Search
Security
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1921 | Draw a testable attack surface from one authorized target URL or one application. | yaklang/ | 2.4k | — | ~2.6k | Automated safety check: Pass | MIT | 28 days ago |
| 1922 | Creates and manages secrets in AWS Secrets Manager following security best practices. | aws/ | 2.8k | 1 repo | ~461 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 1923 | 1923.Security Review Use before committing changes to auth, workspace scoping, channel webhooks, AI tools/MCP, permission settings, or anything handling untrusted channel content in ChatbotX. | ChatbotXIO/ | 885 | — | ~1.8k | Automated safety check: Notes | Unknown | 2 days ago |
| 1924 | 1924.Network Diagnostics Windows net diag: ping, traceroute, DNS, port scan (PowerShell) | taracodlabs/ | 852 | — | ~878 | Automated safety check: Pass | Apache-2.0 | 28 days ago |
| 1925 | 1925.Securityheaders HTTP security header audit (A+ to F) with fix recommendations | taracodlabs/ | 852 | — | ~956 | Automated safety check: Pass | Apache-2.0 | 28 days ago |
| 1926 | 1926.Shodan Shodan lookups: internet-connected devices, ports, services. An agent skill from taracodlabs/aiden. | taracodlabs/ | 852 | — | ~954 | Automated safety check: Pass | Apache-2.0 | 28 days ago |
| 1927 | 1927.Threat Model Usar para modelar amenazas con metodología STRIDE. An agent skill from 686f6c61/alfred-dev. | 686f6c61/ | 117 | — | ~1.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 1928 | 1928.Defender Blue-team release-gate analysis for smart contract deployment and upgrade readiness. | quillai-network/ | 130 | — | ~1.7k | Automated safety check: Notes | MIT | 6 mo ago |
| 1929 | 1929.Audit Skills Expert security auditor for AI Skills and Bundles. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~1.6k | Automated safety check: Warn | MIT | 2 days ago |
| 1930 | Defend AI systems against prompt injection and indirect prompt attacks using input controls, tool permissions, output validation, and isolation boundaries. | sickn33/ | 47k | 2 repos | ~4.2k | Automated safety check: Warn | MIT | 2 days ago |
| 1931 | 1931.Safety Scan Scan inputs for prompt injection, unsafe content, and adversarial attacks using AIDefence. | ruvnet/ | 74k | — | ~409 | Automated safety check: Notes | MIT | yesterday |
| 1932 | 1932.Security Review When the user needs a security assessment — threat modeling, vulnerability review, auth flow audit, dependency scanning, or says "is this secure", "review for vulnerabilities", "threat model"… | shawnpang/ | 343 | — | ~1.8k | Automated safety check: Pass | MIT | 6 mo ago |
| 1933 | 1933.Pump Security Defense-in-depth security across Rust, TypeScript, and Bash for the Pump SDK — cryptographic key handling, memory zeroization, secure file I/O, input validation, privilege management, dependency… | nirholas/ | 134 | — | ~892 | Automated safety check: Pass | Unknown | 2 days ago |
| 1934 | 1934.Owasp Audit Audit application source code against the OWASP Top 10 (2021) vulnerability categories — broken access control, cryptographic failures, injection, insecure design, security misconfiguration… | briiirussell/ | 413 | — | ~8.6k | Automated safety check: Notes | MIT | 4 mo ago |
| 1935 | 1935.Solo Maintainer Operates this repository as a solo maintainer across PR triage, issue handling, release work, deploys, ops checks, cost checks, security review, and docs drift. | serithemage/ | 196 | — | ~322 | Automated safety check: Pass | No licence | 6 mo ago |
| 1936 | 1936.Infrastructure Audit Comprehensive infrastructure security audit framework for IaC, Docker, Kubernetes, and cloud configurations. | forefy/ | 152 | — | ~3.7k | Automated safety check: Notes | MIT | 7 days ago |
| 1937 | Review the implementation source code of MCP (Model Context Protocol) servers, clients, and tool handlers against a security baseline — authentication, sessions, rate limiting, input-schema… | github/ | 40k | — | ~5.2k | Automated safety check: Pass | MIT | 2 days ago |
| 1938 | Plan and coordinate a model deployment to Amazon SageMaker, including serving stack and real-time versus async inference. | waybarrios/ | 534 | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 1939 | Screen fetched web pages, tool results, emails and file contents for instructions aimed at the agent before they enter context, using a keyless multi-label classifier over chunks. | mrmps/ | 424 | — | ~1.5k | Automated safety check: Pass | MIT | 4 days ago |
| 1940 | 1940.Soc Alert Triage Rank a SIEM or EDR alert queue before a human opens it. An agent skill from mrmps/classifier-dev. | mrmps/ | 424 | — | ~1.5k | Automated safety check: Pass | MIT | 4 days ago |
| 1941 | 1941.Review Ревью изменений с фокусом на безопасность по стандартам команды. | justxor/ | 276 | — | ~135 | Automated safety check: Pass | MIT | 10 days ago |
| 1942 | 1942.Snyk Jira Ingest Pull REAL Snyk SAST findings from EPAM Jira (Data Center) via the search-export API using a Personal Access Token, and emit them as a stage-output.json artifact for a downstream triage stage. | epam/ | 504 | — | ~295 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1943 | A skill your agent uses when the user says 'licensing', 'license audit', 'can I use this commercially', 'OSS license check', 'license compatibility', 'GPL', 'MIT', 'AGPL', 'copyleft'. | cwinvestments/ | 423 | — | ~3.5k | Automated safety check: Pass | Proprietary | 15 days ago |
| 1944 | A skill your agent uses when the user says 'CSP', 'Content-Security-Policy', 'security headers', 'HSTS', 'X-Frame-Options', 'clickjacking', 'unsafe-inline', 'unsafe-eval', or needs to audit… | cwinvestments/ | 423 | — | ~3.9k | Automated safety check: Pass | Proprietary | 15 days ago |
| 1945 | A skill your agent uses when the user says 'dependency audit', 'npm audit', 'pip audit', 'cargo audit', 'security vulnerabilities', 'outdated packages', 'supply chain', or needs to scan project… | cwinvestments/ | 423 | — | ~3.1k | Automated safety check: Pass | Proprietary | 15 days ago |
| 1946 | A skill your agent uses when the user says 'OWASP audit', 'OWASP top 10', 'security audit', 'vulnerability assessment', 'full security check', or needs a comprehensive web application security… | cwinvestments/ | 423 | — | ~5k | Automated safety check: Pass | Proprietary | 15 days ago |
| 1947 | A skill your agent uses when the user says 'check RLS', 'audit RLS', 'RLS policies', 'row level security', 'Supabase security audit', or needs to verify table-level access control. | cwinvestments/ | 423 | — | ~2.9k | Automated safety check: Notes | Proprietary | 15 days ago |
| 1948 | 1948.Oss Tool Trust Audit A skill your agent uses when an open-source developer tool, package, CLI, agent, or MCP server must be evaluated for legitimacy, supply-chain risk, telemetry, dangerous capabilities, claim accuracy… | asimons81/ | 126 | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1949 | [omh] Security event on the code already shipped -- a CVE in a dependency, a secret committed to the repo, a license question, an advisory: triage reachability and severity, contain in order, and… | rlaope/ | 3.2k | — | ~2.4k | Automated safety check: Pass | MIT | yesterday |
| 1950 | [omh] Agent or automation safety risks: review prompt, tool, secret, dependency, destructive-action, and explicit local plugin risks before agent or code execution. | rlaope/ | 3.2k | — | ~2.3k | Automated safety check: Pass | MIT | yesterday |
| 1951 | 1951.Research Vulnerability-research loop toward a novel CVE. An agent skill from Encod3d-Sec/TORCH. | Encod3d-Sec/ | 329 | — | ~1.8k | Automated safety check: Pass | MIT | 1 mo ago |
| 1952 | 1952.Screenshot Burp Capture a Burp Suite Repeater request/response as a PoC image (targets/<eng/poc/) by driving the Burp MCP + the Kali GUI. | Encod3d-Sec/ | 329 | — | ~1.9k | Automated safety check: Notes | MIT | 1 mo ago |
| 1953 | 1953.Wiki Recon External recon and OSINT pipeline - subdomain enum, live host discovery, URL crawl, JS analysis, nuclei scan. | Encod3d-Sec/ | 329 | — | ~1.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 1954 | 1954.Security Patterns Security patterns and OWASP guidelines. An agent skill from aiskillstore/marketplace. | aiskillstore/ | 433 | 1 repo | ~1.2k | Automated safety check: Notes | No licence | yesterday |
| 1955 | 1955.Review Dependencies Detect package managers and CI action pins, then discover outdated or vulnerable dependencies. | tobihagemann/ | 408 | — | ~1.5k | Automated safety check: Pass | MIT | 2 days ago |
| 1956 | 1956.Domain Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search. | notque/ | 441 | — | ~3.7k | Automated safety check: Notes | MIT | 2 days ago |
| 1957 | 1957.Security Security: review git changes for vulnerabilities, threat-model a system's attack surface, audit supply-chain risks. | notque/ | 441 | — | ~2.6k | Automated safety check: Notes | MIT | 2 days ago |
| 1958 | IAM policy review, hardening, and least privilege implementation | aiskillstore/ | 433 | 4 repos | ~2.6k | Automated safety check: Pass | No licence | yesterday |
| 1959 | 1959.AWS Security Audit Comprehensive AWS security posture assessment using AWS CLI and security best practices | aiskillstore/ | 433 | 4 repos | ~2.6k | Automated safety check: Pass | No licence | yesterday |
| 1960 | Security auditor for Laravel applications. An agent skill from aiskillstore/marketplace. | aiskillstore/ | 433 | 4 repos | ~1.1k | Automated safety check: Notes | No licence | yesterday |
| 1961 | 1961.Tidy Reviews a local diff, branch diff, or PR with file:line findings in confirmed and plausible tiers, gates any test the diff adds or changes, and in apply mode lands the fixes and diff-scoped… | mblode/ | 144 | — | ~4.2k | Automated safety check: Pass | MIT | 3 days ago |
| 1962 | 1962.Fix Security Issue Handle CVE/vulnerability reports from security linters (trivy, osv-scanner, etc.). | hardisgroupcom/ | 403 | — | ~1.3k | Automated safety check: Notes | AGPL-3.0 | yesterday |
| 1963 | 1963.Create Policy Create OPA governance policies for Harness via MCP. An agent skill from harness/harness-skills. | harness/ | 115 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 1964 | 1964.Security Scan A skill your agent uses for a standard, single-pass security audit of an entire repository or a scoped path, package, folder, or submodule with no diff to review. | vlinx-io/ | 281 | — | ~1.7k | Automated safety check: Pass | MIT | 4 days ago |
| 1965 | 1965.Bug Bounty Complete bug bounty workflow | sickn33/ | 47k | 1 repo | ~5k | Automated safety check: Notes | MIT | 2 days ago |
| 1966 | 1966.Web2 Recon Web2 recon pipeline | sickn33/ | 47k | 1 repo | ~3.6k | Automated safety check: Notes | MIT | 2 days ago |
| 1967 | 1967.Web3 Audit Smart contract security audit | sickn33/ | 47k | 1 repo | ~4k | Automated safety check: Pass | MIT | 2 days ago |
| 1968 | 1968.Update Deps Dependabot-aware dependency updates with security audit, real-CI validation, and a unified PR. | joshukraine/ | 429 | — | ~2.2k | Automated safety check: Pass | MIT | 5 days ago |