Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 577 | 577.Analyze Cve Full Go CVE analysis workflow. An agent skill from openshift-eng/ai-helpers. | openshift-eng/ | 120 | — | ~2k | Automated safety check: Notes | Apache-2.0 | 5 days ago |
| 578 | 578.Nanostack A skill your agent uses when the user asks about available workflow skills, wants an overview of the engineering workflow, or references "nanostack". | garagon/ | 207 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 579 | A skill your agent uses when Codex is already in the attack-path-analysis phase of a security scan or the user explicitly asks to trace a security finding from source to sink and calibrate severity. | vlinx-io/ | 281 | 1 repo | ~2.1k | Automated safety check: Pass | MIT | 4 days ago |
| 580 | 580.Validation A skill your agent uses when Codex is already in the validation phase of a security scan or the user explicitly asks to determine whether one or more candidate security findings are valid. | vlinx-io/ | 281 | 1 repo | ~3.2k | Automated safety check: Pass | MIT | 4 days ago |
| 581 | Safely simulates and applies Identity and Access Management (IAM) v1 (Allow) policy changes on Google Cloud. | google/ | 21k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 582 | Generates security-focused guidance for Google Cloud workloads based on the design principles and recommendations in the Google Cloud Well-Architected Framework (WAF). | google/ | 21k | 1 repo | ~4.2k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 583 | 583.Platform Trust Inkline's platform & trust surface — the styleframe license boundary, supply-chain and secrets hygiene, npm distribution integrity, and the future Studio/commercial direction. | inkline/ | 1.5k | — | ~1.1k | Automated safety check: Pass | No licence | 1 mo ago |
| 584 | Passively map a company's domains, subdomains, DNS ownership, tech stack, and CDNs. | forefy/ | 152 | — | ~3.1k | Automated safety check: Pass | MIT | 7 days ago |
| 585 | 585.Xctf Data NCAA cross country and track & field athlete data via TFRRS (tfrrs.org) and news via The Stride Report. | machina-sports/ | 243 | — | ~2k | Automated safety check: Pass | MIT | 6 days ago |
| 586 | Design and plan end-to-end Azure IoT and Smart City solutions: requirements, architecture, security, operations, cost, and a phased delivery plan with concrete implementation artifacts. | github/ | 40k | 1 repo | ~1.4k | Automated safety check: Pass | MIT | 2 days ago |
| 587 | 587.Audit Recon A skill your agent uses when performing initial audit reconnaissance. | ccashwell/ | 131 | — | ~1.5k | Automated safety check: Pass | MIT | 11 days ago |
| 588 | 588.Horse Ssl Tls Guide to enabling SSL/TLS, configuring HTTPS, handling certificates, and securing transport layers. | HashLoad/ | 1.4k | — | ~841 | Automated safety check: Pass | MIT | 4 days ago |
| 589 | 589.Vulnhunter Security vulnerability detection and variant analysis skill. | sendaifun/ | 130 | 1 repo | ~2.3k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 590 | 590.Codeql Audit Build a CodeQL database and run dataflow-backed query-suite analysis via the mantiscodeql MCP server | deonmenezes/ | 503 | — | ~325 | Automated safety check: Pass | Apache-2.0 | 8 days ago |
| 591 | Harden AI/LLM deployments against prompt injection, data exfiltration, model theft, and supply chain attacks. | sickn33/ | 47k | 1 repo | ~2.7k | Automated safety check: Pass | MIT | 2 days ago |
| 592 | 592.Code Audit Authorized source-code security review and SAST workflows: Semgrep and CodeQL pattern hunting, dangerous API identification, and fix verification. | sickn33/ | 47k | 1 repo | ~480 | Automated safety check: Pass | MIT | 2 days ago |
| 593 | Cross-chain relayer bridge audit register: message hash verifications, replay protection nonces, validator quorum, and withdrawal proofs. | sickn33/ | 47k | 1 repo | ~1.4k | Automated safety check: Pass | MIT | 2 days ago |
| 594 | 594.Cyber Audit Run read-only exposure checks for security advisories and write a structured local audit report. | sickn33/ | 47k | 1 repo | ~1.4k | Automated safety check: Pass | MIT | 2 days ago |
| 595 | External SSL VPN / remote-access appliance attack matrix. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 1 repo | ~4.7k | Automated safety check: Pass | MIT | 2 days ago |
| 596 | 596.Hashicorp Vault Manage secrets and PKI with HashiCorp Vault. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 1 repo | ~2.2k | Automated safety check: Pass | MIT | 2 days ago |
| 597 | 597.Hunt Auth Bypass Hunting skill for auth bypass vulnerabilities. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 1 repo | ~6.6k | Automated safety check: Pass | MIT | 2 days ago |
| 598 | Hunt cloud / infrastructure misconfigurations. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 1 repo | ~3.6k | Automated safety check: Notes | MIT | 2 days ago |
| 599 | 599.Luna Reviews code for objective correctness, security, and reliability. | sickn33/ | 47k | 1 repo | ~1.6k | Automated safety check: Pass | MIT | 2 days ago |
| 600 | Harden OpenClaw self-hosted environments with baseline host controls, auth tightening, secret handling, network segmentation, and safe update/rollback workflows. | sickn33/ | 47k | 1 repo | ~1.2k | Automated safety check: Notes | MIT | 2 days ago |
| 601 | Triage ASM/recon output for ownership before testing. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 1 repo | ~2.3k | Automated safety check: Notes | MIT | 2 days ago |
| 602 | Reference document for monopoly security-checklist. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 1 repo | ~803 | Automated safety check: Pass | MIT | 2 days ago |
| 603 | 603.Threat Hunting Blue-team threat hunting: detection engineering with Sigma/YARA, SIEM query design, and validation of incident detections against known technique patterns. | sickn33/ | 47k | 1 repo | ~474 | Automated safety check: Pass | MIT | 2 days ago |
| 604 | Scan systems and dependencies for CVEs and security vulnerabilities. | sickn33/ | 47k | 1 repo | ~2.8k | Automated safety check: Pass | MIT | 2 days ago |
| 605 | Zero-knowledge cryptographic verification pipeline register: proving system, circuit verification keys, public inputs, and gas costs. | sickn33/ | 47k | 1 repo | ~1.3k | Automated safety check: Pass | MIT | 2 days ago |
| 606 | Prepare a defense-contractor environment for CMMC Level 2 certification: scope CUI and FCI, implement the 110 NIST SP 800-171 Rev 2 security requirements across 14 families, compute the SPRS score… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 607 | Build effective detection rules using Splunk Search Processing Language (SPL) correlation searches to identify security threats in SOC environments. | mukul975/ | 34k | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 608 | Configures TLS 1.3 (RFC 8446) on servers, covering cipher suite and key-exchange group selection, and validates the resulting configuration with openssl sclient and testssl.sh. | mukul975/ | 34k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 609 | Plan, run, and measure an adversary engagement operation using the MITRE Engage framework so that deployed deception is driven by strategy instead of deployed ad hoc. | mukul975/ | 34k | — | ~3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 610 | Detect Business Email Compromise (BEC) fraud, where attackers impersonate executives or vendors to trick employees into wire transfers or data disclosure without malicious links, using email gateway… | mukul975/ | 34k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 611 | Detect NTLM relay attacks (T1557.001) by correlating Windows Event 4624 LogonType 3 for IP-to-hostname mismatches, identifying Responder/LLMNR poisoning artifacts, auditing SMB/LDAP signing, and… | mukul975/ | 34k | — | ~8.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 612 | Detect and prevent QR code phishing (quishing) attacks that embed malicious URLs inside QR code images to bypass link-based email security, using image-based threat detection, OCR/QR decoding, and… | mukul975/ | 34k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 613 | Drive a federal system through the NIST Risk Management Framework (SP 800-37 Rev 2) to an Authorization to Operate (ATO): Prepare, Categorize (FIPS 199), Select a control baseline (FIPS 200 / SP… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 614 | Hunt for spearphishing campaign indicators across email logs, endpoint telemetry, and network data to detect targeted email attacks. | mukul975/ | 34k | — | ~1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 615 | Build AWS Nitro Enclave confidential computing environments using nitro-cli to create enclave images, configure attestation-aware KMS policies with PCR condition keys, validate attestation documents… | mukul975/ | 34k | — | ~5.5k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 616 | The Diamond Model of Intrusion Analysis provides a structured framework for analyzing cyber intrusions by examining four core features - Adversary, Capability, Infrastructure, and Victim. | mukul975/ | 34k | — | ~1.6k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 617 | Implements digital signatures using the Ed25519 algorithm (Curve25519), covering key-pair generation, signing, signature verification, and security tradeoffs versus RSA and ECDSA. | mukul975/ | 34k | — | ~875 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 618 | Email sandboxing detonates suspicious attachments and URLs in isolated environments to detect zero-day malware and evasive phishing payloads. | mukul975/ | 34k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 619 | Implements a simplified Signal Protocol-style end-to-end encryption scheme for messaging, covering key exchange, forward secrecy, and the core cryptographic components so no server or intermediary… | mukul975/ | 34k | — | ~843 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 620 | Implements envelope encryption with AWS KMS, encrypting data locally with a data encryption key (DEK) and protecting that DEK with a KMS-managed key (KEK), covering the encrypt/decrypt flow, KMS key… | mukul975/ | 34k | — | ~954 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 621 | Implements Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access, covering approval workflows, automatic expiration/revocation, and PAM/IGA… | mukul975/ | 34k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 622 | Implement MITRE ATT&CK coverage mapping to identify detection gaps, prioritize rule development, and measure SOC detection maturity against adversary techniques. | mukul975/ | 34k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 623 | Queries Arkime (formerly Moloch) full packet capture via its API to search sessions, download PCAPs, detect C2 beaconing through connection interval/jitter stats, spot DNS tunneling via query-length… | mukul975/ | 34k | — | ~557 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 624 | Patch management is the systematic process of identifying, testing, deploying, and verifying software updates to remediate vulnerabilities across an organization's IT infrastructure. | mukul975/ | 34k | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |