Search
Security
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 2065 | Runs NVIDIA garak probe suites (jailbreak, prompt injection, data leakage, toxicity, and more) against an LLM endpoint - Hugging Face models, OpenAI-compatible APIs, or Bedrock - then interprets the… | mukul975/ | 34k | — | ~2.9k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 2066 | 2066.Review Reviews code for quality, security, correctness. An agent skill from softspark/ai-toolkit. | softspark/ | 179 | — | ~3.1k | Automated safety check: Notes | Apache-2.0 | 3 days ago |
| 2067 | Deploys Llama Guard 3 safety classification, NeMo Guardrails programmable dialogue rails, and LLM Guard input/output scanner pipelines as complementary runtime defenses that inspect and constrain… | mukul975/ | 34k | — | ~3.1k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 2068 | 2068.Waf Web Application Firewall guidance, when to put one in front of an app and how to run it without breaking traffic. | TheDecipherist/ | 338 | — | ~1.4k | Automated safety check: Pass | MIT | 3 mo ago |
| 2069 | 2069.Runtime Sentinel Runtime security guardian for OpenClaw agents. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~1.7k | Automated safety check: Pass | MIT | 2 mo ago |
| 2070 | 2070.Senior Security Security engineering toolkit for threat modeling, vulnerability analysis, secure architecture, and penetration testing. | LeoYeAI/ | 2.2k | — | ~3.8k | Automated safety check: Pass | MIT | 2 mo ago |
| 2071 | 2071.Network Packet Lab A skill your agent uses whenever the user asks about Wireshark, tcpdump, packet capture, pcap analysis, HTTP/DNS/TCP/DHCP/TLS capture interpretation, network lab reports, protocol fields observed in… | mingchen666/ | 244 | — | ~657 | Automated safety check: Pass | No licence | yesterday |
| 2072 | 2072.Cliche Transcendence Transform predictable story elements into fresh, original versions. | jwynia/ | 170 | — | ~4.4k | Automated safety check: Pass | MIT | 7 mo ago |
| 2073 | Security rule for timing-safe secret comparison. An agent skill from paralleldrive/aidd. | paralleldrive/ | 384 | — | ~575 | Automated safety check: Pass | MIT | 4 mo ago |
| 2074 | Audit a Node.js project's installed npm dependency tree for known CVEs by wrapping the npm audit JSON output and emitting findings in the canonical penetration-tester schema. | jeremylongshore/ | 2.8k | — | ~2.5k | Automated safety check: Notes | MIT | yesterday |
| 2075 | Audit a Python project's installed dependencies for known CVEs by wrapping pip-audit (PyPA's official vulnerability auditor) and emitting findings in the canonical penetration-tester schema. | jeremylongshore/ | 2.8k | — | ~2.3k | Automated safety check: Notes | MIT | yesterday |
| 2076 | Audit wallet security by analyzing token approvals, permissions, and transaction patterns. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 2077 | Audit a target's HTTP security headers — CSP, HSTS, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, and the Cross-Origin trio (COOP, COEP, CORP). | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 2078 | Read findings JSONL files from cluster 1-4 skills, deduplicate by fingerprint, group by severity, and compose a deliverable- grade markdown vulnerability report with per-finding sections (title… | jeremylongshore/ | 2.8k | — | ~1.9k | Automated safety check: Notes | MIT | yesterday |
| 2079 | Probe a target for directories that return auto-generated index listings instead of denying or serving a specific file — exposes the full file tree under any reachable directory, including files the… | jeremylongshore/ | 2.8k | — | ~1.8k | Automated safety check: Notes | MIT | yesterday |
| 2080 | Scan a source tree for SQL-injection vulnerable patterns: string concatenation into queries, f-string interpolation in SQL, string-format substitution into raw queries, deprecated cursor methods… | jeremylongshore/ | 2.8k | — | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 2081 | Audit a target's TLS certificate beyond protocol/expiry — chain ordering, OCSP stapling, revocation status, Certificate Transparency presence, key-usage flags, and over-broad wildcards. | jeremylongshore/ | 2.8k | — | ~1.7k | Automated safety check: Pass | MIT | yesterday |
| 2082 | Scan a source tree for weak cryptographic primitives: MD5 / SHA-1 used for security purposes, DES / 3DES / RC4 ciphers, ECB block mode, custom-built crypto (XOR loops, hand-rolled HMAC), hardcoded… | jeremylongshore/ | 2.8k | — | ~1.3k | Automated safety check: Pass | MIT | yesterday |
| 2083 | Compose an exec-readable summary from a unified findings JSONL plus the OWASP coverage report. | jeremylongshore/ | 2.8k | — | ~2.2k | Automated safety check: Notes | MIT | yesterday |
| 2084 | Annotate every pentest finding with its OWASP Top 10 (2021) category by applying a deterministic rule table keyed on source skill, finding category, detail keywords, and CWE identifier when present. | jeremylongshore/ | 2.8k | — | ~2.1k | Automated safety check: Notes | MIT | yesterday |
| 2085 | Build a dependency-tree map of a project (npm or Python) and trace the path from each known-vulnerable transitive package back to one or more direct dependencies. | jeremylongshore/ | 2.8k | — | ~2.2k | Automated safety check: Notes | MIT | yesterday |
| 2086 | 2086.Validator Expert Validate production readiness of Vertex AI Agent Engine deployments across security, monitoring, performance, compliance, and best practices. | jeremylongshore/ | 2.8k | — | ~1.9k | Automated safety check: Pass | MIT | yesterday |
| 2087 | 2087.Sast Scanning Perform static application security testing with tools like Semgrep, CodeQL, and SonarQube. | BagelHole/ | 1.2k | — | ~2.2k | Automated safety check: Pass | MIT | 4 mo ago |
| 2088 | A skill your agent uses when you need to apply Java secure coding best practices — including validating untrusted inputs, defending against injection attacks with parameterized queries, minimizing… | jabrena/ | 447 | — | ~885 | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 2089 | A skill your agent uses when you need to write or review programmatic JDBC with Spring — including JdbcClient (Spring Framework 7+) as the default API, JdbcTemplate only where batch/streaming APIs… | jabrena/ | 447 | — | ~975 | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 2090 | 2090.Supply Chain Interactive supply chain dashboard mapping suppliers, customers, and financial interdependencies | daloopa/ | 489 | — | ~14k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 2091 | 2091.Rust Dep Hygiene Dependency hygiene for the Rocky engine workspace — how to add/update deps via [workspace.dependencies], MSRV 1.88 policy, cargo-audit / cargo-deny / cargo-machete usage, and how the weekly security… | rocky-data/ | 304 | — | ~2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 2092 | 2092.Audit Audit current changes, a path, or the full project for quality, security, performance, or test problems and record durable findings. | aiblueprinthq/ | 463 | — | ~6.7k | Automated safety check: Pass | MIT | 2 days ago |
| 2093 | 2093.Finding Discipline A skill your agent uses when about to record, claim, rate the severity of, or report any security finding — before marking anything [CONFIRMED] or writing it into the report | hypnguyen1209/ | 388 | — | ~1.1k | Automated safety check: Pass | MIT | 13 days ago |
| 2094 | 2094.Opsec Discipline A skill your agent uses when about to take any outward or offensive action (request, payload, persistence, lateral movement, exfil, or feeding captured traffic to the model) — to decide detection… | hypnguyen1209/ | 388 | — | ~561 | Automated safety check: Pass | MIT | 13 days ago |
| 2095 | 2095.Securing Systems Security engineering router for penetration testing, code auditing, red/blue/purple team operations, threat intelligence, and vulnerability research. | telagod/ | 244 | — | ~581 | Automated safety check: Pass | MIT | 2 mo ago |
| 2096 | 2096.Data Breach Response Data breach incident response with ENISA severity scoring, notification timelines, and compliance tracking. | borghei/ | 891 | — | ~4k | Automated safety check: Pass | MIT | 4 days ago |
| 2097 | Cross-framework infrastructure security audit across cloud, network, and CI/CD. | borghei/ | 891 | — | ~2.1k | Automated safety check: Pass | MIT | 4 days ago |
| 2098 | 2098.Threat Detection This skill should be used when the user asks to "analyze logs for threats", "detect suspicious activity", "scan for brute force attempts", "identify injection attacks", or "audit access patterns for… | borghei/ | 891 | — | ~1.3k | Automated safety check: Notes | MIT | 4 days ago |
| 2099 | 2099.AI Security This skill should be used when the user asks to "scan AI systems for security threats", "check for prompt injection vulnerabilities", "assess model security posture", "detect data poisoning risks"… | borghei/ | 891 | — | ~1.1k | Automated safety check: Pass | MIT | 4 days ago |
| 2100 | Manage AWS accounts, organizations, IAM, and billing. An agent skill from hoodini/ai-agents-skills. | hoodini/ | 282 | — | ~3.5k | Automated safety check: Pass | No licence | 3 mo ago |
| 2101 | 2101.Feature Verify Feature verification (READ-ONLY, P0-P5). An agent skill from sd0xdev/sd0x-harness. | sd0xdev/ | 192 | — | ~3.2k | Automated safety check: Notes | MIT | 3 days ago |
| 2102 | 2102.Security Review Security review via Codex exec. An agent skill from sd0xdev/sd0x-harness. | sd0xdev/ | 192 | — | ~1.1k | Automated safety check: Pass | MIT | 3 days ago |
| 2103 | 2103.Security Secure coding practices for agent-native apps: input validation, SQL injection, XSS, secrets, data scoping, and auth. | BuilderIO/ | 7.1k | — | ~5.2k | Automated safety check: Notes | No licence | yesterday |
| 2104 | 2104.AI Security A skill your agent uses when assessing AI/ML systems for prompt injection, jailbreak vulnerabilities, model inversion risk, data poisoning exposure, or agent tool abuse. | alirezarezvani/ | 28k | — | ~4.5k | Automated safety check: Warn | MIT | 1 mo ago |
| 2105 | 2105.Memory Consolidate Consolidate brain memory and mine user sessions since the last consolidation checkpoint (sleep-cycle style). | mikeyobrien/ | 373 | — | ~1.3k | Automated safety check: Pass | MIT | 10 days ago |
| 2106 | 2106.Levyra Engineering Coordinate cross-domain Levyra work that spans multiple subsystems, or orient an agent when no single specialized Levyra skill is sufficient. | LUC4N3X/ | 590 | — | ~876 | Automated safety check: Pass | GPL-3.0 | yesterday |
| 2107 | Coordinate Levyra work through OpenClaw using a dedicated repository workspace, compact delegation, specialized review and CI agents, project-native skills, evidence collection, durable memory, and… | LUC4N3X/ | 590 | — | ~2.2k | Automated safety check: Pass | GPL-3.0 | yesterday |
| 2108 | Perform an evidence-based Levyra security review and Codex Security workflow covering threat modeling, attack paths, validation, remediation, revalidation, secrets, provider URLs, redirects, SSRF… | LUC4N3X/ | 590 | — | ~2.3k | Automated safety check: Pass | GPL-3.0 | yesterday |
| 2109 | 2109.Advisory Deep Dive Re-audit every past GHSA/CVE advisory published against this repository, anchored on each advisory's fix commit, for four failure modes, a regression of the original bug, a bypass of the fix, an… | alpha-omega-security/ | 242 | — | ~3.5k | Automated safety check: Notes | MIT | yesterday |
| 2110 | 2110.Recon Scope Triage Triage ASM/recon output for ownership before testing — separate the target's real assets from namespace-collision noise. | elementalsouls/ | 4.8k | — | ~1.9k | Automated safety check: Notes | MIT | yesterday |
| 2111 | A skill your agent uses when asked to analyze, investigate, or report on honeypot server security. | SCStelz/ | 249 | — | ~5.8k | Automated safety check: Pass | MIT | 3 days ago |
| 2112 | A skill your agent uses when asked to investigate a security incident by ID from Microsoft Defender XDR or Microsoft Sentinel. | SCStelz/ | 249 | — | ~13k | Automated safety check: Pass | MIT | 3 days ago |