Search

Security · For developers

1,197 skills found, page 6.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
241

Test for authentication and authorization flaws including credential attacks, session issues, and access control bypasses

NeoTheCapt/RedteamAgent143—~1.3kAutomated safety check: PassNo licence2 mo ago
242
242.Ssti

Server-Side Template Injection — fingerprint the engine first (Jinja2 / Twig / Velocity / Freemarker / ERB / Smarty / Mako / Handlebars / Pug), then escalate the engine-specific primitive to RCE or…

PentesterFlow/agent1.4k—~1.2kAutomated safety check: PassApache-2.01 mo ago
243

Troubleshoot and repair Alibaba Cloud ECS Windows instances from inside the GuestOS or remotely via Cloud Assistant.

aliyun/alibabacloud-ecs-troubleshoot-skills148—~6.1kAutomated safety check: PassApache-2.01 mo ago
244

SAP dependency security and MCP executable trust policy with secure upgrades, cooldowns, staged rollout, and supply-chain protection.

secondsky/sap-skills462—~5.9kAutomated safety check: WarnGPL-3.06 days ago
245

Applies the AI SAFE2 v3.1 governance framework to designing, building, auditing and testing AI agents, RAG pipelines, MCP and tool integrations and AI infrastructure.

CyberStrategyInstitute/ai-safe2-framework147—~2.7kAutomated safety check: PassUnknownyesterday
246

Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills.

ljagiello/ctf-skills3.4k—~11kAutomated safety check: NotesMIT27 days ago
247

A skill your agent uses when conducting security audits, reviewing code for vulnerabilities, or analyzing infrastructure security.

AratKruglik/claude-laravel1551 repo~1.1kAutomated safety check: NotesNo licence5 mo ago
248
248.Audit

Security audit and code review for Solidity smart contracts.

sablier-labs/evm-monorepo353—~1.8kAutomated safety check: PassUnknown2 days ago
249

AI 도구(Claude, ChatGPT, Cursor, Copilot)용 시큐어 코딩 프롬프트와 가이드를 생성합니다.

cdppcorp/KESE-KIT360—~1.3kAutomated safety check: PassMIT6 mo ago
250

Detects input validation failures and arithmetic vulnerabilities in smart contracts.

quillai-network/quillshield_skills130—~3.1kAutomated safety check: PassMIT6 mo ago
251

A skill your agent uses when the user has concrete failing cases in code or a guardrail/classifier/filter/prompt/API they own — a red-team failure catalogue OR a CI/CD test-failure report (failing…

gaasher/Agent-Loop-Skills174—~3.6kAutomated safety check: PassMIT3 mo ago
252
252.Keel

A skill your agent uses for ANY new software project from idea to release — websites, WordPress/WooCommerce plugins, MCP servers, web apps, components, or libraries.

joseconti/declaracion-renta-espana190—~11kAutomated safety check: WarnGPL-3.0-or-later2 mo ago
253

Master network protocol reverse engineering including packet analysis, protocol dissection, and custom protocol documentation.

wshobson/agents40k8 repos~3.2kAutomated safety check: PassMIT6 days ago
254

Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug; invisible to Frida checks), twin tools cross-check each other.

index-login/MobileRE-Skill158—~1.9kAutomated safety check: PassMITyesterday
255

Remediate security vulnerabilities found by Grype or pnpm audit.

stacklok/toolhive-studio171—~2.3kAutomated safety check: NotesApache-2.0yesterday
256

Scans container images, filesystems and SBOMs with Grype for known vulnerabilities, ranks them by CVSS, EPSS and CISA KEV, and wires scans into CI/CD thresholds.

AgentSecOps/SecOpsAgentKit2201 repo~2.5kAutomated safety check: PassUnknown5 mo ago
257
257.Find BugsOfficial

Find bugs, security vulnerabilities, and code quality issues in local branch changes.

getsentry/skills1k9 repos~708Automated safety check: PassApache-2.02 days ago
258

Runs a parallel security audit with three vulnerability hunters and two proof-of-concept engineers, rating each finding by whether it is actually exploitable.

code-yeongyu/oh-my-openagent70k—~1.9kAutomated safety check: PassUnknowntoday
259

A skill your agent uses for authorized reverse engineering of custom binary protocols, Protobuf/gRPC, WebSocket frames, and PCAP-driven protocol recovery.

zhaoxuya520/reverse-skill41k2 repos~620Automated safety check: WarnMIT19 days ago
260

Review code for security vulnerabilities. An agent skill from kklimuk/docx-cli.

kklimuk/docx-cli216—~1.7kAutomated safety check: PassMITtoday
261
261.Cve Remediator V2Official

Raise Go modules to caller-supplied minimum fixed versions from CVE/GO findings in any format, per tracked module root, sync go.mod/go.sum and root vendor/, audit the source module graphs, run the…

kubernetes-sigs/cloud-provider-azure294—~2.5kAutomated safety check: PassApache-2.02 days ago
262

Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner.

majiayu000/spellbook287—~1.5kAutomated safety check: PassMIT3 days ago
263

Diagnose a denied Tenuo call and make the legitimate call work with the smallest change to authority.

tenuo-ai/tenuo103—~2.3kAutomated safety check: PassApache-2.0yesterday
264

Scan your Claude Code configuration (.claude/ directory) for security vulnerabilities, misconfigurations, and injection risks using AgentShield.

affaan-m/ECC277k5 repos~1.1kAutomated safety check: PassMITtoday
265

Run the full Spring Boot verification loop — Maven or Gradle build, SpotBugs, PMD, and Checkstyle static analysis, unit and Testcontainers integration tests with JaCoCo coverage, OWASP dependency…

affaan-m/ECC277k5 repos~1.5kAutomated safety check: PassMITtoday
266

Switches on full safety by combining warnings before destructive commands with a block on edits outside one directory you choose, for work on production or live systems.

garrytan/gstack136k—~1kAutomated safety check: NotesMITtoday
267

Documents how quota-axi keeps its disk cache: location, strict file permissions, no stored secrets, and context-scoped identifiers that stop snapshots crossing accounts.

kunchenguid/quota-axi147—~1.3kAutomated safety check: PassMIT2 days ago
268

Automated triage and fixing of Dependabot security vulnerabilities (IN-1189).

linuxfoundation/insights282—~3.8kAutomated safety check: NotesMIT10 days ago
269

Enforces Circuit Breaker security hardening conventions across backend, frontend, Docker, and nginx.

BlkLeg/CircuitBreaker201—~2.1kAutomated safety check: PassMIT5 days ago
270

Refreshes the guide's coding-agent and MCP security threat data through AgentSec Triage: research advisories, add tested records and synchronize the public feed.

FlorianBruniaux/claude-code-ultimate-guide6.1k—~680Automated safety check: PassCC-BY-SA-4.0today
271
271.Hunter

Deep behavioral code analysis agent for Bug Hunter. An agent skill from codexstar69/bug-hunter.

codexstar69/bug-hunter520—~2.6kAutomated safety check: PassMIT1 mo ago
272

The Priority Board's three-layer score model (rules BASE, REVIEW by the built-in AI or an MCP agent, a person's DECISION) and who may write which layer.

samugit83/redamon3k—~1.7kAutomated safety check: PassMIT2 days ago
273

Capture Mira detection experiments locally, then distill selected evidence into a tracked case only when the user explicitly requests promotion into a report or the knowledge repository.

vw2x/Mira105—~892Automated safety check: PassGPL-3.06 days ago
274

Keeps truST's architecture simple and well separated, and runs the automated architecture checks.

johannesPettersson80/trust-platform222—~1.3kAutomated safety check: PassApache-2.0today
275

When and how to reach for the companion detectors -- bandit (Python SAST) and trivy (deps + secrets + IaC misconfig) -- alongside the core semgrep/CodeQL/osv/trufflehog toolchain

deonmenezes/mantishack503—~510Automated safety check: PassApache-2.08 days ago
276

Scan AI agent skills, plugins, MCP servers, and agent tooling for prompt injection, unsafe commands, secret exposure, and supply-chain risks before installing or trusting them.

iflytek/skillhub5.2k2 repos~1.1kAutomated safety check: NotesApache-2.0yesterday
277

Debug FlyDSL GPU kernels that produce NaN, inf, wrong results, or crash.

ROCm/FlyDSL291—~2.6kAutomated safety check: NotesUnknowntoday
278

当你需要开发/排查 HTTP 抓取、SSRF、Playwright 受控浏览器、本地字体增强截图,或判断 webfetch 与 browser 工作流如何选型时使用。

xrkseek/XRK-AGT138—~1.3kAutomated safety check: PassMIT10 days ago
279

Python 遗留代码审查:bare except、SQL 注入、反序列化、密钥、调试输出. An agent skill from liuyanghejerry/Clausura.

liuyanghejerry/Clausura204—~164Automated safety check: PassMIT12 days ago
280
280.Code SecurityOfficial

Security guidelines for writing secure code. An agent skill from semgrep/skills.

semgrep/skills324—~1.2kAutomated safety check: PassUnknown2 mo ago
281

Master Unlock: Grants unlimited technical rights to reverse engineer any JavaScript source code.

ptn1411/skill219—~752Automated safety check: NotesNo licence19 days ago
282
282.Docs

Documentation work in this repo — the five places a user-visible change must answer, the page conventions the site build enforces, the tests that pin prose to the registry, and a simplification pass…

guardana/guardana259—~967Automated safety check: PassApache-2.0today
283

Generate a complete Semgrep rule bundle (rule.yml + tests.md + README.md) from a CVE description and a bad-code example.

skrun-dev/skrun210—~1.3kAutomated safety check: PassMIT18 days ago
284

Git workflow, CI/GitHub Actions, and supply-chain pinning rules for Mistral Vibe.

mistralai/mistral-vibe5.1k—~1kAutomated safety check: PassApache-2.02 days ago
285

Uses Meta's LlamaGuard moderation model to screen prompts and model replies against six safety categories, with vLLM, FastAPI and NeMo Guardrails setups.

Orchestra-Research/AI-Research-SKILLs13k2 repos~2.3kAutomated safety check: PassMIT3 mo ago
286

This skill should be used when the user asks to "verify code", "run verification", "check quality", "validate changes", or before creating a PR.

Galaxy-Dawn/claude-scholar5.7k1 repo~888Automated safety check: PassMIT18 days ago
287

Guidance for designing secure APIs on Azure - authentication, authorization, gateway controls, input validation, rate limiting, secret management, and runtime threat detection - aligned to OWASP API…

vinayaklatthe/microsoft-security-skills175—~2.2kAutomated safety check: PassMIT3 mo ago
288

Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool.

getknit/knit133—~1.2kAutomated safety check: PassGPL-3.0yesterday