Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | Scan code changes for security vulnerabilities using Bug Hunter-native artifacts and STRIDE context. | codexstar69/ | 520 | — | ~629 | Automated safety check: Pass | MIT | 1 mo ago |
| 98 | This skill should be used when the user asks to "perform vulnerability scanning", "scan networks for open ports", "assess web application security", "scan wireless networks", "detect malware"… | zebbern/ | 4.7k | 8 repos | ~3.4k | Automated safety check: Notes | MIT | today |
| 99 | This skill should be used when the user asks to "analyze network traffic with Wireshark", "capture packets for troubleshooting", "filter PCAP files", "follow TCP/UDP streams", "detect network… | zebbern/ | 4.7k | 8 repos | ~3k | Automated safety check: Pass | MIT | today |
| 100 | 100.Php Auth Audit PHP Web 源码鉴权机制审计工具。从源码中识别所有认证/鉴权实现并分析风险,输出路由-鉴权映射与漏洞分析(含 PoC 与修复建议)。 | 0xShe/ | 402 | 1 repo | ~951 | Automated safety check: Pass | No licence | 6 mo ago |
| 101 | Run one stage of the OpenTaint pipeline by coordinating leaf subagents and deterministic joins. | seqra/ | 163 | — | ~806 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 102 | Audits outdated npm and Bun packages for supply chain integrity before bumping them, deferring risky ones and logging every decision. | backnotprop/ | 9.3k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | today |
| 103 | A skill your agent uses when auditing Simple IoT for security issues, reviewing a change that touches authentication, authorization, enrollment, sync, or a network-facing parser, or checking whether… | simpleiot/ | 221 | — | ~3k | Automated safety check: Pass | Apache-2.0 | 19 days ago |
| 104 | Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images. | warpdotdev/ | 65k | 1 repo | ~2.1k | Automated safety check: Pass | AGPL-3.0 | today |
| 105 | 105.Fix Issues A skill your agent uses when fixing compiler warnings, static analyzer findings (clang-tidy, etc.), or runtime errors/crashes in the libYSE codebase. | yvanvds/ | 238 | — | ~3k | Automated safety check: Pass | MIT | 11 days ago |
| 106 | 106.Ship Commit and push a finished change the way this repo requires — explicit paths, one commit per logical change, no attribution, the five documentation places answered, the site checks before a push (a… | guardana/ | 131 | — | ~964 | Automated safety check: Notes | Apache-2.0 | today |
| 107 | 107.AI Rulez Standards-compliant lifecycle tool for agent knowledge and capabilities: author in .ai-rulez/, generate for 52 harnesses (Claude Code, Cursor, Codex, Copilot, Gemini CLI, OpenCode, Devin, and more)… | Goldziher/ | 159 | — | ~3.3k | Automated safety check: Pass | MIT | today |
| 108 | Run Semgrep static analysis scans and create custom detection rules. | semgrep/ | 324 | — | ~2.3k | Automated safety check: Pass | Unknown | 2 mo ago |
| 109 | 109.Healthcheck Host security hardening and risk-tolerance guidance for Understudy deployments. | understudy-ai/ | 462 | — | ~1.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 110 | Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout. | secondsky/ | 462 | — | ~4.8k | Automated safety check: Warn | GPL-3.0 | 5 days ago |
| 111 | 111.Kesekit Fix Ko 보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다. An agent skill from cdppcorp/KESE-KIT. | cdppcorp/ | 360 | — | ~1k | Automated safety check: Pass | MIT | 6 mo ago |
| 112 | 112.Iotnet IoT network traffic analyzer for detecting IoT protocols and identifying security vulnerabilities in network communications. | BrownFineSecurity/ | 859 | 1 repo | ~1k | Automated safety check: Notes | MIT | 4 mo ago |
| 113 | Watch a Gradle instrumented-test run to a verdict without hand-writing greps. | parawanderer/ | 420 | — | ~1.4k | Automated safety check: Pass | MIT | 21 days ago |
| 114 | 114.Cc Review 结构化代码审查工作流,适用于显式 quick/full/security review;不负责普通实现或 bug 修复流程。 | doccker/ | 1.1k | — | ~541 | Automated safety check: Pass | Unknown | 1 mo ago |
| 115 | 115.Sast Analysis Perform codebase analysis and architecture mapping as the first phase of a security assessment. | utkusen/ | 1.3k | — | ~1k | Automated safety check: Pass | MIT | 6 mo ago |
| 116 | Generate and manage Software Bill of Materials (SBOMs) for the OpenShell project. | NVIDIA/ | 16k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 117 | 117.Production Grade A skill your agent uses when the user wants to build, create, or develop anything — websites, apps, APIs, services, platforms. | nagisanzenin/ | 181 | — | ~16k | Automated safety check: Notes | No licence | 1 mo ago |
| 118 | Review Hermes settings for security risks. An agent skill from OnlyTerp/hermes-optimization-guide. | OnlyTerp/ | 688 | — | ~1.1k | Automated safety check: Notes | MIT | 16 days ago |
| 119 | 119.Update Updating Add an entry to the UPDATING file at the repository root. An agent skill from MidnightBSD/src. | MidnightBSD/ | 114 | — | ~1.6k | Automated safety check: Pass | Unknown | yesterday |
| 120 | 120.Do Analyze 对 jar-analyzer-engine 构建的 SQLite 数据库执行安全审计分析查询。支持方法调用搜索、调用链追踪、Spring 组件分析、字符串搜索、漏洞模式检测等。 | jar-analyzer/ | 141 | — | ~2.5k | Automated safety check: Pass | No licence | 6 mo ago |
| 121 | 121.Deobf String Decrypt and recover obfuscated strings from binaries by analyzing encryption patterns and generating decryption scripts | P4nda0s/ | 140 | — | ~876 | Automated safety check: Pass | No licence | 4 mo ago |
| 122 | OpenClaw 安全检测工具,基于安全实践指南验证配置安全、权限隔离、网络策略、日志审计和运行时完整性. An agent skill from jd-opensource/JoySafeter. | jd-opensource/ | 314 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 123 | Update copyright year references across the project at the beginning of each calendar year. | MichaelGrafnetter/ | 2k | — | ~404 | Automated safety check: Pass | MIT | 29 days ago |
| 124 | Audit source code for exploitable vulnerabilities using threat-model-driven review, taint tracing, invariant checking, and variant analysis. | trilwu/ | 157 | — | ~3.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 125 | Perform post-implementation security review on recent code changes and produce prioritized hardening recommendations with file evidence and fix guidance. | Bald0Wang/ | 187 | — | ~694 | Automated safety check: Pass | No licence | 7 mo ago |
| 126 | A skill your agent uses when an OpenClaw maintainer or owner is reviewing a ClawHub malicious-skill profile proposal PR: checking proposals/<GHSA-ID/clawscan.yml, reading the private vulnerability… | openclaw/ | 143 | — | ~1.9k | Automated safety check: Pass | MIT | 3 days ago |
| 127 | 127.Mod Any Game Mod a PC game the user owns, taking an idea to working in the real game and recorded. | rehan-remade/ | 6.1k | — | ~2.9k | Automated safety check: Pass | MIT | today |
| 128 | 128.Bom Explore Explores and triages a CycloneDX BOM interactively with the cdxi REPL, using built-in commands for dependency trees, licenses, services, cryptographic assets, audit findings, evidence occurrences… | cdxgen/ | 1.1k | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | today |
| 129 | Audits, detects gaps, and remediates Android permissions and IPC component security vulnerabilities. | rosuH/ | 1.9k | 1 repo | ~7k | Automated safety check: Pass | MIT | today |
| 130 | Manage OpenClaw GitHub Actions and Blacksmith CI capacity, runner-registration budgets, fanout caps, main-push single-flight, shard sizing, hosted-runner offload, queue health, and safe… | openclaw/ | 392k | — | ~14k | Automated safety check: Pass | MIT | today |
| 131 | 131.Create Template Creates a new Earl HCL template for a specific API, database, or shell command. | mathematic-inc/ | 113 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 132 | 132.Breach Patterns Learn from public breach disclosures — extract the audit question each one implies and check your own stack. | briiirussell/ | 413 | — | ~3.5k | Automated safety check: Notes | MIT | 4 mo ago |
| 133 | 133.Php Cmd Audit PHP Web 源码命令注入审计工具。识别命令执行 Sink(exec/system/shellexec 等),追踪用户输入进入命令拼接,输出可利用性分级、PoC 与修复建议(禁止省略)。 | 0xShe/ | 402 | 1 repo | ~465 | Automated safety check: Pass | No licence | 6 mo ago |
| 134 | Generate prioritized CVE watchlists and actionable security recommendations for repositories. | ArabelaTso/ | 253 | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 135 | 135.Absolute Audit Vulnerability and security scan (defensive, your own repo): dependency CVEs plus risky code patterns (secrets, injection, weak authz), severity x reachability triaged and remediated without… | maddhruv/ | 219 | 1 repo | ~1.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 136 | 136.Cve Doctor Triage a CVE / Dependabot alert in a JS/TS project and recommend the least-invasive fix. | getlago/ | 163 | — | ~2.9k | Automated safety check: Pass | MIT | today |
| 137 | 137.Gstack Cso Security audit workflow for OPC code, providers, plugins, Electron surfaces, local HTTP bridges, filesystem access, and command execution. | LING71671/ | 963 | — | ~321 | Automated safety check: Notes | Unknown | 2 mo ago |
| 138 | A skill your agent uses when asked to generate a "no way to prevent this" / no-way-to-prevent-this satire post for a memory-safety CVE (out-of-bounds write/read, buffer/heap overflow… | Xe/ | 732 | — | ~816 | Automated safety check: Pass | Zlib | yesterday |
| 139 | Walks through mutual TLS between services in a zero-trust setup: certificate hierarchy, rotation, a gradual PERMISSIVE-to-STRICT rollout and handshake debugging. | wshobson/ | 40k | 9 repos | ~588 | Automated safety check: Pass | MIT | 5 days ago |
| 140 | 140.Kesekit Guide Generate secure coding prompts and guides for AI tools (Claude, ChatGPT, Cursor, Copilot). | cdppcorp/ | 360 | — | ~1.4k | Automated safety check: Pass | MIT | 6 mo ago |
| 141 | 141.Cpp Style C++ naming, formatting, static analysis, and RTTI rules for LuisaCompute. | LuisaGroup/ | 1.1k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | today |
| 142 | 142.Spec Pov Give a decisive, project-grounded verdict on an external input — judged against the current project, not in the abstract. | leo-kuang-ai/ | 107 | — | ~4.5k | Automated safety check: Pass | MIT | 2 days ago |
| 143 | A skill your agent uses when the user asks for a deep, exhaustive, multi-pass, or variance-reducing repository-wide or scoped-path Codex Security scan. | vlinx-io/ | 281 | — | ~3.3k | Automated safety check: Pass | MIT | 3 days ago |
| 144 | 144.EdgeOne ClawScan Runs a security health check on an OpenClaw environment and audits skills before or after installation for supply-chain and data-leak risks. | Tencent/ | 6.8k | — | ~9.5k | Automated safety check: Pass | MIT | yesterday |