Search

Security · Model Context Protocol

157 skills found, page 2.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
49

Applies the AI SAFE2 v3.1 governance framework to designing, building, auditing and testing AI agents, RAG pipelines, MCP and tool integrations and AI infrastructure.

CyberStrategyInstitute/ai-safe2-framework147—~2.7kAutomated safety check: PassUnknownyesterday
50
50.Auto

Autonomous, non-interactive run of the whole lifecycle for one development task — size, plan, build, gate, review, fix, commit — without stopping for questions.

guardana/guardana259—~945Automated safety check: PassApache-2.0today
51
51.Keel

A skill your agent uses for ANY new software project from idea to release — websites, WordPress/WooCommerce plugins, MCP servers, web apps, components, or libraries.

joseconti/declaracion-renta-espana190—~11kAutomated safety check: WarnGPL-3.0-or-later2 mo ago
52

Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug; invisible to Frida checks), twin tools cross-check each other.

index-login/MobileRE-Skill158—~1.9kAutomated safety check: PassMITyesterday
53

Remediate security vulnerabilities found by Grype or pnpm audit.

stacklok/toolhive-studio171—~2.3kAutomated safety check: NotesApache-2.0yesterday
54

Diagnose a denied Tenuo call and make the legitimate call work with the smallest change to authority.

tenuo-ai/tenuo103—~2.3kAutomated safety check: PassApache-2.0yesterday
55

Scan your Claude Code configuration (.claude/ directory) for security vulnerabilities, misconfigurations, and injection risks using AgentShield.

affaan-m/ECC277k5 repos~1.1kAutomated safety check: PassMITtoday
56

Refreshes the guide's coding-agent and MCP security threat data through AgentSec Triage: research advisories, add tested records and synchronize the public feed.

FlorianBruniaux/claude-code-ultimate-guide6.1k—~680Automated safety check: PassCC-BY-SA-4.0today
57

The Priority Board's three-layer score model (rules BASE, REVIEW by the built-in AI or an MCP agent, a person's DECISION) and who may write which layer.

samugit83/redamon3k—~1.7kAutomated safety check: PassMIT2 days ago
58

Perform exhaustive analysis of a critical IOC. An agent skill from dandye/ai-runbooks.

dandye/ai-runbooks127—~1.1kAutomated safety check: PassApache-2.01 mo ago
59

Scan AI agent skills, plugins, MCP servers, and agent tooling for prompt injection, unsafe commands, secret exposure, and supply-chain risks before installing or trusting them.

iflytek/skillhub5.2k2 repos~1.1kAutomated safety check: NotesApache-2.0yesterday
60
60.Docs

Documentation work in this repo — the five places a user-visible change must answer, the page conventions the site build enforces, the tests that pin prose to the registry, and a simplification pass…

guardana/guardana259—~967Automated safety check: PassApache-2.0today
61

Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool.

getknit/knit133—~1.2kAutomated safety check: PassGPL-3.0yesterday
62

Performs a comprehensive Amazon ECS operations review across the 6 review pillars (Resiliency & HA, Observability, Security, Operations, Performance, Additional Analysis) using read-only AWS APIs…

aws/tools-for-devops-agent103—~4.8kAutomated safety check: PassApache-2.0yesterday
63

OpenClaw 安全部署指南 / Security deployment guide — help users secure their OpenClaw installation

jnMetaCode/shellward140—~644Automated safety check: WarnApache-2.012 days ago
64

Changing or adding a project setting / default value in RedAmon.

samugit83/redamon3k—~2.4kAutomated safety check: PassMIT2 days ago
65

Enrich an IOC (IP, domain, hash, URL) with threat intelligence.

dandye/ai-runbooks127—~702Automated safety check: PassApache-2.01 mo ago
66

Audit AI agent configurations for security risks — excessive permissions, prompt injection surfaces, data exfiltration paths, and missing guardrails.

OWASP/secure-agent-playbook188—~542Automated safety check: PassCC-BY-4.015 days ago
67

Explains how to call external APIs through the OneCLI proxy, which injects stored credentials into outgoing HTTPS requests so the agent never handles keys.

nanocoai/nanoclaw31k—~856Automated safety check: PassMITtoday
68

Hunt for the failure this project exists to prevent — code that compiles, types, tests green, and quietly reports "all clear" about something it never examined.

guardana/guardana259—~1.1kAutomated safety check: PassApache-2.0today
69

Turn a captured HTTP request/response into a bounded, redacted evidence pack with a stable request-ref using the mantishttpaudit MCP server, instead of pasting raw traffic into a finding

deonmenezes/mantishack503—~455Automated safety check: PassApache-2.07 days ago
70

Hunt for vulnerabilities in a running debuggee by analyzing imports/exports, triaging attack surface, and iteratively testing for bugs with PoC generation.

dariushoule/x64dbg-skills209—~3.9kAutomated safety check: NotesMIT7 mo ago
71
71.Gate

Run this project's verification — the full local CI mirror (ruff, mypy, import contract, pytest with PostgreSQL, coverage floors, dogfood, generated docs and site, the isolated example suites, the…

guardana/guardana259—~757Automated safety check: PassApache-2.0today
72

Teaches the agent to use the WebCrypt MCP server for AES-256-GCM symmetric encryption, RSA-4096 hybrid encryption, key generation, digital signatures, hashing, and post-quantum cryptography.

putervision/state-memory-mcp50—~847Automated safety check: PassMIT7 days ago
73

MCP threat-model artifact for a scaffolded harness. An agent skill from ruvnet/metaharness.

ruvnet/metaharness696—~637Automated safety check: NotesMITyesterday
74

Locks down an AI agent by configuring platform-level tool restrictions (deniedTools) and Earl network egress rules.

mathematic-inc/earl113—~2.1kAutomated safety check: PassApache-2.02 days ago
75

Reference vocabulary for interpreting vulnerability findings — detector-vs-impact distinction, severity anchoring on demonstrated evidence, the eleven-item interpretation rubric, delegation…

provos/ironcurtain612—~6.3kAutomated safety check: PassApache-2.04 days ago
76

减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。

index-login/MobileRE-Skill158—~242Automated safety check: PassMITyesterday
77
77.Plan

Turn a development task into one work file in .work/ — goal, decisions, lanes with exact files and verification, done-criteria.

guardana/guardana259—~1.1kAutomated safety check: PassApache-2.0today
78

AgentShield を使用して、Claude Code の設定(.claude/ ディレクトリ)のセキュリティ脆弱性、設定ミス、インジェクションリスクをスキャンします。CLAUDE.md、settings.json、MCP サーバー、フック、エージェント定義をチェックします。

affaan-m/ECC277k2 repos~796Automated safety check: PassMITtoday
79

Audits MCP servers and their client configs for tool poisoning, prompt injection, over-privileged tools, injection bugs, secret leaks and missing approval gates.

awarexone/Agentic-Bug-Hunter5.3k—~1.9kAutomated safety check: WarnMITyesterday
80

Use astgrepscan, sourcesinkscan, and smtcheckreachability (mantisprogramanalysis MCP server) to move a candidate toward a proven-reachable finding

deonmenezes/mantishack503—~551Automated safety check: PassApache-2.07 days ago
81

Behaviour-preserving restructuring and cleanup — splitting an oversized module, removing dead code, finished scripts, flags or documents, consolidating duplicates, tightening comments.

guardana/guardana259—~786Automated safety check: PassApache-2.0today
82

Black-box security audit of a DEPLOYED AI agent (not the MCP server behind it) — tool-call hijacking, cross-session memory poisoning, confused-deputy via connected tools, agent-to-agent IDOR…

awarexone/Agentic-Bug-Hunter5.3k—~1.1kAutomated safety check: PassMITyesterday
83

For any security-related task — threat triage, incident response, MITRE ATT&CK mapping, CVE lookup, exploit analysis, defensive control validation, red/blue/purple team work — always consult the…

lyonzin/knowledge-rag292—~2.3kAutomated safety check: PassMITyesterday
84

Security review: (1) vet an untrusted SKILL.md or .mcp.json BEFORE installing it — the injection/exfiltration scanner; CRITICAL blocks the install; (2) audit code on an untrusted-input path (a…

redhat-et/ripwire2.4k—~2.8kAutomated safety check: WarnApache-2.0yesterday
85

Check the landing page and the generated documentation site (site/, guardana.dev) in a real browser — confirm a page renders after a docs change, review it at phone width, read the console and…

guardana/guardana259—~679Automated safety check: PassApache-2.0today
86

Run Bumblebee supply-chain inventory and exposure scans on macOS/Linux to detect compromised packages, extensions, and MCP host configs.

sickn33/agentic-awesome-skills47k1 repo~2.5kAutomated safety check: NotesMIT2 days ago
87

Threat-model and find vulnerabilities, with practical remediation.

antonbabenko/deliberation170—~1.1kAutomated safety check: PassMIT2 days ago
88

What to do if a mantiscanary decoy tool ever shows up as tempting or gets called -- treat it as a security incident, not a normal tool result

deonmenezes/mantishack503—~376Automated safety check: PassApache-2.07 days ago
89

Reverse engineer binaries with IDA Pro: decompilation, disassembly, data-flow tracking, cross-references, and IDA MCP automation for deep static analysis of PE/ELF/Mach-O targets.

sickn33/agentic-awesome-skills47k1 repo~3.1kAutomated safety check: PassMIT2 days ago
90

Front-end JavaScript reverse engineering: locate signature chains, analyze encrypted request parameters, sample runtime behavior, and reproduce logic locally in Node for evidence-based output.

sickn33/agentic-awesome-skills47k1 repo~1.8kAutomated safety check: PassMIT2 days ago
91

Authorized OSINT and cyber threat intelligence: enriching IOCs, campaigns, impersonation, scams, and threat-actor profiles from public sources with defined boundaries.

sickn33/agentic-awesome-skills47k1 repo~1.1kAutomated safety check: PassMIT2 days ago
92

Configure Cedar policy enforcement and Ed25519 signed receipts for Claude Code tool calls.

wshobson/agents40k—~2.1kAutomated safety check: PassMIT6 days ago
93

Step-by-step cookbook for setting up cryptographically signed audit trails on Claude Code tool calls.

wshobson/agents40k—~2.5kAutomated safety check: PassMIT6 days ago
94

Review Maple security across authentication, account isolation, local persistence, Tauri IPC and capabilities, OAuth and deep links, the Local OpenAI Proxy, Agent Mode tools and permissions, MCP…

MaplePrivacyLabs/Maple102—~7.1kAutomated safety check: PassMITyesterday
95

Assess and harden LLM applications and agentic systems against prompt injection, tool misuse, excessive agency, memory poisoning, RAG data leakage, and model supply-chain risk, mapped to the OWASP…

trilwu/secskills157—~2.9kAutomated safety check: PassMIT1 mo ago
96

Build a CodeQL database and run dataflow-backed query-suite analysis via the mantiscodeql MCP server

deonmenezes/mantishack503—~325Automated safety check: PassApache-2.07 days ago