Search
Security · For developers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 769 | 769.Java Decompiler Decompile Java applications (JAR/WAR/APK/class) — extract archives, detect obfuscators, decompile bytecode to source, analyse license logic and secrets. | ptn1411/ | 219 | — | ~788 | Automated safety check: Notes | No licence | 19 days ago |
| 770 | Defensive audit of a license/entitlement/activation mechanism on software you own or are authorized to test. | ptn1411/ | 219 | — | ~1k | Automated safety check: Notes | No licence | 19 days ago |
| 771 | 771.Network Scanner Run authorized network reconnaissance with Nmap on Windows (or Linux). | ptn1411/ | 219 | — | ~1.4k | Automated safety check: Notes | No licence | 19 days ago |
| 772 | Analyze Rust native binaries — demangle symbols, extract panic paths to reconstruct module map, detect frameworks (Tauri/Actix/Rocket/Axum), locate license validation logic. | ptn1411/ | 219 | — | ~586 | Automated safety check: Notes | No licence | 19 days ago |
| 773 | Zero friction. An agent skill from HKUDS/CLI-Anything. | HKUDS/ | 52k | — | ~360 | Automated safety check: Pass | Apache-2.0 | 19 days ago |
| 774 | 774.Code Reviewer Default code-quality route for broad code review, PR review, maintainability, correctness, and regression-risk checks. | foryourhealth111-pixel/ | 3.6k | — | ~1.4k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 775 | Parse Office 365 Unified Audit Logs via Microsoft Graph API to detect email forwarding rule creation, inbox delegation, suspicious OAuth app grants, and other indicators of account compromise. | mukul975/ | 34k | — | ~584 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 776 | Detect unusual API call patterns in AWS CloudTrail logs using boto3, statistical baselining, and behavioral analysis to identify credential compromise, privilege escalation, and unauthorized… | mukul975/ | 34k | — | ~751 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 777 | Detect AWS IAM privilege escalation paths using boto3 and Cloudsplaining policy analysis to identify overly permissive policies, dangerous permission combinations, and least-privilege violations | mukul975/ | 34k | — | ~609 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 778 | Detect lateral movement in Azure AD/Entra ID environments using Microsoft Graph API audit logs, Azure Sentinel KQL hunting queries, and sign-in anomaly correlation to identify privilege escalation… | mukul975/ | 34k | — | ~808 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 779 | Deploy Runtime Application Self-Protection (RASP) agents to detect and block attacks from within application runtime, covering OpenRASP integration, attack pattern detection, and security policy… | mukul975/ | 34k | — | ~754 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 780 | 780.Cms Detection Identify CMS, frameworks, and server technology stacks on live hosts. | uphiago/ | 1.3k | — | ~2k | Automated safety check: Pass | MIT | 1 mo ago |
| 781 | High-precision Google dorks for exposed configs, secrets, and credentials -- real-world validated | uphiago/ | 1.3k | — | ~1.1k | Automated safety check: Notes | MIT | 1 mo ago |
| 782 | Spoof HTTP/2 SETTINGS frames and pseudo-header order per browser profile. | uphiago/ | 1.3k | — | ~2.4k | Automated safety check: Pass | MIT | 1 mo ago |
| 783 | 783.Source Leak Hunt Mass scan for exposed env files, backups, and git configs. An agent skill from uphiago/recon-skills. | uphiago/ | 1.3k | — | ~2.2k | Automated safety check: Notes | MIT | 1 mo ago |
| 784 | Launch stealth Chromium with C++ fingerprint patches for anti-bot bypass. | uphiago/ | 1.3k | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 785 | Spoof TLS ClientHello and JA4 fingerprints for browser impersonation. | uphiago/ | 1.3k | — | ~2.1k | Automated safety check: Pass | MIT | 1 mo ago |
| 786 | 786.Visual Recon Screenshot all live hosts for rapid visual triage and technology fingerprinting. | uphiago/ | 1.3k | — | ~1.5k | Automated safety check: Pass | MIT | 1 mo ago |
| 787 | A skill your agent uses for OpenIAP monorepo work that should follow the repository's shared agent workflows, including review-pr, audit-code, audit-security, audit-iapkit, compile-knowledge… | hyodotdev/ | 155 | — | ~1.9k | Automated safety check: Pass | MIT | yesterday |
| 788 | Verify exact SillyTavern, Tavern Helper / JS-Slash-Runner, STScript, macro, prompt-injection, worldbook, EJS, MVU, and runtime-library capabilities before implementing or reviewing rolecard… | LiarMTTT/ | 154 | — | ~2.4k | Automated safety check: Pass | Unknown | 7 days ago |
| 789 | 789.Security Review Use before committing changes to auth, workspace scoping, channel webhooks, AI tools/MCP, permission settings, or anything handling untrusted channel content in ChatbotX. | ChatbotXIO/ | 885 | — | ~1.8k | Automated safety check: Notes | Unknown | 2 days ago |
| 790 | 790.Audit Skills Expert security auditor for AI Skills and Bundles. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~1.6k | Automated safety check: Warn | MIT | 2 days ago |
| 791 | 791.Safety Scan Scan inputs for prompt injection, unsafe content, and adversarial attacks using AIDefence. | ruvnet/ | 74k | — | ~409 | Automated safety check: Notes | MIT | yesterday |
| 792 | 792.Pump Security Defense-in-depth security across Rust, TypeScript, and Bash for the Pump SDK — cryptographic key handling, memory zeroization, secure file I/O, input validation, privilege management, dependency… | nirholas/ | 134 | — | ~892 | Automated safety check: Pass | Unknown | 2 days ago |
| 793 | 793.Solo Maintainer Operates this repository as a solo maintainer across PR triage, issue handling, release work, deploys, ops checks, cost checks, security review, and docs drift. | serithemage/ | 196 | — | ~322 | Automated safety check: Pass | No licence | 6 mo ago |
| 794 | Comprehensive infrastructure security audit framework for IaC, Docker, Kubernetes, and cloud configurations. | forefy/ | 152 | — | ~3.7k | Automated safety check: Notes | MIT | 6 days ago |
| 795 | Review the implementation source code of MCP (Model Context Protocol) servers, clients, and tool handlers against a security baseline — authentication, sessions, rate limiting, input-schema… | github/ | 40k | — | ~5.2k | Automated safety check: Pass | MIT | 2 days ago |
| 796 | A skill your agent uses when the user says 'dependency audit', 'npm audit', 'pip audit', 'cargo audit', 'security vulnerabilities', 'outdated packages', 'supply chain', or needs to scan project… | cwinvestments/ | 423 | — | ~3.1k | Automated safety check: Pass | Proprietary | 15 days ago |
| 797 | A skill your agent uses when an open-source developer tool, package, CLI, agent, or MCP server must be evaluated for legitimacy, supply-chain risk, telemetry, dangerous capabilities, claim accuracy… | asimons81/ | 126 | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 798 | 798.Screenshot Burp Capture a Burp Suite Repeater request/response as a PoC image (targets/<eng/poc/) by driving the Burp MCP + the Kali GUI. | Encod3d-Sec/ | 329 | — | ~1.9k | Automated safety check: Notes | MIT | 1 mo ago |
| 799 | Detect package managers and CI action pins, then discover outdated or vulnerable dependencies. | tobihagemann/ | 408 | — | ~1.5k | Automated safety check: Pass | MIT | 2 days ago |
| 800 | 800.Domain Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search. | notque/ | 441 | — | ~3.7k | Automated safety check: Notes | MIT | 2 days ago |
| 801 | Security auditor for Laravel applications. An agent skill from aiskillstore/marketplace. | aiskillstore/ | 433 | 4 repos | ~1.1k | Automated safety check: Notes | No licence | yesterday |
| 802 | Handle CVE/vulnerability reports from security linters (trivy, osv-scanner, etc.). | hardisgroupcom/ | 403 | — | ~1.3k | Automated safety check: Notes | AGPL-3.0 | yesterday |
| 803 | 803.Create Policy Create OPA governance policies for Harness via MCP. An agent skill from harness/harness-skills. | harness/ | 115 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 804 | 804.Update Deps Dependabot-aware dependency updates with security audit, real-CI validation, and a unified PR. | joshukraine/ | 429 | — | ~2.2k | Automated safety check: Pass | MIT | 5 days ago |
| 805 | Performs runtime dynamic analysis of Android applications using Frida, Objection, and Android Debug Bridge to observe application behavior during execution, intercept function calls, modify runtime… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 806 | Performs forensic analysis of SQLite databases by examining B-tree page structures, recovering deleted records from freelist pages and Write-Ahead Log (WAL) files, decoding encoded timestamps, and… | mukul975/ | 34k | — | ~3.6k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 807 | Azure Key Vault SDK for Python. An agent skill from microsoft/skills. | microsoft/ | 3.1k | — | ~2.4k | Automated safety check: Pass | MIT | 2 days ago |
| 808 | AI/LLM defensive security reference: prompt-injection defense, OWASP LLM Top 10 defensive mapping, MCP and agentic tool-call hardening, training-data poisoning detection, model-output validation and… | modu-ai/ | 1.2k | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 809 | 809.Moai Ref Secops DevSecOps, container, and API operational defensive security reference: CI/CD pipeline hardening, secret scanning, IaC misconfiguration detection, SAST/DAST integration, container image scanning… | modu-ai/ | 1.2k | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 810 | 810.Dep Lib Review Periodic dependency review for Node.js/pnpm projects — outdated package triage, security audit, update batching strategy (patch/minor/major), validation checklist. | mizchi/ | 360 | — | ~1.8k | Automated safety check: Pass | No licence | 9 days ago |
| 811 | 811.SQL Security SQL injection screening for host code (MoonBit / TS / Rust) plus secretlint setup notes. | mizchi/ | 360 | — | ~1.4k | Automated safety check: Pass | No licence | 9 days ago |
| 812 | 812.Credentials Centralized API key management from Access.txt. An agent skill from alinaqi/maggy. | alinaqi/ | 707 | — | ~2.4k | Automated safety check: Notes | MIT | 17 days ago |
| 813 | 813.Debug Rule Debug a rule or approximation that behaves unexpectedly by tracing where taint is dropped. | seqra/ | 163 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 814 | 814.Aif Set up agent context for a project. An agent skill from unxed/f4. | unxed/ | 243 | — | ~8.4k | Automated safety check: Pass | BSD-3-Clause | yesterday |
| 815 | 当目标为微信/支付宝/抖音/百度等小程序(含微信云开发/云函数)、需要小程序包获取与反编译、appid/appsecret/接口提取、微信登录链/支付/越权/WebView/rich-text 渲染/云开发漏洞挖掘时调用。负责小程序全生命周期深度挖掘:包还原 → 代码审计 → 接口与密钥提取 → 登录/支付/越权/渲染/云开发专项 → 验证要点。命中场景:openid 替换越权、code… | zhaji2333/ | 115 | — | ~1.5k | Automated safety check: Pass | MIT | 26 days ago |
| 816 | Detect and analyze SQL injection vulnerabilities in application code and database queries. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |