Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 193 | 193.Email Security A skill your agent uses for authorized email security review including phishing analysis, header authentication (SPF/DKIM/DMARC), BEC patterns, and mailbox token abuse research. | zhaoxuya520/ | 41k | 2 repos | ~259 | Automated safety check: Warn | MIT | 19 days ago |
| 194 | A skill your agent uses for authorized hardware and embedded interface security research including UART/JTAG discovery, debug pad triage, secure boot overview, and offline firmware extraction support. | zhaoxuya520/ | 41k | 2 repos | ~266 | Automated safety check: Warn | MIT | 19 days ago |
| 195 | 195.Radio Sdr A skill your agent uses for authorized RF/SDR security research including signal identification, replay feasibility study in shielded labs, and wireless protocol analysis outside classic Wi-Fi. | zhaoxuya520/ | 41k | 2 repos | ~232 | Automated safety check: Warn | MIT | 19 days ago |
| 196 | 196.Threat Hunting A skill your agent uses for blue-team threat hunting, detection engineering with Sigma/YARA, SIEM query design, and incident detection validation. | zhaoxuya520/ | 41k | 2 repos | ~344 | Automated safety check: Warn | MIT | 19 days ago |
| 197 | 197.Wifi Wireless A skill your agent uses for authorized wireless security assessment including Wi-Fi capture, WPA handshake analysis, rogue AP detection research, and lab-only deauth testing. | zhaoxuya520/ | 41k | 2 repos | ~255 | Automated safety check: Warn | MIT | 19 days ago |
| 198 | This skill should be used when the user asks to "verify code", "run verification", "check quality", "validate changes", or before creating a PR. | Galaxy-Dawn/ | 5.7k | 1 repo | ~888 | Automated safety check: Pass | MIT | 18 days ago |
| 199 | 199.Upgrade Notes Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool. | getknit/ | 133 | — | ~1.2k | Automated safety check: Pass | GPL-3.0 | yesterday |
| 200 | 200.Sast Report Consolidate all SAST vulnerability results from the sast/ folder into a single final report ranked by severity and confidentiality impact. | utkusen/ | 1.3k | — | ~1.7k | Automated safety check: Pass | MIT | 6 mo ago |
| 201 | Runs untrusted analysis targets inside Docker or Podman containers with memory, CPU and process limits, covering image builds, lifecycle, command execution and cleanup. | prime-radiant-inc/ | 292 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 202 | Lints Dockerfiles with Hadolint for security misconfigurations and best-practice violations, locally and in CI, with strict, balanced and permissive rule templates. | AgentSecOps/ | 220 | 1 repo | ~4.4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 203 | Static Application Security Testing (SAST) tool setup, configuration, and custom rule creation for comprehensive security scanning across multiple programming languages. | davila7/ | 33k | 11 repos | ~1.6k | Automated safety check: Pass | MIT | today |
| 204 | One-click deployment Skill for Windows security policies, daily security audits, behavior auditing, file baselines, logging and nightly audit task management | SafeAI-Lab-X/ | 1k | — | ~2.1k | Automated safety check: Pass | No licence | 1 mo ago |
| 205 | Report/investigate RUNTIME ACTIVITY of AI agents (Agent 365 / Copilot Studio / M365 Copilot / Work IQ) — agents used, tools/connectors, channels, tokens, prompt/reply content, and Prompt Shield… | SCStelz/ | 249 | — | ~17k | Automated safety check: Pass | MIT | 2 days ago |
| 206 | Command reference for omniroute's audit, logs, policy and telemetry commands: search and export audit trails, manage access policies and review request history for compliance work. | diegosouzapw/ | 75k | — | ~733 | Automated safety check: Pass | MIT | today |
| 207 | Performs a comprehensive Amazon ECS operations review across the 6 review pillars (Resiliency & HA, Observability, Security, Operations, Performance, Additional Analysis) using read-only AWS APIs… | aws/ | 103 | — | ~4.8k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 208 | 208.Janitor Discover Find new skills on GitHub or check a specific skill before installing. | khendzel/ | 122 | — | ~1.6k | Automated safety check: Pass | MIT | 11 days ago |
| 209 | 209.Afa Ops DTC 运营与供应链——仓储物流、库存、3PL、发货时效、供应商、关税成本。触发词: 运营, operations, 供应链, 仓储, 物流, 库存, 3PL, 履约, 供应商, supply chain, fulfillment, inventory management, shipping times。复杂问题先经 afa。 | afadtc/ | 168 | — | ~2.4k | Automated safety check: Pass | Unknown | 2 days ago |
| 210 | Scan systems and dependencies for CVEs and security vulnerabilities. | BagelHole/ | 1.2k | — | ~2.4k | Automated safety check: Pass | MIT | 4 mo ago |
| 211 | 211.Container Sbom Generates CycloneDX BOMs for container images, OCI archives, mounted root filesystems, Electron ASAR archives, caxa executables, binaries, and Kubernetes or Dockerfile manifests using OWASP cdxgen… | cdxgen/ | 1.1k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | today |
| 212 | 212.Skill Update Skill creation, update and management — generates skill directory structure, validates against best practices, enforces line count limits. | transilienceai/ | 563 | — | ~1.2k | Automated safety check: Pass | MIT | 2 mo ago |
| 213 | 213.Security Guide OpenClaw 安全部署指南 / Security deployment guide — help users secure their OpenClaw installation | jnMetaCode/ | 140 | — | ~644 | Automated safety check: Warn | Apache-2.0 | 12 days ago |
| 214 | Detect error propagation, chain failures, and single-point breakdowns that cascade across agent workflows. | Tencent/ | 6.8k | — | ~593 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 215 | Use webspec-index to query WHATWG, W3C, IETF and TC39 web specifications from the command line | SAP/ | 180 | 2 repos | ~1.1k | Automated safety check: Pass | GPL-3.0 | today |
| 216 | 216.Security Audit Security audit skill. An agent skill from blueberrycongee/termcanvas. | blueberrycongee/ | 405 | — | ~966 | Automated safety check: Notes | MIT | 4 mo ago |
| 217 | 217.Snapshot Run snapshot regression tests after changes to OPA rules, scanners, analyzers, or formatters to detect output regressions. | boostsecurityio/ | 523 | — | ~214 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 218 | Audits, detects gaps, and remediates Android permissions and IPC component security vulnerabilities. | sreichholf/ | 116 | 2 repos | ~7k | Automated safety check: Pass | GPL-3.0 | today |
| 219 | Audit AI agent configurations for security risks — excessive permissions, prompt injection surfaces, data exfiltration paths, and missing guardrails. | OWASP/ | 188 | — | ~542 | Automated safety check: Pass | CC-BY-4.0 | 15 days ago |
| 220 | 220.Security Review or implement security-sensitive code in the Static Web Server (SWS) project — path traversal defenses, symlink and hidden-file policy, TLS, security headers, CORS, basic auth, untrusted input… | static-web-server/ | 2.4k | — | ~2k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 221 | 221.Net 嵌入式网络调试工具,用于发现接口、抓包、分析 pcap/pcapng、做连通性测试、端口扫描和流量统计. An agent skill from zhinkgit/embeddedskills. | zhinkgit/ | 734 | — | ~1.1k | Automated safety check: Pass | MIT | 1 mo ago |
| 222 | 222.Skill Scanner A skill your agent uses when reviewing an agent Skill before sharing, installing, or executing it and when checking a Skill bundle for credentials, dangerous commands, suspicious network behavior… | zrt-ai-lab/ | 287 | — | ~317 | Automated safety check: Pass | No licence | 2 mo ago |
| 223 | Model a method's taint propagation as a passThrough approximation. | seqra/ | 163 | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 224 | 224.Ghost Report Ghost Security — combined security report. An agent skill from ghostsecurity/skills. | ghostsecurity/ | 409 | — | ~1.4k | Automated safety check: Notes | Apache-2.0 | 12 days ago |
| 225 | Hunt for the failure this project exists to prevent — code that compiles, types, tests green, and quietly reports "all clear" about something it never examined. | guardana/ | 259 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | today |
| 226 | 226.Kesekit Start Ko KISA 기반 보안 취약점 분석평가를 수행합니다. An agent skill from cdppcorp/KESE-KIT. | cdppcorp/ | 360 | — | ~1.5k | Automated safety check: Pass | MIT | 6 mo ago |
| 227 | 227.Crypto Analysis A skill your agent uses when assessing cryptography — TLS/PKI auditing, RSA/ECC key attacks, ECDSA nonce lattice recovery, symmetric/AEAD misuse, JWT/JOSE forgery, hash cracking, post-quantum… | hypnguyen1209/ | 388 | — | ~2.2k | Automated safety check: Pass | MIT | 13 days ago |
| 228 | 228.Dependencies Run git-pkgs list and sbom against the repository and emit one envelope with per-section status. | alpha-omega-security/ | 245 | — | ~596 | Automated safety check: Pass | MIT | today |
| 229 | Turns a leaked key, token or password into one tracked rotation task the moment it's spotted, instead of a reminder repeated every session. | avelikiy/ | 103 | — | ~884 | Automated safety check: Notes | MIT | today |
| 230 | 230.Variant Analysis Find similar vulnerabilities and bugs across codebases using pattern-based analysis. | waybarrios/ | 534 | 5 repos | ~1.4k | Automated safety check: Pass | MIT | 5 days ago |
| 231 | 231.Security Review Security review of an open-autonomy agent service — cryptographic key handling, dynamic code execution, ABCI authentication and replay, secret exposure, dependency supply chain, and deployment… | valory-xyz/ | 129 | — | ~11k | Automated safety check: Notes | Apache-2.0 | 26 days ago |
| 232 | Guides authorized password-hash recovery with hashcat for security audits, forensic cases and policy testing, starting with an explicit authorization check before any cracking runs. | AgentSecOps/ | 220 | 1 repo | ~3.3k | Automated safety check: Notes | Unknown | 5 mo ago |
| 233 | Installs and configures the WizTelemetry Auditing extension for KubeSphere, which collects and stores Kubernetes audit events, and covers the audit query API. | kubesphere/ | 17k | — | ~2.2k | Automated safety check: Pass | Unknown | 2 mo ago |
| 234 | "보안 점검", "security check", "security audit", "취약점 분석", "vulnerability scan", "보안 감사", "시크릿 노출", "API 보안", "인증 점검", "rate limit" 등 보안 관련 코드 리뷰나 취약점 감사 시 사용하세요. | imgompanda/ | 140 | — | ~371 | Automated safety check: Notes | MIT | 6 mo ago |
| 235 | Run clang-format (prefer clang-format19), clang-tidy19, and cppcheck on staged C/C header changes before committing; auto-format then fail on serious diagnostics. | MidnightBSD/ | 114 | — | ~412 | Automated safety check: Pass | Unknown | yesterday |
| 236 | Harden an application or service against common attack vectors. | agulli/ | 579 | — | ~714 | Automated safety check: Notes | MIT | 2 mo ago |
| 237 | 237.Agent Wallet Give the AI agent its own EVM wallet with admin-controlled policies the agent CANNOT bypass even under prompt injection. | internet-court/ | 6.6k | 1 repo | ~4.1k | Automated safety check: Pass | MIT | 1 mo ago |
| 238 | 238.Review Criteria Classify Datapages findings by reach and severity and write review-.md reports. | romshark/ | 114 | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 239 | 239.Case Review Reviews a reverse-skill case package for scope readiness, Evidence to Finding to Path traceability, work item coverage, timeline references, and optional artifact hash integrity before report handoff. | zhaoxuya520/ | 41k | 1 repo | ~1.6k | Automated safety check: Warn | MIT | 19 days ago |
| 240 | 240.Severity Estimate the severity of a vulnerability finding and produce a CVSS 3.1 vector + impact framing, calibrated against how similar findings were rated in the local disclosed-report corpus. | bugbountywithmarco/ | 120 | — | ~478 | Automated safety check: Pass | No licence | 2 mo ago |