Search

Security · For devops and sre engineers

1,395 skills found, page 6.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
241

Reviews a diff, module or network surface for exploitable defects, mapping trust boundaries and sinks, then reports only findings with a verified reachable path and a fix.

codewhale-hq/Codewhale41k—~844Automated safety check: PassMITtoday
242

OpenClaw 攻击模式检测工具,识别数据外传、反弹Shell、文件泄露、Prompt注入、供应链投毒等高危行为,支持 MITRE ATT&CK 映射

jd-opensource/JoySafeter314—~1.3kAutomated safety check: WarnApache-2.01 mo ago
243

Loads a missing environment variable or API key from the team's Infisical workspace into the current shell, or runs a command with all project secrets injected.

Devin-AXIS/iPolloWork6.8k1 repo~516Automated safety check: PassUnknowntoday
244

Map your security posture against the NIST Cybersecurity Framework 2.0 (Govern, Identify, Protect, Detect, Respond, Recover).

briiirussell/cybersecurity-skills413—~3kAutomated safety check: NotesMIT4 mo ago
245

PHP Web 源码表达式注入(非模板)审计工具。识别用户可控表达式字符串进入表达式引擎求值/编译并最终导致敏感语义执行,输出可利用性分级、PoC 与修复建议(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~720Automated safety check: PassNo licence6 mo ago
246

Search for existing cases related to specific indicators or entities.

dandye/ai-runbooks127—~562Automated safety check: PassApache-2.01 mo ago
247

Security patterns for autonomous trading agents with wallet or transaction authority.

affaan-m/ECC277k2 repos~1.2kAutomated safety check: PassMITtoday
248

Hunt for exploitable, bounty-worthy security issues in repositories.

affaan-m/ECC277k2 repos~907Automated safety check: PassMITtoday
249

A skill your agent uses when the user asks to log in or out with a wallet session, fetch a wallet sign-in challenge, verify an externally signed challenge, or troubleshoot AltLLM Portal wallet login…

internet-court/internet-court-skill6.6k1 repo~632Automated safety check: PassISC1 mo ago
250

逆向防御方实现 → 红队针对性绕过。把 EDR / Defender / AV 的 hook 表、ETW provider、AMSI 实现先逆向出来, 再写针对性的 unhook / 间接 syscall / ETW patch / call stack spoof。对照 MITRE ATT&CK T1562 防御规避。

zhaoxuya520/reverse-skill41k1 repo~1.6kAutomated safety check: WarnMIT19 days ago
251

Install local-first security hardening: pre-commit secret detection, offline dependency scans, static analysis, reports, and gated free CI.

luongnv89/skills131—~4.5kAutomated safety check: PassMITtoday
252

Hunt for vulnerabilities in a running debuggee by analyzing imports/exports, triaging attack surface, and iteratively testing for bugs with PoC generation.

dariushoule/x64dbg-skills209—~3.9kAutomated safety check: NotesMIT7 mo ago
253

Package and finalize completed work for delivery — use when a feature is done and ready to ship

nyldn/claude-octopus4.2k1 repo~2.7kAutomated safety check: PassMITtoday
254

Author and verify an OpenTaint rule. An agent skill from seqra/opentaint.

seqra/opentaint163—~2.6kAutomated safety check: PassApache-2.0yesterday
255

Detect business logic vulnerabilities in a codebase using a three-phase approach: threat modeling (domain analysis and attack scenarios), batched verify (check exploitable gaps in parallel…

utkusen/sast-skills1.3k—~5.3kAutomated safety check: PassMIT6 mo ago
256
256.Soak

Manages the repo's supply-chain soak window (SOAKDAYS) — checks and fixes the derived surfaces, bumps or disables the window, adds dated per-package exclusions, and bumps pinned external tools.

nubjs/nub4.4k—~1.3kAutomated safety check: WarnMITyesterday
257

Mine repository history for security fixes that were never published as advisories, producing a cached worklist for threat-model and advisory-deep-dive.

alpha-omega-security/scrutineer245—~2.9kAutomated safety check: NotesMITtoday
258

Runs the installed local Semgrep CLI through a bounded JSON wrapper with two bundled non-secret rules.

KimYx0207/Kim_Service174—~1.2kAutomated safety check: PassMITyesterday
259

Teaches the agent to use the WebCrypt MCP server for AES-256-GCM symmetric encryption, RSA-4096 hybrid encryption, key generation, digital signatures, hashing, and post-quantum cryptography.

putervision/state-memory-mcp50—~847Automated safety check: PassMIT7 days ago
260

Path traversal / Local File Inclusion detection→file-read→RCE for web apps.

s0ld13rr/pentestcode828—~602Automated safety check: NotesMIT8 days ago
261

Rules for designing CI/CD pipelines in layers: universal lint, test and scan stages, container builds with SBOM attestation, and GitOps for orchestrated deployments.

irahardianto/awesome-agv156—~2.7kAutomated safety check: NotesMIT6 days ago
262

Secure secrets in Google Cloud Secret Manager. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k3 repos~3.3kAutomated safety check: PassMITyesterday
263

Use before merging security-relevant Rust changes. An agent skill from Jxck/sptth.

Jxck/sptth133—~318Automated safety check: PassMIT7 mo ago
264

Detecta riscos básicos de segurança em repositórios (segredos expostos, configurações perigosas, padrões inseguros) e gera recomendações com evidências.

glaucia86/repocheckai121—~819Automated safety check: WarnMIT3 mo ago
265

生成安全审计 skill。两种模式:(1) 项目模式——根据项目文档生成定制化审计 skill;(2) 通用模式——仅指定语言+框架,从参考资料库生成通用审计 skill。当用户想创建安全审计 skill、生成审计规则、或提到"生成安全审计skill"、"创建code review skill"、"生成 Java 审计 skill"时使用。

xwtro0tk1t-cloud/harness265—~5.7kAutomated safety check: PassNo licence5 mo ago
266

Run splint after cppcheck/clang-format/clang-tidy precommit sanity to find memory issues, API misuse, and contract violations in staged C code (tolerates older C parser limitations).

MidnightBSD/src114—~348Automated safety check: PassUnknownyesterday
267

Expert in threat modeling methodologies, security architecture review, and risk assessment.

davila7/claude-code-templates33k8 repos~529Automated safety check: PassMITtoday
268

A skill your agent uses when adding, updating, or removing CVE/GHSA suppressions in .openvex.json — the OpenVEX document consumed by the weekly image vulnerability scan workflow.

NVIDIA/aicr440—~5.9kAutomated safety check: PassApache-2.0today
269

Configure a GitLab CI/CD pipeline that embeds SAST (Semgrep, SpotBugs, Gosec, Bandit, NodeJsScan), DAST, container scanning, dependency scanning, and secret detection via GitLab's managed security…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.2kAutomated safety check: PassApache-2.01 mo ago
270

Operate Semgrep and source-oriented static analysis as a hypothesis, coverage, and regression system during advanced code audits.

cyberful/cyberful135—~1.3kAutomated safety check: PassAGPL-3.01 mo ago
271

Review a PR through the CodeReviewSecurityReview persona. An agent skill from eric-tramel/moraine.

eric-tramel/moraine117—~497Automated safety check: PassApache-2.0today
272

Azure Key Vault Secrets Java SDK for secret management. An agent skill from microsoft/skills.

microsoft/skills3.1k5 repos~3.1kAutomated safety check: PassMITyesterday
273
273.Iam

AWS Identity and Access Management for users, roles, policies, and permissions.

itsmostafa/aws-agent-skills1.2k—~1.8kAutomated safety check: PassMIT5 days ago
274
274.Fabric

Intelligent pattern selection for Fabric CLI. An agent skill from ynulihao/AgentSkillOS.

ynulihao/AgentSkillOS6181 repo~3.4kAutomated safety check: PassNo licence7 mo ago
275

Publishes CycloneDX BOMs to Dependency-Track or a TEA (Transparency Exchange API) server from cdxgen, and runs cdxgen in HTTP server mode to generate BOMs on demand for local paths, Git URLs, or…

cdxgen/cdxgen1.1k—~1.9kAutomated safety check: PassApache-2.0today
276

How to monitor and fix security issues in Massing — CodeQL alerts, dependency audits, secret scanning, and ReDoS/XXE fixes.

ibuilder/massing122—~1.7kAutomated safety check: PassMIT2 days ago
277

Run a focused STRIDE-based security review using Bug Hunter-native artifacts.

codexstar69/bug-hunter520—~567Automated safety check: PassMIT1 mo ago
278

Audit agent skills, plugins, prompts, manifests, scripts, dependencies, and bundled assets for provenance, prompt-injection, permission, execution, exfiltration, persistence, and update risk.

seb1n/awesome-ai-agent-skills206—~2.4kAutomated safety check: PassMIT2 mo ago
279

PHP Web 源码任意文件读取/路径穿越审计工具。识别文件读取 Sink,追踪路径来源与校验逻辑,输出可利用性分级、PoC 与修复建议(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~558Automated safety check: PassNo licence6 mo ago
280

Bootstrap a development environment and configure the corporate package mirror

cisco-ai-defense/skill-scanner2.6k—~126Automated safety check: NotesApache-2.02 days ago
281

Complete Tier 1 triage workflow. An agent skill from dandye/ai-runbooks.

dandye/ai-runbooks127—~1.8kAutomated safety check: PassApache-2.01 mo ago
282

A skill your agent uses for anything about how your MSP runs day-to-day support: setting or questioning a ticket's priority, response and resolution targets, "the client says everything is down"…

RTFM-IT-Services-LLC/msp-claude-skills115—~3.3kAutomated safety check: PassUnknown8 days ago
283

Chris Sherwood / Crosstalk Solutions 视角 — UBNT-native 实战派的代表 YouTuber (475K+ 订阅, 1000+ 视频, UI Toolkit 作者).

swaylq/master-skill148—~5.2kAutomated safety check: NotesMIT1 mo ago
284

Analyze code changes for security vulnerabilities using LLM reasoning and threat model patterns.

Factory-AI/factory-plugins111—~2.3kAutomated safety check: PassNo licencetoday
285

GitHub repository automation (CI/CD, issue templates, Dependabot, CodeQL).

secondsky/claude-skills227—~4kAutomated safety check: NotesMIT13 days ago
286

Repository-grounded threat modeling that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and mitigations, and writes a concise Markdown threat model.

trailofbits/skills-curated5139 repos~1.4kAutomated safety check: PassCC-BY-SA-4.02 mo ago
287

Create an OpenTaint test project with positive/negative samples for verifying a rule or approximation.

seqra/opentaint163—~2.3kAutomated safety check: PassApache-2.0yesterday
288

Detect insecure file upload vulnerabilities in a codebase using a three-phase approach: discovery (find all upload sites), batched verify (check extension bypass and related issues in parallel…

utkusen/sast-skills1.3k—~7.3kAutomated safety check: PassMIT6 mo ago