GitHub security findings in axelixlabs/axelix, grouped by dependency surface such as master/front-end, master/build.gradle.kts, or starter Gradle… | axelixlabs/ | 148 | — | ~4.2k | Automated safety check: Pass | LGPL-3.0 | yesterday |
| 617 | Reviews staged changes, a branch, a PR or a path for bugs, security gaps and performance issues, then writes an evidence-based report and creates Beads tasks. | maslennikov-ig/ | 260 | — | ~2k | Automated safety check: Pass | Unknown | 7 mo ago |
| 618 | 618.Nmap Recon Network reconnaissance workflow using nmap, masscan, and rustscan via NyxStrike tools | CommonHuman-Lab/ | 157 | — | ~639 | Automated safety check: Pass | Unknown | 2 days ago |
| 619 | Database migration creation with mandatory RLS policies and ARCHitect approval workflow. Use when creating migrations, adding tables with RLS… | bybren-llc/ | 423 | — | ~1.3k | Automated safety check: Pass | MIT | 2 mo ago |
| 620 | Build metric-driven Chimera/create-chimera-app stateful invariant testing campaigns for Solidity projects. | aviggiano/ | 144 | — | ~2.8k | Automated safety check: Pass | MIT | 26 days ago |
| 621 | 621.Council Run a model-diverse subagent council to investigate the same problem from multiple perspectives, compare findings, and produce a final recommendation. | warpdotdev/ | 610 | 1 repo | ~1.8k | Automated safety check: Pass | MIT | 2 days ago |
| 622 | Scan systems and dependencies for CVEs and security vulnerabilities. | BagelHole/ | 1.2k | — | ~2.4k | Automated safety check: Pass | MIT | 4 mo ago |
| 623 | Runs untrusted or AI-generated code in isolated Deno Sandbox microVMs using the @deno/sandbox SDK, with lifecycle, process and streaming guidance. | denoland/ | 100 | — | ~2.7k | Automated safety check: Pass | MIT | 2 mo ago |
| 624 | 624.Container Sbom Generates CycloneDX BOMs for container images, OCI archives, mounted root filesystems, Electron ASAR archives, caxa executables, binaries, and Kubernetes or Dockerfile manifests using OWASP cdxgen… | cdxgen/ | 1.1k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | today |