Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1249 | 1249.Packages Look up every package this repository publishes across all registries via packages.ecosyste.ms, with downloads, dependent counts, latest version, registry URL and supply-chain risk flags. | alpha-omega-security/ | 242 | — | ~1.2k | Automated safety check: Pass | MIT | yesterday |
| 1250 | 1250.Reflect Extract bounded operational lessons from a settled triage cohort without changing finding dispositions or suppressions. | alpha-omega-security/ | 242 | — | ~874 | Automated safety check: Pass | MIT | yesterday |
| 1251 | A skill your agent uses when asked 数据出境要申报吗, 数据出境安全评估还是标准合同, 个人信息出境标准合同怎么备案, 我们把数据传到海外总部合规吗, or decide how to transfer data out of mainland China lawfully. | mohitagw15856/ | 1.4k | — | ~1.1k | Automated safety check: Pass | MIT | 2 days ago |
| 1252 | 1252.Data Breach Response Respond to your data being breached — triage by what actually leaked, the freeze/rotate/monitor ladder in the right order, and the calibrated watchfulness that follows, without panic or paralysis. | mohitagw15856/ | 1.4k | — | ~1.5k | Automated safety check: Pass | MIT | 2 days ago |
| 1253 | Run or document a security incident response — contain, eradicate, recover, and learn. | mohitagw15856/ | 1.4k | — | ~1k | Automated safety check: Pass | MIT | 2 days ago |
| 1254 | 1254.Security Review Review a design, PR, or feature for security issues before it ships. | mohitagw15856/ | 1.4k | — | ~973 | Automated safety check: Pass | MIT | 2 days ago |
| 1255 | Write a STRIDE-based threat model for a service or feature. An agent skill from mohitagw15856/pm-claude-skills. | mohitagw15856/ | 1.4k | — | ~3.8k | Automated safety check: Pass | MIT | 2 days ago |
| 1256 | 1256.Threat Model Threat-model a system or feature to find where it could be attacked, before you build it. | mohitagw15856/ | 1.4k | — | ~911 | Automated safety check: Pass | MIT | 2 days ago |
| 1257 | Azure VNet networking audit covering address space design, NSG rule evaluation, Azure Firewall policy analysis, ExpressRoute and VPN Gateway connectivity, VNet Peering topology, and UDR validation… | LeoYeAI/ | 2.2k | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 1258 | 1258.Cisco Firewall Audit Dual-platform Cisco ASA and Firepower Threat Defense (FTD) firewall audit with ACL analysis, NAT policy validation, Modular Policy Framework / Access Control Policy evaluation, Snort IPS assessment… | LeoYeAI/ | 2.2k | — | ~4.8k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 1259 | 1259.Clawsend Agent-to-agent messaging with cryptographic signing and encryption. | LeoYeAI/ | 2.2k | — | ~4.3k | Automated safety check: Pass | MIT | 2 mo ago |
| 1260 | Assess the physical attack surface of embedded devices — finding and using UART consoles, JTAG/SWD debug, and SPI/I2C flash; dumping firmware off-chip; triaging secure boot; and studying sub-GHz RF… | trilwu/ | 157 | — | ~1.8k | Automated safety check: Pass | MIT | 1 mo ago |
| 1261 | Run digital forensics and incident response — triage, evidence acquisition with chain of custody, host and cloud artifact analysis, timeline reconstruction, scoping, containment, eradication, and… | trilwu/ | 157 | — | ~3.9k | Automated safety check: Notes | MIT | 1 mo ago |
| 1262 | Reverse engineer undocumented binary network protocols from packet captures and the client that speaks them — recovering framing and field structure, identifying length prefixes, opcodes, checksums… | trilwu/ | 157 | — | ~1.4k | Automated safety check: Pass | MIT | 1 mo ago |
| 1263 | 1263.Dirsearch Fuzz 使用 dirsearch 进行 Web 目录和文件暴力枚举。当需要发现隐藏的目录、文件、后台路径、备份文件时使用。dirsearch 内置高质量字典,支持多扩展名、递归扫描、状态码过滤。任何涉及目录枚举、路径发现、后台查找、敏感文件发现的场景都应使用此技能 | wgpsec/ | 1.8k | — | ~520 | Automated safety check: Pass | No licence | yesterday |
| 1264 | 1264.Evasion Research GitHub 安全研究方法论:搜索 GitHub 上的免杀/Loader/C2 技术仓库,分析代码模式,提取新技术入库。当知识库中没有针对当前检测环境的免杀技术时使用——先搜索 GitHub 高星仓库,分析代码后写入 evasion-techniques-db.json 或 loader-components-db.json 入库 | wgpsec/ | 1.8k | — | ~432 | Automated safety check: Pass | No licence | yesterday |
| 1265 | 1265.Masscan Scan 使用 masscan 进行超大规模高速端口扫描。当需要扫描大范围 CIDR 网段、全互联网规模扫描时使用。masscan 是异步无状态扫描器,速度可达每秒百万包级别,适合大规模资产发现。需要 root 权限。任何涉及大规模网段扫描、高速端口发现、互联网测绘的场景都应使用此技能 | wgpsec/ | 1.8k | — | ~523 | Automated safety check: Notes | No licence | yesterday |
| 1266 | 1266.Spray Dir Brute 使用 spray 进行高性能目录爆破和指纹识别。当需要对 Web 目标进行目录/文件枚举、备份文件发现、指纹识别时使用。spray 是 chainreactors 出品的下一代目录爆破工具,性能超过 ffuf 50%+,支持智能过滤、掩码字典、断点续传、批量目标。任何涉及目录爆破、路径枚举、备份文件扫描、Web 指纹识别的场景都应考虑此技能 | wgpsec/ | 1.8k | — | ~694 | Automated safety check: Notes | No licence | yesterday |
| 1267 | 1267.Compound Capture solved problems as searchable solution docs. An agent skill from oliver-kriska/claude-elixir-phoenix. | oliver-kriska/ | 565 | — | ~964 | Automated safety check: Pass | MIT | 5 days ago |
| 1268 | 1268.Phx Compound Capture solved problems as searchable solution docs. An agent skill from oliver-kriska/claude-elixir-phoenix. | oliver-kriska/ | 565 | — | ~929 | Automated safety check: Pass | MIT | 5 days ago |
| 1269 | 1269.Phx Compound Capture solved problems as searchable solution docs. An agent skill from oliver-kriska/claude-elixir-phoenix. | oliver-kriska/ | 565 | — | ~953 | Automated safety check: Pass | MIT | 5 days ago |
| 1270 | 1270.Codetruss Operate CodeTruss local acceptance gates for coding-agent changes. | hashgraph-online/ | 1.3k | — | ~2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 1271 | 1271.Secure Security review checklist with optional engagement scoping. An agent skill from hashgraph-online/awesome-codex-plugins. | hashgraph-online/ | 1.3k | — | ~1.5k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 1272 | 1272.Threat Model Threat modeling and attack surface analysis. An agent skill from hashgraph-online/awesome-codex-plugins. | hashgraph-online/ | 1.3k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 1273 | 1273.Vuln Scan Systematic vulnerability scan across injection, auth, data exposure, and dependencies — traced by reading code, not grepping for keywords. | hashgraph-online/ | 1.3k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 1274 | 1274.AWS Advisor AWS Advisor workflow skill. An agent skill from diegosouzapw/awesome-omni-skills. | diegosouzapw/ | 159 | — | ~4.3k | Automated safety check: Pass | MIT | 3 mo ago |
| 1275 | Security Ownership Map workflow skill. An agent skill from diegosouzapw/awesome-omni-skills. | diegosouzapw/ | 159 | — | ~4.6k | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 1276 | Identify performance bottlenecks, inefficient patterns, and optimization opportunities through static analysis. | EmeaAppGbb/ | 100 | — | ~2.2k | Automated safety check: Pass | MIT | 5 mo ago |
| 1277 | 1277.Repomix Package entire code repositories into single AI-friendly files using Repomix. | Microck/ | 404 | — | ~1.4k | Automated safety check: Notes | Unknown | 1 mo ago |
| 1278 | Example security audit skill demonstrating how to audit code for security vulnerabilities. | Microck/ | 404 | — | ~758 | Automated safety check: Pass | Unknown | 1 mo ago |
| 1279 | 1279.Host Cve Validator 主机安全CVE漏洞修复验证引擎。从主机漏扫报告(Excel)或CVE编号自动提取漏洞,查询威胁情报(NVD/EPSS/MSRC/OVAL),生成修复脚本(fix.sh/fix.ps1),SSH验证脚本可执行性,产出修复验证报告。覆盖 Linux(centos/ubuntu/debian/suse/amazon/fedora/alpine/arch) + Windows + Web-CMS… | infometa/ | 348 | — | ~1.8k | Automated safety check: Notes | Proprietary | yesterday |
| 1280 | 1280.Algo Sc Bullwhip Analyze and mitigate the bullwhip effect where demand variability amplifies upstream in supply chains. | asgard-ai-platform/ | 242 | — | ~1.1k | Automated safety check: Pass | MIT | 4 mo ago |
| 1281 | Net-zero transition playbook: GHG inventory (ISO 14064-1, GHG Protocol Scope 1/2/3), science-based targets (SBTi), TCFD and ISSB S1/S2 climate disclosure, Taiwan carbon fee, decarbonization roadmap… | asgard-ai-platform/ | 242 | — | ~2.5k | Automated safety check: Pass | MIT | 4 mo ago |
| 1282 | 1282.Biz Supply Chain Analyze supply chain operations using the SCOR model across Plan, Source, Make, Deliver, and Return processes. | asgard-ai-platform/ | 242 | — | ~1.5k | Automated safety check: Pass | MIT | 4 mo ago |
| 1283 | 1283.Enforce Slsa Add an SLSA Verification (SlsaVerification) step to an existing Harness pipeline to verify SLSA provenance attestations and optionally enforce OPA policy sets on provenance data. | harness/ | 115 | — | ~3.2k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1284 | 1284.Generate Slsa Add a SLSA Generation step (YAML type: provenance) to an existing Harness pipeline to generate SLSA provenance and optionally attest with Cosign (keyless, key-based, or Vault). | harness/ | 115 | — | ~3k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1285 | 1285.Joern Slice Tool to get the program slice for a given function using Joern. | opensage-agent/ | 127 | — | ~189 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 1286 | 1286.Search Function Tool to search for a function in the codebase. An agent skill from opensage-agent/opensage-adk. | opensage-agent/ | 127 | — | ~153 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 1287 | Teaches agents to recognize and avoid security threats during normal activity. | trailofbits/ | 513 | — | ~1.5k | Automated safety check: Notes | CC-BY-SA-4.0 | 2 mo ago |
| 1288 | 1288.Server Security 服务器安全审计与加固。扫描 SSH、防火墙、端口暴露、文件权限、暴力破解等安全问题,生成报告并提供一键修复。当用户说服务器安全、安全审计、安全检查、安全加固时使用 | majiayu000/ | 287 | — | ~324 | Automated safety check: Notes | MIT | 2 days ago |
| 1289 | 1289.Review Pre-ship code review by a fresh-context Opus reviewer that checks the change against this project's hard rules — a false green, a channel rebuilt field by field, engine purity, schema versions… | guardana/ | 131 | — | ~315 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 1290 | 安全事件响应助手 - 专业的安全事件处置与应急响应专家。适用场景: (1) 安全事件识别与分类 (2) 应急响应计划制定 (3) 事件调查与取证分析 (4) 遏制与根除方案设计 (5) 系统恢复与业务连续性 (6) 事件复盘与改进建议 (7) 安全事件报告撰写 触发关键词:安全事件、应急响应、事件处置、入侵检测、安全告警、取证分析、恢复计划、事件复盘、安全报告、勒索软件、数据泄露 | chendongqi/ | 126 | — | ~999 | Automated safety check: Pass | No licence | 8 mo ago |
| 1291 | Reviews Kubernetes manifests and cluster config for security misconfigurations, ranks them by blast radius, and gives a minimal hardening patch for each. | criptogus/ | 288 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1292 | Generate a STRIDE-based security threat model for a repository. | Factory-AI/ | 111 | — | ~2.1k | Automated safety check: Pass | No licence | 4 days ago |
| 1293 | Trigger Pattern Any external module interaction detected in attacksurface.md - Inject Into Breadth agents (merged via M5 hierarchy) | PlamenTSV/ | 303 | — | ~1.1k | Automated safety check: Pass | MIT | 15 days ago |
| 1294 | 1294.Fork Ancestry Trigger Pattern Always (run during recon TASK 0, not breadth) - Inject Into Recon agent only (metabuffer.md enrichment) | PlamenTSV/ | 303 | — | ~2.4k | Automated safety check: Pass | MIT | 15 days ago |
| 1295 | Trigger FASTANDARD flag detected (protocol uses FungibleAsset standard) - Used by Breadth agents, depth-token-flow | PlamenTSV/ | 303 | — | ~3.3k | Automated safety check: Pass | MIT | 15 days ago |
| 1296 | Protocol Type Trigger NAMEDEXTERNALPROTOCOL (detected when recon finds import/interface for an identifiable external protocol — not standard libraries). | PlamenTSV/ | 303 | — | ~3.7k | Automated safety check: Pass | MIT | 15 days ago |