Search
Security
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1969 | Configure and execute authenticated (credentialed) vulnerability scans using OpenVAS/Greenbone Vulnerability Management (GVM) with SSH, SMB, or ESXi credentials to detect local vulnerabilities… | mukul975/ | 34k | — | ~2.3k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 1970 | Plan and run authenticated (credentialed) vulnerability scans with scanners such as Nessus, Qualys, OpenVAS, or Rapid7 InsightVM, using SSH, SMB, WinRM, or SNMPv3 credentials to inspect installed… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 1971 | Performs runtime dynamic analysis of Android applications using Frida, Objection, and Android Debug Bridge to observe application behavior during execution, intercept function calls, modify runtime… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 1972 | Performs forensic analysis of SQLite databases by examining B-tree page structures, recovering deleted records from freelist pages and Write-Ahead Log (WAL) files, decoding encoded timestamps, and… | mukul975/ | 34k | — | ~3.6k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 1973 | Azure Key Vault SDK for Python. An agent skill from microsoft/skills. | microsoft/ | 3.1k | — | ~2.4k | Automated safety check: Pass | MIT | 2 days ago |
| 1974 | 1974.CI CD Security CI/CD pipeline security, supply chain security, SLSA compliance, artifact signing, dependency scanning | Hack23/ | 239 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1975 | A skill your agent uses when auditing an authorized website, SaaS, API, AI app, local code path, GitHub repo, staging URL, or owned runtime for security risks, vulnerability checklist scoring… | yaojingang/ | 1.3k | — | ~1.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 1976 | AI/LLM defensive security reference: prompt-injection defense, OWASP LLM Top 10 defensive mapping, MCP and agentic tool-call hardening, training-data poisoning detection, model-output validation and… | modu-ai/ | 1.2k | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1977 | OWASP Top 10 security checklist, authentication patterns, input validation, and HTTP security headers reference. | modu-ai/ | 1.2k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1978 | 1978.Moai Ref Secops DevSecOps, container, and API operational defensive security reference: CI/CD pipeline hardening, secret scanning, IaC misconfiguration detection, SAST/DAST integration, container image scanning… | modu-ai/ | 1.2k | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1979 | Software supply-chain defensive security reference: SBOM generation and verification (SPDX / CycloneDX), dependency-confusion defense, malicious-package triage playbook, SLSA provenance levels… | modu-ai/ | 1.2k | — | ~5.2k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1980 | Provides expert guidance on Identity and Access Management (IAM) and authenticating and authorizing to Google Cloud services and APIs, covering human users, service identities, Application Default… | google/ | 21k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1981 | Automates the end-to-end detection engineering workflow in Google SecOps using MCP tools. | google/ | 21k | — | ~3.3k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1982 | 1982.Dep Lib Review Periodic dependency review for Node.js/pnpm projects — outdated package triage, security audit, update batching strategy (patch/minor/major), validation checklist. | mizchi/ | 360 | — | ~1.8k | Automated safety check: Pass | No licence | 9 days ago |
| 1983 | 1983.Frontend Review Deps A skill your agent uses when auditing dependency health — outdated packages, CVE triage with attack-vector weighting, deprecated/declining library detection (trend-watch). | mizchi/ | 360 | — | ~1.5k | Automated safety check: Pass | No licence | 9 days ago |
| 1984 | A skill your agent uses when conducting a frontend security review — static analysis (risky HTML patterns, env var exposure), authentication/authorization audit (token storage, route guards… | mizchi/ | 360 | — | ~1.7k | Automated safety check: Notes | No licence | 9 days ago |
| 1985 | 1985.SQL Security SQL injection screening for host code (MoonBit / TS / Rust) plus secretlint setup notes. | mizchi/ | 360 | — | ~1.4k | Automated safety check: Pass | No licence | 9 days ago |
| 1986 | Orchestrates the end-to-end bulk ATAC-seq pipeline from FASTQ to differential accessibility and TF footprints, chaining Nextera-aware fastp QC, Bowtie2 alignment, chrM removal, dedup, a single Tn5… | GPTomics/ | 1.2k | 1 repo | ~4.1k | Automated safety check: Pass | MIT | 1 mo ago |
| 1987 | 1987.Port Scanning Discover open ports, running services, and their versions on a target | NeoTheCapt/ | 143 | — | ~634 | Automated safety check: Pass | No licence | 2 mo ago |
| 1988 | 1988.Hunter 22 Scan the ClawHunter agent bounty marketplace for opportunities that genuinely match this agent's real capabilities (code, security research, writing) and surface only real matches — never a raw… | aeonfun/ | 770 | — | ~1.7k | Automated safety check: Pass | MIT | yesterday |
| 1989 | 1989.Cpg Analysis Deep code property graph analysis with Joern CPG (AST+CFG+PDG) and CodeQL for control flow, data flow, taint analysis, and security auditing | alinaqi/ | 707 | — | ~2k | Automated safety check: Pass | MIT | 17 days ago |
| 1990 | 1990.Credentials Centralized API key management from Access.txt. An agent skill from alinaqi/maggy. | alinaqi/ | 707 | — | ~2.4k | Automated safety check: Notes | MIT | 17 days ago |
| 1991 | 1991.Security Audit Structured, adversarial, multi-phase security audit of a codebase — recon → coverage-led hunting → finder≠validator validation → machine-readable findings → target-neutral report | alinaqi/ | 707 | — | ~1.6k | Automated safety check: Notes | MIT | 17 days ago |
| 1992 | 1992.Security Auditor Analyzes changed security boundaries against applicable OWASP risks and project contracts. | pavel-molyanov/ | 297 | — | ~566 | Automated safety check: Pass | MIT | 1 mo ago |
| 1993 | 1993.Debug Rule Debug a rule or approximation that behaves unexpectedly by tracing where taint is dropped. | seqra/ | 163 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1994 | 1994.Run Scan Run an OpenTaint scan on project and produces the SARIF report. | seqra/ | 163 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1995 | 1995.Triage Dependencies Mark which of a project's dependency libraries could introduce taint sources. | seqra/ | 163 | — | ~733 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 1996 | 1996.Hunt Threat Conduct proactive, hypothesis-driven threat hunting. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 1997 | 1997.Aif Set up agent context for a project. An agent skill from unxed/f4. | unxed/ | 243 | — | ~8.4k | Automated safety check: Pass | BSD-3-Clause | yesterday |
| 1998 | 1998.Miniprogram Security 当目标为微信/支付宝/抖音/百度等小程序(含微信云开发/云函数)、需要小程序包获取与反编译、appid/appsecret/接口提取、微信登录链/支付/越权/WebView/rich-text 渲染/云开发漏洞挖掘时调用。负责小程序全生命周期深度挖掘:包还原 → 代码审计 → 接口与密钥提取 → 登录/支付/越权/渲染/云开发专项 → 验证要点。命中场景:openid 替换越权、code… | zhaji2333/ | 115 | — | ~1.5k | Automated safety check: Pass | MIT | 26 days ago |
| 1999 | Check compliance with OWASP Top 10 security risks and best practices. | jeremylongshore/ | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 2000 | Analyze session management implementations to identify security vulnerabilities in web applications. | jeremylongshore/ | 2.8k | — | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 2001 | Detect and analyze SQL injection vulnerabilities in application code and database queries. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 2002 | Validate encryption implementations and cryptographic practices. | jeremylongshore/ | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 2003 | 2003.Fuzzing APIs Configure perform API fuzzing to discover edge cases, crashes, and security vulnerabilities. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 2004 | Generate comprehensive security audit reports for applications and systems. | jeremylongshore/ | 2.8k | — | ~1.3k | Automated safety check: Pass | MIT | yesterday |
| 2005 | Analyze code, infrastructure, and configurations by conducting comprehensive security audits. | jeremylongshore/ | 2.8k | — | ~1k | Automated safety check: Pass | MIT | yesterday |
| 2006 | 2006.Plugin Auditor Audit automatically audits AI assistant code plugins for security vulnerabilities, best practices, AI assistant.md compliance, and quality standards when user mentions audit plugin, security review… | jeremylongshore/ | 2.8k | — | ~1.5k | Automated safety check: Notes | MIT | yesterday |
| 2007 | Analyze and guide security incident response, investigation, and remediation processes. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 2008 | Execute use when you need to work with security and compliance. | jeremylongshore/ | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 2009 | Process use when you need to work with security and compliance. | jeremylongshore/ | 2.8k | — | ~1.9k | Automated safety check: Pass | MIT | yesterday |
| 2010 | Execute this skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin. | jeremylongshore/ | 2.8k | — | ~927 | Automated safety check: Pass | MIT | yesterday |
| 2011 | Execute this skill enables AI assistant to automatically scan for xss (cross-site scripting) vulnerabilities in code. | jeremylongshore/ | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 2012 | Scan for input validation vulnerabilities and injection risks. | jeremylongshore/ | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 2013 | Validate CSRF protection implementations for security gaps. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 2014 | A skill your agent uses when reviewing, designing, or modifying Java enterprise products, services, libraries, agents, plugins, connected components, or platform modules that may qualify as products… | jabrena/ | 447 | — | ~3k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 2015 | 2015.Security Vite Review Vite security audit patterns for SPA and dev server security. | IgorWarzocha/ | 122 | — | ~1.2k | Automated safety check: Notes | No licence | 8 mo ago |
| 2016 | 2016.Cve Risk Score Retrieve CVE risk scores from NVD. An agent skill from transilienceai/communitytools. | transilienceai/ | 563 | — | ~565 | Automated safety check: Notes | MIT | 2 mo ago |