Search
Security
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 673 | 673.Security Testing Scans for security vulnerabilities including XSS, SQL injection, CSRF, and auth flaws using OWASP Top 10 methodology. | proffesor-for-testing/ | 495 | — | ~2.7k | Automated safety check: Notes | MIT | yesterday |
| 674 | Search and contribute to the shared AI-modding knowledge base, where field notes record how specific games were modded, decompiled or reverse-engineered (exact versions, route, engine facts… | rehan-remade/ | 6.5k | — | ~1.1k | Automated safety check: Pass | MIT | today |
| 675 | Scan a built container image with Trivy, classify fixable Go-module and base-image CVEs, apply dependency and Dockerfile fixes, and verify the result with file checks and an optional image rescan. | kubernetes-sigs/ | 294 | — | ~818 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 676 | 676.AI Agent Posture Audit or report on AI agent security posture across Copilot Studio, Microsoft 365 Copilot, Microsoft Foundry, and third-party agents. | SCStelz/ | 249 | — | ~21k | Automated safety check: Pass | MIT | 3 days ago |
| 677 | Installs and configures the WizTelemetry Auditing extension for KubeSphere, which collects and stores Kubernetes audit events, and covers the audit query API. | kubesphere/ | 17k | — | ~2.2k | Automated safety check: Pass | Unknown | 2 mo ago |
| 678 | "보안 점검", "security check", "security audit", "취약점 분석", "vulnerability scan", "보안 감사", "시크릿 노출", "API 보안", "인증 점검", "rate limit" 등 보안 관련 코드 리뷰나 취약점 감사 시 사용하세요. | imgompanda/ | 140 | — | ~371 | Automated safety check: Notes | MIT | 6 mo ago |
| 679 | Fix open Dependabot and CodeQL/code-scanning alerts directly on the current branch. | cloudposse/ | 1.4k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 680 | Run clang-format (prefer clang-format19), clang-tidy19, and cppcheck on staged C/C header changes before committing; auto-format then fail on serious diagnostics. | MidnightBSD/ | 114 | — | ~412 | Automated safety check: Pass | Unknown | 2 days ago |
| 681 | Harden an application or service against common attack vectors. | agulli/ | 579 | — | ~714 | Automated safety check: Notes | MIT | 2 mo ago |
| 682 | 682.Agent Wallet Give the AI agent its own EVM wallet with admin-controlled policies the agent CANNOT bypass even under prompt injection. | internet-court/ | 6.6k | 1 repo | ~4.1k | Automated safety check: Pass | MIT | 1 mo ago |
| 683 | Build a high-fidelity network and service inventory using Nmap, Masscan, packet capture, DNS, and protocol-specific follow-up. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 684 | 684.Review Criteria Classify Datapages findings by reach and severity and write review-.md reports. | romshark/ | 114 | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 685 | Guides designing a layered permission pipeline for agent tools that decides which calls are allowed, need confirmation or are denied, with scopes and hooks. | simbajigege/ | 183 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 686 | 686.Extract Crashes Extract crash inputs from fuzzing output into a target directory. | opensage-agent/ | 127 | — | ~215 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 687 | 687.Case Review Reviews a reverse-skill case package for scope readiness, Evidence to Finding to Path traceability, work item coverage, timeline references, and optional artifact hash integrity before report handoff. | zhaoxuya520/ | 41k | 1 repo | ~1.6k | Automated safety check: Warn | MIT | 19 days ago |
| 688 | 688.Security Arsenal Security payloads, bypass tables, wordlists, gf pattern names, always-rejected bug list, conditionally-valid-with-chain table, temp email creation scripts, XXE/deserialization/host header injection… | Gabson0x/ | 442 | — | ~8.5k | Automated safety check: Warn | No licence | 24 days ago |
| 689 | 689.Severity Estimate the severity of a vulnerability finding and produce a CVSS 3.1 vector + impact framing, calibrated against how similar findings were rated in the local disclosed-report corpus. | bugbountywithmarco/ | 120 | — | ~478 | Automated safety check: Pass | No licence | 2 mo ago |
| 690 | Guides writing and improving fuzzing harnesses for C, C++ and Rust so random byte input gets translated into structured, reproducible test cases for the target code. | trailofbits/ | 7.5k | 1 repo | ~5.3k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 691 | 691.Crypto Bom Generates a CycloneDX Cryptographic Bill of Materials (CBOM) with the cdxgen cbom command, inventorying cryptographic algorithms, certificates, keys, and protocol usage from source code and hosts… | cdxgen/ | 1.1k | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | today |
| 692 | Decides when a main pentesting agent should hand a fully-specified, mechanical exploit-compile or privilege-escalation step to a cheaper sub-agent, and how to specify that handoff safely. | Encod3d-Sec/ | 329 | — | ~1.6k | Automated safety check: Notes | MIT | 1 mo ago |
| 693 | 693.Review Review code quality, security, and maintainability before committing. | Thank-you-Linus/ | 211 | — | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 694 | Security-focused source code review and SAST. An agent skill from transilienceai/communitytools. | transilienceai/ | 563 | — | ~1.2k | Automated safety check: Notes | MIT | 2 mo ago |
| 695 | 695.Catalog Constructs catalog products (standard or limited), catalog orders, and account-credit enrollment, including product-then-credit scenes. | openqa-cn/ | 152 | — | ~514 | Automated safety check: Pass | Apache-2.0 | 8 days ago |
| 696 | Reviews a diff, module or network surface for exploitable defects, mapping trust boundaries and sinks, then reports only findings with a verified reachable path and a fix. | codewhale-hq/ | 41k | — | ~844 | Automated safety check: Pass | MIT | today |
| 697 | OpenClaw 攻击模式检测工具,识别数据外传、反弹Shell、文件泄露、Prompt注入、供应链投毒等高危行为,支持 MITRE ATT&CK 映射 | jd-opensource/ | 314 | — | ~1.3k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 698 | Tests a target AI agent for sensitive information disclosure, such as its system prompt, credentials, personal data and internal configuration, using escalating dialogue probes. | Tencent/ | 6.8k | — | ~954 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 699 | 699.Flight Recorder Black box flight recorder for the server. An agent skill from bolivian-peru/os-moda. | bolivian-peru/ | 119 | — | ~624 | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 700 | Loads a missing environment variable or API key from the team's Infisical workspace into the current shell, or runs a command with all project secrets injected. | Devin-AXIS/ | 6.8k | 1 repo | ~516 | Automated safety check: Pass | Unknown | yesterday |
| 701 | 701.Csf Mapping Map your security posture against the NIST Cybersecurity Framework 2.0 (Govern, Identify, Protect, Detect, Respond, Recover). | briiirussell/ | 413 | — | ~3k | Automated safety check: Notes | MIT | 4 mo ago |
| 702 | 702.Php Expr Audit PHP Web 源码表达式注入(非模板)审计工具。识别用户可控表达式字符串进入表达式引擎求值/编译并最终导致敏感语义执行,输出可利用性分级、PoC 与修复建议(禁止省略)。 | 0xShe/ | 402 | 1 repo | ~720 | Automated safety check: Pass | No licence | 6 mo ago |
| 703 | Wiring an LLM into a recon tool's decisions ("let AI pick {feature} for {tool}"): the never-raise contract, the per-target cache, the full+partial coverage, and the two UI toggles bound to one field. | samugit83/ | 3k | — | ~2.2k | Automated safety check: Pass | MIT | 3 days ago |
| 704 | Plans and builds full-stack features with frontend, backend and security handled together, including a written design and a security checklist before any code. | Jeffallan/ | 12k | — | ~1.5k | Automated safety check: Pass | MIT | 8 days ago |
| 705 | Guides secure implementation of authentication, authorization, input validation and security headers, with password hashing, parameterized queries and OWASP Top 10 checks. | Jeffallan/ | 12k | — | ~1.8k | Automated safety check: Pass | MIT | 8 days ago |
| 706 | Audits code and infrastructure for vulnerabilities and produces a severity-rated report with locations and remediation, using SAST, dependency and secrets scans plus manual review. | Jeffallan/ | 12k | — | ~1.3k | Automated safety check: Pass | MIT | 8 days ago |
| 707 | Replaces raw offsets and anonymous fields in a TH08 C++ source reconstruction with evidence-backed names and types, without changing accepted bytes or playable behavior. | N0zoM1z0/ | 105 | — | ~2.3k | Automated safety check: Pass | MIT | today |
| 708 | Maintain a Mira detection topic after user confirmation. An agent skill from vw2x/Mira. | vw2x/ | 105 | — | ~575 | Automated safety check: Pass | GPL-3.0 | 6 days ago |
| 709 | Plans ComPDF Server API requests to encrypt PDFs with AES-128, AES-256 or RC4, set passwords and permissions, and remove passwords from files you are authorized to open. | ComPDFKit/ | 109 | — | ~812 | Automated safety check: Pass | No licence | 2 mo ago |
| 710 | 710.Kerberos Attacks Kerberos-based Active Directory attacks driven by hand with standard tooling (Kerberoasting, AS-REP roasting, and delegation abuse: unconstrained, constrained/S4U, RBCD). | ADScanPro/ | 211 | — | ~2.9k | Automated safety check: Notes | MIT | 1 mo ago |
| 711 | 711.Csrf Testing Cross-site request forgery testing for state-changing operations | NeoTheCapt/ | 143 | — | ~791 | Automated safety check: Pass | No licence | 2 mo ago |
| 712 | Pin the npm registry to the public default and fetch published release notes | cisco-ai-defense/ | 2.6k | — | ~180 | Automated safety check: Notes | Apache-2.0 | 2 days ago |
| 713 | Check reburp's Montoya API coverage and detect when a Burp/Montoya upgrade added or changed APIs. | forefy/ | 117 | — | ~213 | Automated safety check: Pass | MIT | 7 days ago |
| 714 | 714.Cso Chief Security Officer mode. An agent skill from no-session/pstack. | no-session/ | 136 | — | ~12k | Automated safety check: Notes | MIT | 6 mo ago |
| 715 | 715.Web2 Recon Web2 recon pipeline — subdomain enum, URL crawling, JS analysis, temp emails, directory fuzzing. | Gabson0x/ | 442 | — | ~1.6k | Automated safety check: Pass | No licence | 24 days ago |
| 716 | Search for existing cases related to specific indicators or entities. | dandye/ | 127 | — | ~562 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 717 | 717.Update Vulndb Update the embedded build platform vulnerability database from the CVE Project's cvelistV5 repository. | boostsecurityio/ | 523 | — | ~173 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 718 | 718.Asc Fast Hunt 当需要在不对 APK 全量反编译的前提下秒级定位硬编码密钥/签名函数/隐藏接口/调试后门,或 APK 过大(100MB)JADX 全量反编译过慢、内存吃紧,或脱壳产物(裸 dex)需要快速检索,或只想先读一下 Manifest 组件面/权限清单时调用。负责基于 Droid ASC 的零预处理快速定位(findrefs 全局交叉引用搜索 + getclass 按需反编译 + Manifest… | zhaji2333/ | 115 | — | ~3.3k | Automated safety check: Pass | MIT | 26 days ago |
| 719 | 719.Security Convex Review Convex security audit patterns for authentication and authorization. | IgorWarzocha/ | 122 | — | ~3.1k | Automated safety check: Pass | No licence | 8 mo ago |
| 720 | Security patterns for autonomous trading agents with wallet or transaction authority. | affaan-m/ | 277k | 2 repos | ~1.2k | Automated safety check: Pass | MIT | today |