Search
Security · For developers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | Specialized in reverse-engineering compiled binaries (JARs, DLLs). | HacktronAI/ | 115 | — | ~2.2k | Automated safety check: Pass | MIT | 4 mo ago |
| 98 | 98.Audit Fix Resolve a pnpm audit (dependency-audit CI job) failure — high/critical CVEs in the dependency tree. | openplayerjs/ | 649 | — | ~1k | Automated safety check: Pass | MIT | 5 days ago |
| 99 | A skill your agent uses when answering questions about PseudoForge kernel corpus packs through MCP or local evidence packs, including kernel lifecycle, subsystem, function, callgraph, import/string… | kernullist/ | 162 | — | ~3.7k | Automated safety check: Pass | MIT | 3 mo ago |
| 100 | GitHub Actions security review for workflow exploitation vulnerabilities. | getsentry/ | 1k | 3 repos | ~2.2k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 101 | Runs an evidence-first security audit of a codebase through gstack's trusted launcher, with static findings by default and isolated reproduction when enabled. | garrytan/ | 136k | — | ~4.5k | Automated safety check: Pass | MIT | yesterday |
| 102 | GitHub Actions CI/CD pipeline configuration for Golang projects — workflow files for test, lint, SAST, coverage and vulnerability-scan jobs, Dependabot and Renovate config files, GoReleaser release… | samber/ | 3.4k | — | ~3.7k | Automated safety check: Pass | MIT | 9 days ago |
| 103 | 103.Burp Scan Burp Suite scanning via MCP tools — passive traffic analysis, active payload testing, OOB verification, and vulnerability reporting using Burp's proxy, HTTP sender, Collaborator, and scanner APIs. | six2dez/ | 1.5k | — | ~6.4k | Automated safety check: Warn | MIT | yesterday |
| 104 | Linux 内核态 CVE 漏洞检测与 PoC 验证工具,专为 AI Agent 设计. An agent skill from aliyun/alibabacloud-ecs-troubleshoot-skills. | aliyun/ | 148 | — | ~2.4k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 105 | 105.Security Audit A skill your agent uses to perform a security-focused audit of the codebase to identify vulnerabilities, sandbox escapes, and logic flaws. | ziggy42/ | 439 | — | ~924 | Automated safety check: Pass | Apache-2.0 | 6 days ago |
| 106 | 106.Code Review Perform a systematic code review of all source files, focusing on security, performance, backwards compatibility, and design principles. | MichaelGrafnetter/ | 2k | — | ~4k | Automated safety check: Pass | MIT | 29 days ago |
| 107 | Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk. | bodadotsh/ | 858 | — | ~1k | Automated safety check: Warn | MIT | 10 days ago |
| 108 | Maximum-fidelity Python source reconstruction from Nuitka .nbc / NBC/2 files produced by nuitkadecompiler.py. | DimaReverse/ | 132 | — | ~2k | Automated safety check: Pass | MIT | 1 mo ago |
| 109 | Comprehensive security review framework for AI agents. An agent skill from slowmist/slowmist-agent-security. | slowmist/ | 508 | — | ~1.4k | Automated safety check: Pass | MIT | 5 mo ago |
| 110 | 110.Skeptic Run the security-focused Skeptic persona on the local working tree's diff against a base branch. | RaoFoundation/ | 391 | — | ~660 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 111 | Scans code with a bundled Node scanner for injection, secret leaks and other dangerous patterns, and requires documented decisions for accepted risks. | telagod/ | 244 | — | ~552 | Automated safety check: Notes | MIT | 2 mo ago |
| 112 | 112.Agent Creator Creates structured agent definitions using the 7-component format grounded in persona science (the alignment-accuracy tradeoff), vocabulary routing, and the MAST failure taxonomy + Forge watchlist. | jdforsythe/ | 151 | — | ~4.5k | Automated safety check: Pass | MIT | 3 mo ago |
| 113 | Run a security scan on the kedro-plugins codebase or a pull request. | kedro-org/ | 119 | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 114 | Runs the codecrucible CLI for LLM-backed security scans of a repository, checks scope and cost first with a dry run, and reads the SARIF results. | block/ | 117 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 115 | Applies the AI SAFE2 framework to security reviews, code reviews and compliance mapping for AI agents, RAG pipelines and MCP servers. | CyberStrategyInstitute/ | 147 | — | ~1.2k | Automated safety check: Pass | Unknown | yesterday |
| 116 | 116.Gmgn Token Research any crypto or meme token by address — real-time price, market cap, liquidity, holder list, trader list, top Smart Money and KOL positions, security audit (honeypot, rug pull risk, dev… | GMGNAI/ | 609 | 1 repo | ~10k | Automated safety check: Notes | MIT | 12 days ago |
| 117 | 117.Oss Forensics Supply chain investigation, evidence recovery, and forensic analysis for GitHub repositories. | Tommy-yw/ | 546 | 3 repos | ~5k | Automated safety check: Pass | MIT | 4 mo ago |
| 118 | A skill your agent uses when the dependency audit goes red — .github/scripts/check/dependencyaudit.sh or the bundler-audit CI job — or when a newly published CVE/GHSA on a dependency gem blocks a PR. | DataDog/ | 417 | — | ~2.6k | Automated safety check: Pass | Unknown | yesterday |
| 119 | Connect to a Windows 98 game or app that a person is running in their browser on wine-assembly, then see its screen and play it with mouse and keyboard. | vgrichina/ | 115 | — | ~1.9k | Automated safety check: Pass | MIT | today |
| 120 | Runs a full workflow for authorized Android app security testing: static APK analysis, rooted emulator setup, traffic interception and Frida hook generation. | ptn1411/ | 219 | — | ~917 | Automated safety check: Pass | No licence | 19 days ago |
| 121 | 121.Kesekit Check Ko KISA 가이드라인 기반 배포 전 보안 컴플라이언스 체크리스트를 실행합니다. An agent skill from cdppcorp/KESE-KIT. | cdppcorp/ | 360 | — | ~956 | Automated safety check: Pass | MIT | 6 mo ago |
| 122 | Routes a whole-product security request to the right Strix test per asset, source code, a live app, an API or a CI pipeline, then turns results into one ranked remediation plan. | usestrix/ | 68k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 123 | 123.Security Updates Check and apply security updates across the photofield project (api/Go, ui/npm, docs/npm, e2e/npm). | SmilyOrg/ | 608 | — | ~808 | Automated safety check: Pass | MIT | 1 mo ago |
| 124 | 124.Censorship Audit Audit and harden the Hedioum Pool Tunnel against nation-state DPI and censorship, as a filtering/anti-censorship expert would. | hedioum/ | 139 | — | ~4.9k | Automated safety check: Pass | GPL-3.0 | 1 mo ago |
| 125 | Enable, configure, and query Elasticsearch security audit logs. | aspectrr/ | 405 | — | ~1.7k | Automated safety check: Pass | MIT | 5 mo ago |
| 126 | 126.Security Audit Security best practices, vulnerability review, and full security audits for LLM Gateway. | theopenco/ | 1.7k | — | ~1.8k | Automated safety check: Pass | Unknown | today |
| 127 | CI/CD with GitHub Actions for Golang — testing, linting, SAST, security scanning, coverage, Dependabot, Renovate, GoReleaser, release pipelines. | context-labs/ | 1.1k | — | ~3.5k | Automated safety check: Pass | MIT | 5 days ago |
| 128 | Shows how to replace unsafe hasattr and setattr loops over user-controlled kwargs with an explicit allowlist when configuring ONNX Runtime option objects. | microsoft/ | 22k | — | ~737 | Automated safety check: Pass | MIT | today |
| 129 | Security-focused code review checklist and automated scanning patterns. | nicepkg/ | 195 | 1 repo | ~3.9k | Automated safety check: Pass | MIT | 8 mo ago |
| 130 | 130.Ctf Malware Provides malware analysis and network traffic techniques for CTF challenges. | ljagiello/ | 3.4k | — | ~2.1k | Automated safety check: Notes | MIT | 27 days ago |
| 131 | 按中国法规(网安法 / PIPL / 等保2.0 / 数据出境 / AI生成内容标识)审计一个 AI 项目的代码仓库,产出每条都带 文件:行 取证、经独立复核、经脚本校验的合规报告。当用户问「这个项目上线合不合规」「调用了 OpenAI/Claude 算不算数据出境」「要不要做 AI 标识」「帮我做合规自查/等保/PIPL 检查」时使用。Audit an AI project's… | jnMetaCode/ | 140 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 12 days ago |
| 132 | Runs an evidence-gated, quote-grounded audit of a codebase for security, QA, accessibility, performance and more, and writes a verified report without changing source files. | ZaxbyHub/ | 494 | — | ~2.8k | Automated safety check: Pass | MIT | today |
| 133 | Applies a threat-model-first approach to web code that handles untrusted input, authentication, data storage, dependencies or personal data. | addyosmani/ | 104k | 1 repo | ~4.4k | Automated safety check: Notes | MIT | 7 days ago |
| 134 | 134.Project Security A skill your agent uses when reviewing security-sensitive code paths — check auth, secrets, input validation, dependency risk, and data exposure before shipping. | johnku2011/ | 240 | — | ~650 | Automated safety check: Pass | MIT | 1 mo ago |
| 135 | Diagnoses exception root causes from stack traces, logs, call-chain dumps, and debug output using the CodexQA CLI for structured repo analysis. | openqa-cn/ | 152 | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 8 days ago |
| 136 | 136.Cyber Neo Comprehensive cybersecurity analysis for any local project. An agent skill from Hainrixz/cyber-neo. | Hainrixz/ | 283 | — | ~5.9k | Automated safety check: Warn | MIT | 2 mo ago |
| 137 | Reviews WordPress plugin, theme and block code after an agent writes or edits it, catching missing escaping, nonces, capability checks and unprepared queries. | amElnagdy/ | 1.3k | — | ~2.4k | Automated safety check: Pass | MIT | 3 mo ago |
| 138 | Installs hooks that check each agent action against security policies before it runs, blocking destructive commands and logging every decision. | pegasi-ai/ | 392 | — | ~1.4k | Automated safety check: Warn | Apache-2.0 | yesterday |
| 139 | Linux 用户态安全入侵检测与取证工具,专为 AI Agent 设计。自动判断服务器是否被入侵, 提供完整证据链和可执行修复建议。51 个安全分析器覆盖进程/网络/认证/持久化/Rootkit/ 恶意软件/内存取证/容器逃逸等 12 类检测维度,10 个数据采集器全面采集系统状态, 映射 103+ MITRE ATT&CK 技术,支持 standalone/docker/k8s 三种部署模式。 | aliyun/ | 148 | — | ~2.6k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 140 | Add or retrofit Tenuo authorization for AI-agent tools and effects. | tenuo-ai/ | 103 | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | today |
| 141 | A skill your agent uses when you need to add or review fuzz testing for Java APIs with CATS — including contract-driven negative testing, malformed payload validation, boundary input exploration, CI… | jabrena/ | 447 | — | ~874 | Automated safety check: Pass | Apache-2.0 | 3 days ago |
| 142 | Shows how to call NEAR AI Cloud through an OpenAI-compatible API and verify that inference ran in a TEE, using attestation checks and signed chat responses. | internet-court/ | 6.6k | 1 repo | ~1.3k | Automated safety check: Pass | Unknown | 1 mo ago |
| 143 | PHP Web 全链路白盒代码安全审计流水线(多文件版编排)。作为总编排参考,按 Sink 类型调用各子审计 skill(php-route-mapper/php-auth-audit/php-route-tracer/php--audit),并复用统一输出与分级标准。 | 0xShe/ | 402 | 1 repo | ~4.9k | Automated safety check: Pass | No licence | 6 mo ago |
| 144 | 144.Graph DB Writes Writing to the Neo4j attack-surface graph in RedAmon: the tenant-isolation MERGE key every entity node must carry, where graph methods live (mixins, not the client), and the schema places that must… | samugit83/ | 3k | — | ~2.2k | Automated safety check: Pass | MIT | 2 days ago |