Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1345 | 1345.Soe This skill should be used when the user asks to "analyze security alerts", "parse vulnerability scan report", "analyze vulnerability scan report", "verify CVE fix", "analyze WAF attack log"… | infometa/ | 348 | — | ~2.3k | Automated safety check: Notes | No licence | yesterday |
| 1346 | 1346.Tencentos Expert TencentOS Server 全栈运维诊断,根据用户的自然语言描述,自动识别需要的能力接口,查询能力实现,使用具体能力解决客户问题。覆盖磁盘空间/分区/文件系统/LVM/健康检测、网络连通性/丢包/延迟排查、CPU火焰图/系统调用热点/调度延迟/中断均衡/文件IO延迟/进程IO追踪分析、内存泄漏/OOM诊断、系统日志/服务管理/时间同步/软件包/软件源管理、kdump配置与故障排查、等保三级… | infometa/ | 348 | — | ~3.2k | Automated safety check: Pass | No licence | yesterday |
| 1347 | 1347.Yujie Analyzer 腾讯御界 (高级威胁检测 / NDR / NTA) 告警 L1 分析 skill 消费 L0 适配层 (soc-alert-pipeline) 输出的 parsed 字段, 基于御界威胁场景知识库 (C2 Beacon / 隧道代理 / 横向移动 / 数据外传), 产出: - NAT 还原 (realattackerip / realvictimip) - 协议识别降级… | infometa/ | 348 | — | ~895 | Automated safety check: Pass | No licence | yesterday |
| 1348 | 1348.Security Audit Perform a broad, authorized security audit across application, infrastructure, identity, dependencies, and operations. | seb1n/ | 206 | — | ~2.4k | Automated safety check: Notes | MIT | 2 mo ago |
| 1349 | 1349.Threat Modeling Conduct structured threat modeling for software systems using established methodologies to identify, prioritize, and mitigate security threats before they are exploited. | seb1n/ | 206 | — | ~3.1k | Automated safety check: Pass | MIT | 2 mo ago |
| 1350 | Enforce universal security protocols for safe, resilient software. | HoangNguyen0403/ | 572 | — | ~764 | Automated safety check: Pass | MIT | yesterday |
| 1351 | 1351.Deep Security Scan A skill your agent uses when the user asks for a deep, exhaustive, multi-pass, or variance-reducing repository-wide Codex Security scan. | CoWork-OS/ | 477 | — | ~8.6k | Automated safety check: Pass | MIT | yesterday |
| 1352 | Guidance for cloud and SaaS security posture management - combining Defender for Cloud CSPM (IaaS/PaaS) and Defender for Cloud Apps SSPM (SaaS) to assess and harden posture across cloud and SaaS apps. | vinayaklatthe/ | 175 | — | ~2.1k | Automated safety check: Pass | MIT | 3 mo ago |
| 1353 | 1353.Defender Easm Guidance for Microsoft Defender External Attack Surface Management (Defender EASM) — discovers and inventories an organization's internet-facing assets (domains, hosts, IPs, SSL certs, ASNs, web… | vinayaklatthe/ | 175 | — | ~1.9k | Automated safety check: Pass | MIT | 3 mo ago |
| 1354 | Guidance for Microsoft Defender for Containers — Kubernetes and container security across AKS, Azure Arc-enabled Kubernetes, EKS, GKE, and OpenShift. | vinayaklatthe/ | 175 | — | ~2.1k | Automated safety check: Pass | MIT | 3 mo ago |
| 1355 | 1355.Pki Design Guidance for designing public key infrastructure (PKI) and certificate management on Azure and hybrid environments. | vinayaklatthe/ | 175 | — | ~2.1k | Automated safety check: Pass | MIT | 3 mo ago |
| 1356 | Guidance for designing security architecture using Zero Trust, the Microsoft Cybersecurity Reference Architectures (MCRA), Cloud Adoption Framework Secure methodology, and Well-Architected Security… | vinayaklatthe/ | 175 | — | ~2k | Automated safety check: Pass | MIT | 3 mo ago |
| 1357 | Guidance for Microsoft Security Copilot agents — autonomous, purpose-built AI agents (e.g., phishing triage, alert triage, conditional access optimization, vulnerability remediation) that work… | vinayaklatthe/ | 175 | — | ~2.1k | Automated safety check: Pass | MIT | 3 mo ago |
| 1358 | 1358.Sentinel Guidance for designing and operating Microsoft Sentinel, the cloud-native SIEM and SOAR delivered through the Defender portal. | vinayaklatthe/ | 175 | — | ~2.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 1359 | 1359.Threat Modelling Guidance for threat modelling using STRIDE and the Microsoft Security Development Lifecycle (SDL). | vinayaklatthe/ | 175 | — | ~1.8k | Automated safety check: Pass | MIT | 3 mo ago |
| 1360 | Performs a security-focused code review by launching multiple specialized agents and a verification agent to ensure comprehensive coverage and accurate findings. | bitwarden/ | 155 | — | ~5.5k | Automated safety check: Pass | Unknown | yesterday |
| 1361 | This skill should be used when the user asks to "review Dependabot alerts", "check for vulnerable dependencies", "audit third-party packages", "assess supply chain risk", "run an Aikido scan", or… | bitwarden/ | 155 | — | ~2k | Automated safety check: Pass | Unknown | yesterday |
| 1362 | This skill should be used when the user asks to "triage security findings", "fix an Aikido finding", "review Aikido issues", "dismiss a false positive", "check SAST/IaC alerts", or needs to work… | bitwarden/ | 155 | — | ~2.2k | Automated safety check: Pass | Unknown | yesterday |
| 1363 | 1363.Security Security best practices for secure coding, authentication, authorization, and data protection. | OpenHands/ | 163 | — | ~342 | Automated safety check: Pass | MIT | yesterday |
| 1364 | 1364.Analyze Content Gaps Identify content gaps and organizational opportunities. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~568 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1365 | 1365.Cluster Documents Automated content similarity and grouping analysis. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~484 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1366 | 1366.Generate Taxonomy Develop hierarchical classification systems. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~561 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1367 | 1367.Audit Content Comprehensive content quality and maintenance assessment. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~636 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1368 | Design comprehensive metadata frameworks. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~588 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1369 | 1369.Inventory Content Systematic cataloging of information assets. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~621 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1370 | Complete guide to LINDDUN privacy threat modeling methodology covering seven threat categories: Linking, Identifying, Non-repudiation, Detecting, Data Disclosure, Unawareness, and Non-compliance. | mukul975/ | 301 | — | ~2.4k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 1371 | 1371.Security Information security expertise for cybersecurity frameworks (NIST, ISO 27001), security architecture, incident response, vulnerability management, identity management, and cloud security. | travisjneuman/ | 100 | — | ~3.3k | Automated safety check: Pass | MIT | yesterday |
| 1372 | 1372.Sustainability Esg Sustainability and ESG expertise for ESG strategy, carbon footprint management, sustainable supply chains, circular economy, renewable energy, climate risk, and ESG reporting (GRI, SASB, TCFD). | travisjneuman/ | 100 | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 1373 | 1373.Vulnhunter Solana A skill your agent uses when reviewing Solana program code for the account-model bug classes — unchecked account owner, absent signer, discriminator confusion, caller-controlled CPI seeds… | mtarcure/ | 165 | — | ~2.1k | Automated safety check: Pass | MIT | 20 days ago |
| 1374 | 1374.Air Cryptographer This skill should be used when the user asks about "AIR", "algebraic intermediate representation", "ZK constraints", "trace design", "constraint soundness", "polynomial commitments", "FRI", "STARK"… | aiskillstore/ | 433 | — | ~2.4k | Automated safety check: Pass | No licence | yesterday |
| 1375 | 1375.CI CD Security Scan GitHub Actions workflow files for security vulnerabilities by reading the YAML and reporting findings directly — no external tools, no installation, no shell execution. | aiskillstore/ | 433 | — | ~3.2k | Automated safety check: Pass | No licence | yesterday |
| 1376 | Compute supply chain risk metrics for critical minerals — HHI concentration, net import reliance, top-3 share, and trend analysis | lamm-mit/ | 246 | — | ~675 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1377 | Advanced vulnerability analysis principles. An agent skill from Dokhacgiakhoa/Agent-Skills-4-Vibe-Coding-CLI. | Dokhacgiakhoa/ | 508 | — | ~494 | Automated safety check: Pass | Unknown | 4 mo ago |
| 1378 | Validate at every layer data passes through to make bugs impossible. | secondsky/ | 227 | — | ~1.3k | Automated safety check: Pass | MIT | 13 days ago |
| 1379 | 1379.Analyze Cve Repos Analyze CVE reachability against downstream repository forks at version-specific release branches | openshift-eng/ | 120 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1380 | Analyze a Go codebase to determine if it is impacted by a specific CVE using multiple verification methods and assign a risk level | openshift-eng/ | 120 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1381 | Gather comprehensive vulnerability information from multiple authoritative sources with fallback strategies | openshift-eng/ | 120 | — | ~4.1k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1382 | 1382.Query Open Cves Query and deduplicate open CVE vulnerability issues from OCPBUGS for Node team components | openshift-eng/ | 120 | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1383 | 1383.Report Findings Generate triage reports and post findings to Jira and Slack. An agent skill from openshift-eng/ai-helpers. | openshift-eng/ | 120 | — | ~4.9k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1384 | Guides package selection, security review, and troubleshooting in conda workflows using Anaconda MCP. | Kilo-Org/ | 190 | — | ~3.9k | Automated safety check: Pass | MIT | 12 days ago |
| 1385 | 1385.Security Devsecops DevSecOps, secure software development lifecycle (SSDLC), and application security (AppSec) practices covering secret handling, input validation, dependency hygiene, authentication/authorization… | Mindrally/ | 271 | — | ~2.2k | Automated safety check: Notes | Apache-2.0 | 2 days ago |
| 1386 | Expert knowledge for Azure Firewall Manager development including best practices, decision making, security, and configuration. | MicrosoftDocs/ | 776 | — | ~1.2k | Automated safety check: Pass | CC-BY-4.0 | 5 days ago |
| 1387 | Deterministically reconcile bounded offline cloud control-plane snapshots to expose resource, public-access, principal, policy, encryption, logging, and lifecycle drift without querying a live… | cyberful/ | 135 | — | ~471 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 1388 | Deterministically compare bounded offline release manifests to identify artifact, digest, provenance, signer, permission, dependency, and deployment-input changes that alter the reviewed security… | cyberful/ | 135 | — | ~477 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 1389 | Trace secret fingerprints through bounded offline configuration, deployment, log, and runtime snapshots to identify allowed placement, unexpected propagation, stale copies, and cleanup gaps without… | cyberful/ | 135 | — | ~479 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 1390 | 1390.Security Usernames Top username lists for enumeration: common usernames, default credentials, names. | Ch1nfo/ | 114 | — | ~226 | Automated safety check: Pass | MIT | 19 days ago |
| 1391 | 1391.Security Automation 安全自动化顶级专业技能:DevSecOps全流程集成、CI/CD安全管道、SAST/DAST/SCA/容器/IaC自动化扫描编排、安全工具链集成实战、攻防双视角自动化(红队打点/蓝队检测响应)、SOAR深度编排、Agentic AI安全自动化(LLM Agent编排扫描与响应)、大模型安全运营(AI告警降噪/剧本生成)、误报治理与质量保障、合规自动化(证据收集/报告) | langbyyi/ | 129 | — | ~6k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 1392 | 安全意识培训深度专业技能(v3.0高级版):AI时代社工威胁升级、深度伪造语音/视频钓鱼、AI生成个性化钓鱼、Evilginx2全链路仿真演练、防御方角色化培训体系、Kirkpatrick四层量化效果评估、AI大模型结合(LLM生成教材/演练内容/数据分析/大模型使用安全规范)、新威胁面培训(提示注入/Deepfake识别/供应链/QR钓鱼)、红蓝对抗演练组织方法论,从"意识培训"升级为"行为安… | langbyyi/ | 129 | — | ~5.8k | Automated safety check: Notes | Apache-2.0 | 4 days ago |