Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 289 | 289.Plan Turn a development task into one work file in .work/ — goal, decisions, lanes with exact files and verification, done-criteria. | guardana/ | 259 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | today |
| 290 | Classify game-cheat capabilities and their defensive implications across memory, injection, rendering, input, engines, kernels, DMA, and remote transports. | gmh5225/ | 3.6k | — | ~356 | Automated safety check: Pass | MIT | today |
| 291 | Analyze a range of local commits, and reorganize them to minimize latency and friction in the review and landing process. | SAP/ | 180 | 1 repo | ~3.7k | Automated safety check: Pass | GPL-3.0 | yesterday |
| 292 | A skill your agent uses when choosing native or multi-LLM handling for init, review, or security requests | nyldn/ | 4.2k | 1 repo | ~643 | Automated safety check: Pass | MIT | today |
| 293 | Scans Substrate/Polkadot pallets for 7 critical vulnerabilities including arithmetic overflow, panic DoS, incorrect weights, and bad origin checks. | trailofbits/ | 7.5k | — | ~3.2k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 294 | Scans TON (The Open Network) smart contracts for 3 critical vulnerabilities including integer-as-boolean misuse, fake Jetton contracts, and forward TON without gas checks. | trailofbits/ | 7.5k | — | ~3.8k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 295 | Runs full Trailmark structural analysis by building a graph, running preanalysis(), and reporting hotspots, taint, blast radius, privilege boundaries, attack surface, and version-gated Trailmark… | trailofbits/ | 7.5k | — | ~1.5k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 296 | Validates cryptographic implementations against Project Wycheproof's test vectors, which encode known attacks and edge cases across AES, RSA, ECDSA, ECDH, and more. | trailofbits/ | 7.5k | — | ~4.9k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 297 | 297.Senior Secops Comprehensive SecOps skill for application security, vulnerability management, compliance, and secure development practices. | davila7/ | 33k | 1 repo | ~1.1k | Automated safety check: Notes | MIT | today |
| 298 | 298.Access Review Conduct periodic access reviews and certifications. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~3.6k | Automated safety check: Pass | MIT | yesterday |
| 299 | 299.Recon Crawl Attack-surface crawling with the crawl tool — BFS link/form/hidden-field collection, JS-bundle API route extraction, and auth boundary mapping through the scoped browser. | Ch1nfo/ | 114 | — | ~718 | Automated safety check: Pass | MIT | 20 days ago |
| 300 | 300.Bagman Secure key management for AI agents. An agent skill from profbernardoj/everclaw-community-branches. | profbernardoj/ | 112 | — | ~4.4k | Automated safety check: Warn | MIT | 1 mo ago |
| 301 | WordPress PHPStan review and setup guidance. An agent skill from jorgerosal/wordpress-skills. | jorgerosal/ | 103 | — | ~1.2k | Automated safety check: Pass | MIT | 4 mo ago |
| 302 | 302.Jev Memory Use on passages a search just returned (memory, vault, session history, wiki, web) before reading them in. | kerpopule/ | 1.1k | — | ~1.7k | Automated safety check: Pass | MIT | 2 days ago |
| 303 | Operate Syft, Grype, Trivy, Gitleaks, Retire.js, package-manager metadata, and build evidence for advanced software-supply-chain assessment. | cyberful/ | 135 | — | ~1.2k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 304 | 304.Get Callee Tool to get the callee of a function in the codebase by function name and file path. | opensage-agent/ | 127 | — | ~223 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 305 | 305.Audit Scope Draft a security-audit scope from GitHub repos or API access, with a protocol narrative and a sizing table. | forefy/ | 152 | — | ~2.3k | Automated safety check: Pass | MIT | 6 days ago |
| 306 | 306.Rust Review Rust 服务审查:panic、SQL 注入、密钥、错误吞没、遗留标记 | liuyanghejerry/ | 204 | — | ~180 | Automated safety check: Pass | MIT | 12 days ago |
| 307 | Performs comprehensive C/C++ security review for memory corruption, integer overflows, race conditions, and platform-specific vulnerabilities. | trailofbits/ | 7.5k | — | ~3.3k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 308 | Expands one confirmed or suspected vulnerability into a Trailmark graph neighborhood of variant candidates by finding sibling functions, shared callers and callees, common sensitive sinks, common… | trailofbits/ | 7.5k | — | ~1.1k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 309 | Queries a local CodexQA symbol graph for change review, regression scope, test gaps, error location, and entry risk. | openqa-cn/ | 152 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 8 days ago |
| 310 | Configure code scanning in Harness pipelines using STO security scanners. | harness/ | 115 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 311 | 311.Static Analysis Expertise in LLVM-based static analysis including dataflow analysis, pointer analysis, taint tracking, and program verification. | aftermathlabs/ | 438 | — | ~1.8k | Automated safety check: Pass | AGPL-3.0 | 8 days ago |
| 312 | Detect data leakage, missing boundaries, or privilege mismatch in inter-agent communication. | Tencent/ | 6.8k | — | ~660 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 313 | 313.Hormuz Strait Check the live status of the Strait of Hormuz from the Hormuz Strait Monitor dashboard: open, restricted, or closed status, tanker transits vs normal, stranded vessels, Brent price impact, war-risk… | himself65/ | 3.4k | — | ~1.5k | Automated safety check: Pass | MIT | 6 days ago |
| 314 | AWS security best practices, VPC security, IAM, KMS, CloudTrail, GuardDuty for CIA platform deployment | Hack23/ | 239 | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 315 | 315.Yao Doctor Skill Audit local and OpenClaw skill libraries for privacy theft, credential theft, stealthy exfiltration, unsafe execution chains, deceptive instructions, and persistence behavior, then generate a visual… | yaojingang/ | 1.3k | — | ~1.1k | Automated safety check: Pass | MIT | 1 mo ago |
| 316 | 316.Ad Persistence AD 域环境持久化技术。当已获取域管/本地管理员权限、需要建立持久访问以确保重启或密码更改后仍能回到目标环境时使用。覆盖主机级持久化(计划任务/注册表Run/COM劫持/WMI事件订阅/Windows服务/启动文件夹)、域级持久化(Golden Ticket/Silver Ticket/Skeleton… | wgpsec/ | 1.8k | — | ~2.3k | Automated safety check: Pass | No licence | yesterday |
| 317 | Audits AWS, GCP and Azure environments (and matching IaC) for excessive permissions, public exposure, weak encryption defaults and missing logging. | criptogus/ | 288 | — | ~965 | Automated safety check: Pass | CC-BY-SA-4.0 | 3 days ago |
| 318 | 318.Program Analysis Use astgrepscan, sourcesinkscan, and smtcheckreachability (mantisprogramanalysis MCP server) to move a candidate toward a proven-reachable finding | deonmenezes/ | 503 | — | ~551 | Automated safety check: Pass | Apache-2.0 | 8 days ago |
| 319 | Agent skill for security-manager - invoke with $agent-security-manager | ruvnet/ | 74k | 2 repos | ~4.9k | Automated safety check: Pass | MIT | yesterday |
| 320 | Agent skill for v3-security-architect - invoke with $agent-v3-security-architect | ruvnet/ | 74k | 2 repos | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 321 | 321.Replica Build Rebuilds an app screen by screen from the recon map: app shell first, then the core flow as a vertical slice, then every screen with all its states, ticking off the feature matrix as it goes. | Jakeschincariol/ | 1.4k | — | ~928 | Automated safety check: Pass | MIT | 8 days ago |
| 322 | 322.Oob Detection Detect out-of-bounds memory accesses in CPU or GPU code using static interval analysis and runtime assertions/printfs. | ROCm/ | 291 | — | ~1k | Automated safety check: Notes | Unknown | today |
| 323 | Flag only new security issues introduced by this diff. An agent skill from different-ai/openwork. | different-ai/ | 24k | — | ~1.2k | Automated safety check: Pass | Unknown | today |
| 324 | Classify project-used dependency members and record taint sources as rule-authoring units. | seqra/ | 163 | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 325 | Detect hardcoded sensitive data (API keys, access tokens, private keys, passwords, etc.) in publicly accessible code — frontend JavaScript, mobile apps, client-side bundles, and HTML templates. | utkusen/ | 1.3k | — | ~6.5k | Automated safety check: Notes | MIT | 6 mo ago |
| 326 | Measures timing side channels in cryptographic implementations by running them, using dudect for statistical analysis and Timecop over Valgrind for dynamic tracing. | trailofbits/ | 7.5k | — | ~5.2k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 327 | Usar para sincronizar la documentación viva del proyecto después de una fase. | 686f6c61/ | 117 | — | ~382 | Automated safety check: Pass | MIT | 1 mo ago |
| 328 | 328.Audit Logging Implement centralized audit logging and SIEM integration. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~3.5k | Automated safety check: Pass | MIT | yesterday |
| 329 | 329.AWS Iam Manage IAM users, roles, and policies. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~3.4k | Automated safety check: Pass | MIT | yesterday |
| 330 | 330.Firewall Config Configure iptables, nftables, and cloud firewalls. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~3.2k | Automated safety check: Notes | MIT | yesterday |
| 331 | Generate, sign, and verify SBOMs and provenance attestations to secure the software supply chain. | sickn33/ | 47k | 2 repos | ~3.4k | Automated safety check: Pass | MIT | yesterday |
| 332 | 332.Threat Modeling Conduct threat modeling using STRIDE methodology. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~4.3k | Automated safety check: Pass | MIT | yesterday |
| 333 | 333.User Management Manage users, groups, and permissions on Linux systems. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~2.8k | Automated safety check: Notes | MIT | yesterday |
| 334 | 334.Public Issue File a low-severity finding as an ordinary public GitHub issue after explicit analyst confirmation. | alpha-omega-security/ | 245 | — | ~1.3k | Automated safety check: Pass | MIT | today |
| 335 | 335.Re Attribution 威胁归因方法论:钻石模型、基础设施图谱、置信度分级与归因报告. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 6 days ago |
| 336 | 336.Crypto Expert Cryptography expert for TLS, symmetric/asymmetric encryption, hashing, and key management | RightNow-AI/ | 18k | — | ~959 | Automated safety check: Pass | Apache-2.0 | 3 mo ago |