Search
Security
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 337 | 337.Secureclaw Security hardening toolkit for OpenClaw. An agent skill from adversa-ai/secureclaw. | adversa-ai/ | 347 | 1 repo | ~193 | Automated safety check: Pass | MIT | 6 mo ago |
| 338 | 338.Idor Testing This skill should be used when the user asks to "test for insecure direct object references," "find IDOR vulnerabilities," "exploit broken access control," "enumerate user IDs or object references,"… | zebbern/ | 4.7k | 8 repos | ~3.1k | Automated safety check: Pass | MIT | yesterday |
| 339 | 339.Scanning Tools This skill should be used when the user asks to "perform vulnerability scanning", "scan networks for open ports", "assess web application security", "scan wireless networks", "detect malware"… | zebbern/ | 4.7k | 8 repos | ~3.4k | Automated safety check: Notes | MIT | yesterday |
| 340 | This skill should be used when the user asks to "analyze network traffic with Wireshark", "capture packets for troubleshooting", "filter PCAP files", "follow TCP/UDP streams", "detect network… | zebbern/ | 4.7k | 8 repos | ~3k | Automated safety check: Pass | MIT | yesterday |
| 341 | 341.Php Auth Audit PHP Web 源码鉴权机制审计工具。从源码中识别所有认证/鉴权实现并分析风险,输出路由-鉴权映射与漏洞分析(含 PoC 与修复建议)。 | 0xShe/ | 402 | 1 repo | ~951 | Automated safety check: Pass | No licence | 6 mo ago |
| 342 | Adding an LLM provider to RedAmon: the credential boundary (keys must never reach scan containers), prefix-routed model ids, and the provider registry. | samugit83/ | 3k | — | ~1.1k | Automated safety check: Pass | MIT | 2 days ago |
| 343 | 343.Msteams Interact with Microsoft Teams — send and read messages, search conversations, look up people, check calendar, get meeting transcripts, and manage chats. | sigcli/ | 293 | — | ~2.7k | Automated safety check: Pass | MIT | 13 days ago |
| 344 | Real-world Active Directory environment constraints that silently break attacks when ignored: NTLM disabled (Kerberos fallback), AES-only KDCs (RC4 blocked by GPO), LDAP signing and channel binding… | ADScanPro/ | 211 | — | ~2.9k | Automated safety check: Notes | MIT | 1 mo ago |
| 345 | Maps the attack surface of a web domain you are authorized to test: confirms scope, lists subdomains from public sources, probes live hosts and fingerprints technology. | PentesterFlow/ | 1.4k | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 346 | Run one stage of the OpenTaint pipeline by coordinating leaf subagents and deterministic joins. | seqra/ | 163 | — | ~806 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 347 | Audits outdated npm and Bun packages for supply chain integrity before bumping them, deferring risky ones and logging every decision. | backnotprop/ | 9.3k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | today |
| 348 | A skill your agent uses when auditing Simple IoT for security issues, reviewing a change that touches authentication, authorization, enrollment, sync, or a network-facing parser, or checking whether… | simpleiot/ | 221 | — | ~3k | Automated safety check: Pass | Apache-2.0 | 19 days ago |
| 349 | Distills repeated workflows into new skills, improves existing ones and promotes them through local, project and community tiers after a default-deny safety scan. | telagod/ | 244 | — | ~794 | Automated safety check: Notes | MIT | 2 mo ago |
| 350 | A skill your agent uses for authorized reverse engineering of browser extensions (Chrome/Firefox) including manifest analysis, background workers, and extension-based credential or traffic logic… | zhaoxuya520/ | 41k | 2 repos | ~366 | Automated safety check: Pass | MIT | 19 days ago |
| 351 | 351.Go Rust Reverse A skill your agent uses for reverse engineering stripped Go and Rust binaries including runtime recognition, pclntab/moduel data recovery, panic strings, and idiomatic decompilation recovery. | zhaoxuya520/ | 41k | 2 repos | ~339 | Automated safety check: Pass | MIT | 19 days ago |
| 352 | 352.macOS Reverse A skill your agent uses for authorized macOS and Mach-O reverse engineering including codesign, Objective-C/Swift recovery, endpoint security surfaces, and Apple platform malware analysis. | zhaoxuya520/ | 41k | 2 repos | ~366 | Automated safety check: Pass | MIT | 19 days ago |
| 353 | 353.Mission Planner Decomposes goals into team blueprints using evidence-based scaling laws, topology selection, and role design. | jdforsythe/ | 151 | — | ~3.5k | Automated safety check: Pass | MIT | 3 mo ago |
| 354 | Run Mira environment risk collection. An agent skill from vw2x/Mira. | vw2x/ | 105 | — | ~793 | Automated safety check: Pass | GPL-3.0 | 6 days ago |
| 355 | Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images. | warpdotdev/ | 65k | 1 repo | ~2.1k | Automated safety check: Pass | AGPL-3.0 | today |
| 356 | 356.Fix Issues A skill your agent uses when fixing compiler warnings, static analyzer findings (clang-tidy, etc.), or runtime errors/crashes in the libYSE codebase. | yvanvds/ | 238 | — | ~3k | Automated safety check: Pass | MIT | today |
| 357 | HackenProof bug bounty triage workflow for Claude Code plugin marketplace operations. | Gabson0x/ | 442 | — | ~1.2k | Automated safety check: Pass | No licence | 24 days ago |
| 358 | 358.AI Rulez Standards-compliant lifecycle tool for agent knowledge and capabilities: author in .ai-rulez/, generate for 52 harnesses (Claude Code, Cursor, Codex, Copilot, Gemini CLI, OpenCode, Devin, and more)… | Goldziher/ | 159 | — | ~3.3k | Automated safety check: Pass | MIT | today |
| 359 | Debug and emulate specific code fragments or functions using the Unicorn engine. | index-login/ | 158 | — | ~1.9k | Automated safety check: Pass | MIT | yesterday |
| 360 | Run Semgrep static analysis scans and create custom detection rules. | semgrep/ | 324 | — | ~2.3k | Automated safety check: Pass | Unknown | 2 mo ago |
| 361 | 361.Healthcheck Host security hardening and risk-tolerance guidance for Understudy deployments. | understudy-ai/ | 462 | — | ~1.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 362 | Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout. | secondsky/ | 462 | — | ~4.8k | Automated safety check: Warn | GPL-3.0 | 6 days ago |
| 363 | 363.Cybersecurity Ultimate AI-powered cybersecurity code review skill. An agent skill from AgriciDaniel/claude-cybersecurity. | AgriciDaniel/ | 228 | — | ~11k | Automated safety check: Warn | MIT | 5 mo ago |
| 364 | Security review for Scalus/Cardano smart contracts. An agent skill from scalus3/scalus. | scalus3/ | 105 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 365 | 365.Kesekit Fix Ko 보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다. An agent skill from cdppcorp/KESE-KIT. | cdppcorp/ | 360 | — | ~1k | Automated safety check: Pass | MIT | 6 mo ago |
| 366 | Status-first routing, bounded evidence collection, and safety guidance for issue-graph. | vercel-labs/ | 127 | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 10 days ago |
| 367 | Scans package manifests and lockfiles for outdated packages and known CVEs, then classifies each possible update as patch, minor, major or escalate-human for a dependency sweeper loop. | cobusgreyling/ | 11k | — | ~626 | Automated safety check: Pass | MIT | today |
| 368 | 368.Add Eap Method Add an EAP authentication method (e.g. An agent skill from talkincode/toughradius. | talkincode/ | 691 | — | ~802 | Automated safety check: Pass | MIT | 2 days ago |
| 369 | 369.Iotnet IoT network traffic analyzer for detecting IoT protocols and identifying security vulnerabilities in network communications. | BrownFineSecurity/ | 859 | 1 repo | ~1k | Automated safety check: Notes | MIT | 4 mo ago |
| 370 | Diagnose and repair OpenASE CLI access in local bootstrap mode. | PacificStudio/ | 268 | — | ~778 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 371 | Master smart contract security best practices to prevent common vulnerabilities and implement secure Solidity patterns. | wshobson/ | 40k | 12 repos | ~892 | Automated safety check: Pass | MIT | 6 days ago |
| 372 | Watch a Gradle instrumented-test run to a verdict without hand-writing greps. | parawanderer/ | 420 | — | ~1.4k | Automated safety check: Pass | MIT | 22 days ago |
| 373 | Plans and runs material repository changes with the AI SAFE2 method: classify delivery shape and risk, isolate the work, collect test evidence and finish with a completion receipt. | CyberStrategyInstitute/ | 147 | — | ~833 | Automated safety check: Pass | Unknown | yesterday |
| 374 | Workflow for updating gem dependencies and fixing CVEs in the ruby-git project: assess with bundle outdated and audit, edit the gemspec, test, then commit with conventional messages. | ruby-git/ | 1.8k | — | ~806 | Automated safety check: Pass | MIT | 9 days ago |
| 375 | 375.Cc Review 结构化代码审查工作流,适用于显式 quick/full/security review;不负责普通实现或 bug 修复流程。 | doccker/ | 1.1k | — | ~541 | Automated safety check: Pass | Unknown | 1 mo ago |
| 376 | 376.Sast Analysis Perform codebase analysis and architecture mapping as the first phase of a security assessment. | utkusen/ | 1.3k | — | ~1k | Automated safety check: Pass | MIT | 6 mo ago |
| 377 | 377.Solve Challenge Solves CTF challenges by performing first-pass triage, identifying the dominant category, and routing execution to the right specialized ctf- skill. | ljagiello/ | 3.4k | — | ~2.3k | Automated safety check: Notes | MIT | 27 days ago |
| 378 | Upgrade CodeNarc and the bundled Java dependencies (jackson, logback, slf4j, janino, GMetrics, Groovy libs) that ship inside lib/java/, rebuild the deterministic CodeNarcServer.jar, and verify… | nvuillam/ | 248 | — | ~1.9k | Automated safety check: Notes | MIT | yesterday |
| 379 | Generate and manage Software Bill of Materials (SBOMs) for the OpenShell project. | NVIDIA/ | 16k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 380 | Guides authorized packet capture and analysis with TShark, Wireshark's command-line tool, for security investigations, malware detection and forensic examination of network traffic. | AgentSecOps/ | 220 | 1 repo | ~4.8k | Automated safety check: Notes | Unknown | 5 mo ago |
| 381 | Android APK static analysis — OWASP Mobile Top 10, Retrofit API audit, transport security, smali reading, component export, auth flow analysis. | s0ld13rr/ | 828 | — | ~2.9k | Automated safety check: Pass | MIT | 9 days ago |
| 382 | 382.Dast Automation Automated Dynamic Application Security Testing (DAST) using Playwright MCP plus standard OS pentest tooling. | hardw00t/ | 105 | — | ~2.2k | Automated safety check: Pass | No licence | 5 mo ago |
| 383 | 383.Production Grade A skill your agent uses when the user wants to build, create, or develop anything — websites, apps, APIs, services, platforms. | nagisanzenin/ | 181 | — | ~16k | Automated safety check: Notes | No licence | 1 mo ago |
| 384 | 384.Loop Factory Run a spec-driven agent loop where coding tasks live as markdown specs that move through inbox → active → archive, get implemented by Claude Code or Codex, and pass a review gate before they count… | JuliusBrussee/ | 162 | — | ~2k | Automated safety check: Pass | MIT | 2 mo ago |