Search

Security

3,085 skills found, page 3.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
97

Fingerprints which language or framework produced a serialized blob, then helps build a working gadget chain to test for insecure deserialization.

PentesterFlow/agent1.4k—~1.7kAutomated safety check: PassApache-2.01 mo ago
98

Run HOL Guard scanner and guard operations via uv run hol-guard.

hashgraph-online/hol-guard838—~542Automated safety check: PassApache-2.0today
99

Verify that code changes do not introduce OAuth security vulnerabilities.

doorkeeper-gem/doorkeeper5.5k—~1.4kAutomated safety check: PassMITyesterday
100

Reviews code for security vulnerabilities and guides secure implementation using OWASP Top 10:2025, ASVS 5.0, the OWASP Top 10 for LLM Applications (2026), and the OWASP Top 10 for Agentic…

agamm/claude-code-owasp377—~3.5kAutomated safety check: PassMIT16 days ago
101

Security audit for web apps, especially AI-built ("vibe coded") ones.

benavlabs/vibe-check118—~1.1kAutomated safety check: NotesMIT22 days ago
102

Triage Dependabot dependency vulnerability alerts for the Activepieces repo — pull open alerts, dedupe to distinct (package, advisory), confirm the vulnerable package + API is actually used, and…

activepieces/activepieces25k—~2.9kAutomated safety check: PassUnknowntoday
103

Analyze user-provided reference images and reverse-engineer high-fidelity AI image-generation prompts.

LunarXuan/image-prompt-reverse467—~678Automated safety check: PassGPL-3.01 mo ago
104

Execute this skill enables AI assistant to conduct a security-focused code review using the security-agent plugin.

jeremylongshore/tons-of-skills-marketplace2.8k2 repos~1.3kAutomated safety check: NotesMITyesterday
105
105.Osint

Conduct deep OSINT research on individuals. An agent skill from smixs/osint-skill.

smixs/osint-skill141—~5.5kAutomated safety check: PassMIT7 mo ago
106
106.Semia

Audit an agent skill with Semia inside Codex. An agent skill from berabuddies/Semia.

berabuddies/Semia612—~2.7kAutomated safety check: PassApache-2.01 mo ago
107

Interactive system flow tracing across CODE, API, AUTH, DATA, NETWORK layers with SQLite persistence and Mermaid export.

zebbern/claude-code-guide4.7k—~4.2kAutomated safety check: PassMITyesterday
108

Reference knowledge for open-source intelligence collection: the collection cycle, source reliability tiers, search query patterns and entity extraction.

RightNow-AI/openfang18k—~2.1kAutomated safety check: PassApache-2.03 mo ago
109

Web+AI 安全测试知识库。融合 WooYun 88,636 案例 + 先知 L1-L4 方法论 + GAARM 173 风险 + OWASP Top 10 (LLM/ASI/WSTG)。

Pa55w0rd/secknowledge-skill425—~2.7kAutomated safety check: PassNo licence3 mo ago
110

Apply modern web development best practices for security, compatibility, and code quality.

midudev/100cosas.dev1143 repos~3kAutomated safety check: PassMIT12 days ago
111

Figure out how a specific installed game can be modded, before writing any mod code.

rehan-remade/universal-modder6.1k—~1kAutomated safety check: PassMITtoday
112

Operates Flounder, an autonomous white-hat security auditor.

adshao/flounder518—~9.2kAutomated safety check: PassAGPL-3.05 days ago
113

Detects languages, proposes rulesets for approval, then runs the approved Semgrep scan across a codebase and merges the output into one SARIF file.

trailofbits/skills7.5k—~3.7kAutomated safety check: NotesCC-BY-SA-4.0yesterday
114

Searches and extracts data from Burp Suite project files on the command line: regex searches over responses, audit findings, proxy history and site map data.

trailofbits/skills7.5k3 repos~4.2kAutomated safety check: NotesCC-BY-SA-4.0yesterday
115

Script-backed, out-of-box auditing workflow for Solidity/EVM repositories based on EVMbench detect/patch/exploit methodology.

greatpie/smart-contract-audit-skill101—~1.1kAutomated safety check: PassNo licence7 mo ago
116
116.Review SecurityOfficial

Security review of the current branch against its merge base — sandbox escapes, memory errors, panics and resource-limit bypasses.

pydantic/monty8.6k—~852Automated safety check: PassMITyesterday
117

Audit or harden gocron security across Go, pnpm workspaces, containers, authentication, authorization, secrets, command execution, SSRF, and dependency vulnerabilities.

gocronx-team/gocron801—~690Automated safety check: PassMITyesterday
118

Precision-first adversarial bug hunting for runtime, logic, data, concurrency, and security defects.

codexstar69/bug-hunter520—~5kAutomated safety check: PassMIT1 mo ago
119

Repro-first QA for Inkline — minimal .ink.tsx reproductions, the visual-parity and cross-target harnesses, fuzz targets, and how to audit teammates' claims.

inkline/inkline1.5k—~1.2kAutomated safety check: PassNo licence29 days ago
120

Run a full Python codebase security audit using PySpector (https://github.com/ParzivalHack/PySpector), a Rust-core SAST scanner.

ParzivalHack/PySpector151—~3.5kAutomated safety check: NotesApache-2.03 days ago
121

Better Auth security hardening: rate limits, secrets, CSRF, trusted origins, cookies, sessions, OAuth tokens, and audit logging.

EpicenterHQ/epicenter4.8k—~896Automated safety check: PassUnknown2 days ago
122

Verify or select a SageMaker execution role before creating models, endpoints, or training jobs.

waybarrios/opencode-power-pack534—~1.6kAutomated safety check: PassApache-2.05 days ago
123

Builds a cited research base on normal system behavior and adversary abuse patterns before a threat hunt hypothesis gets written.

OTRF/ThreatHunter-Playbook4.7k—~1.3kAutomated safety check: PassMIT9 mo ago
124

安全研究元思考方法论 - 从先知社区5600+篇安全文档中提炼的漏洞挖掘方法论框架. An agent skill from tanweai/xianzhi-research.

tanweai/xianzhi-research185—~847Automated safety check: PassNo licence8 mo ago
125

General-purpose Static Application Security Testing (SAST) skill for code vulnerability analysis.

SunWeb3Sec/llm-sast-scanner288—~6.2kAutomated safety check: PassNo licence1 mo ago
126

Security-audit a third-party skill bundle (folder with SKILL.md, or .zip / .tar.gz archive) before installing it, using the SkillWard cloud scanner.

Fangcun-AI/SkillWard143—~2.9kAutomated safety check: PassUnknown2 mo ago
127

Django access control and IDOR security review. An agent skill from getsentry/skills.

getsentry/skills1k3 repos~2.6kAutomated safety check: NotesApache-2.0yesterday
128

Scans eight warning signs behind a stock tip from a friend, chat group or online teacher and returns a four-level risk rating with evidence.

wbh604/UZI-Skill7.1k—~450Automated safety check: PassMIT1 mo ago
129

Weighs infrastructure, TTP, malware code and timing evidence with the Diamond Model and competing hypotheses to reach a confidence-rated attribution.

mukul975/Anthropic-Cybersecurity-Skills34k—~2.3kAutomated safety check: PassApache-2.01 mo ago
130

Write, debug, or validate a CVEhound detection rule (.cocci or .grep) for a Linux kernel CVE.

evdenis/cvehound138—~2.5kAutomated safety check: PassGPL-3.02 days ago
131

Investigate and harden Skylos security behavior. An agent skill from duriantaco/skylos.

duriantaco/skylos844—~545Automated safety check: PassApache-2.0yesterday
132

Scans the working directory for ignored errors, hard-coded secrets, debt comments, dead exports and type gaps, and reports findings by severity without editing files.

HarnessMD/munder-difflin8.6k—~350Automated safety check: NotesMITyesterday
133

Review FastMCP vulnerability reports before accepting, rejecting, patching, scoring, or publishing them.

PrefectHQ/fastmcp28k—~1.2kAutomated safety check: PassApache-2.0yesterday
134

Run an ASSERT evaluation against a described risk. An agent skill from responsibleai/ASSERT.

responsibleai/ASSERT330—~11kAutomated safety check: NotesMIT2 days ago
135
135.Rsigma

Use the rsigma CLI and MCP server: engine eval, engine daemon, rule lint, rule draft, rule tune, rule backtest, backend convert, mcp serve.

timescale/rsigma165—~1.2kAutomated safety check: PassMIT2 days ago
136

Wiring a new tool the AI agent can call (not the recon pipeline): the tool registry, the phase map, the hardcoded dispatch chokepoint, and the duplicated execution paths that make a tool work in…

samugit83/redamon3k—~1.3kAutomated safety check: PassMIT2 days ago
137

Hunting skill for business logic vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k1 repo~4.4kAutomated safety check: PassMITyesterday
138

Unattended VulnHunter operator. An agent skill from nealbridges/VulnHunter.

nealbridges/VulnHunter678—~711Automated safety check: PassApache-2.0yesterday
139

Security audit of Solidity code while you develop. An agent skill from Gabson0x/bountyforge.

Gabson0x/bountyforge442—~3.7kAutomated safety check: PassNo licence24 days ago
140

Reverse-engineer missing or incomplete OpenFastTrace system requirements and arc42-style design documentation from a project's user guide, existing documentation, tests, and code.

itsallcode/openfasttrace197—~2.9kAutomated safety check: PassGPL-3.0today
141

Reviews code or recent changes for bugs, security issues, performance problems and maintainability, reporting findings by severity with the reason and a fix.

pretend1111/claude-desktop-app4961 repo~502Automated safety check: PassUnknown5 mo ago
142

Static application security testing (SAST) using Semgrep for vulnerability detection, security code review, and secure coding guidance with OWASP and CWE framework mapping.

AgentSecOps/SecOpsAgentKit2202 repos~2.4kAutomated safety check: PassUnknown5 mo ago
143
143.Ohdear

Manage Oh Dear website monitoring using the ohdear CLI. An agent skill from ohdearapp/ohdear-cli.

ohdearapp/ohdear-cli141—~1.1kAutomated safety check: PassMIT1 mo ago
144

Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge.

TheDecipherist/claude-code-mastery551—~1.3kAutomated safety check: NotesMIT5 mo ago