Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 337 | 337.Deps Vet Record a vetted Hex package version in hexvet.exs after a security review — manages the audit ledger, not the scanner. | oliver-kriska/ | 565 | — | ~1.5k | Automated safety check: Pass | MIT | 6 days ago |
| 338 | S3 resiliency, security, and data protection review. An agent skill from aws/tools-for-devops-agent. | aws/ | 103 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 339 | Query token security audit to detect scams, honeypots, and malicious contracts before trading. | npc-live/ | 156 | 1 repo | ~1.6k | Automated safety check: Pass | No licence | 3 mo ago |
| 340 | 340.Get Caller Tool to get the caller of a function in the codebase. An agent skill from opensage-agent/opensage-adk. | opensage-agent/ | 127 | — | ~208 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 341 | For any security-related task — threat triage, incident response, MITRE ATT&CK mapping, CVE lookup, exploit analysis, defensive control validation, red/blue/purple team work — always consult the… | lyonzin/ | 292 | — | ~2.3k | Automated safety check: Pass | MIT | 2 days ago |
| 342 | A skill your agent uses when performing deep analysis of specific findings or high-risk areas during a security audit. | ccashwell/ | 131 | — | ~1.6k | Automated safety check: Pass | MIT | 11 days ago |
| 343 | [omh] Attack paths into an operated system: turn a system's components and data flows into assets, trust boundaries, attack scenarios, controls, and the security test that proves each control holds. | rlaope/ | 3.2k | — | ~2.6k | Automated safety check: Pass | MIT | yesterday |
| 344 | Security review: (1) vet an untrusted SKILL.md or .mcp.json BEFORE installing it — the injection/exfiltration scanner; CRITICAL blocks the install; (2) audit code on an untrusted-input path (a… | redhat-et/ | 2.4k | — | ~2.8k | Automated safety check: Warn | Apache-2.0 | yesterday |
| 345 | 345.Finding Triage Triage a single security finding — from a scanner, audit, advisory, or report — to a defensible disposition with a mitigation plan, false-positive justification, or accepted-risk writeup. | briiirussell/ | 413 | — | ~3.1k | Automated safety check: Notes | MIT | 4 mo ago |
| 346 | PHP Web 源码任意文件写入审计工具。识别用户可控数据进入写入 Sink 的链路,追踪任意落点写入/路径穿越到 write,并评估写入后的可执行性(禁止省略)。 | 0xShe/ | 402 | 1 repo | ~1.2k | Automated safety check: Pass | No licence | 6 mo ago |
| 347 | 347.Proactive Agent Transform AI agents from task-followers into proactive partners. | LeoYeAI/ | 2.2k | — | ~4.4k | Automated safety check: Pass | MIT | 2 mo ago |
| 348 | 348.Defense In Depth A skill your agent uses when invalid data causes failures deep in execution - validates at every layer data passes through to make bugs structurally impossible rather than temporarily fixed | ed3dai/ | 250 | — | ~1.2k | Automated safety check: Pass | No licence | 1 mo ago |
| 349 | Audits an external (third-party) Claude Code plugin pinned in this marketplace for security risk before it is vendored, and writes the report to a file for downstream posting. | bitwarden/ | 155 | — | ~1.8k | Automated safety check: Pass | Unknown | 2 days ago |
| 350 | 350.Hunt Apt Hunt for a specific APT/threat actor in your environment. An agent skill from dandye/ai-runbooks. | dandye/ | 127 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 351 | Perform a comprehensive security audit of all project files in the current working directory. | LaravelDaily/ | 136 | — | ~1.9k | Automated safety check: Notes | No licence | 5 mo ago |
| 352 | Hunts for the other instances of a bug already found — the variants of one root cause across a codebase. | trailofbits/ | 7.5k | — | ~967 | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 353 | 353.Security Express Review Express.js security audit patterns for middleware and routes. | IgorWarzocha/ | 122 | — | ~1.8k | Automated safety check: Pass | No licence | 8 mo ago |
| 354 | Analyze a codebase and produce a structured threat model at .turbo/threat-model.md covering assets, trust boundaries, attack surfaces with existing mitigations, attacker stories, and calibrated… | tobihagemann/ | 408 | — | ~2.5k | Automated safety check: Pass | MIT | 2 days ago |
| 355 | Autonomously deep-scan entire codebase line-by-line, understand architecture and patterns, then systematically transform it to production-grade, corporate-level professional quality with optimizations | davila7/ | 33k | 7 repos | ~3.9k | Automated safety check: Warn | MIT | today |
| 356 | Container and Kubernetes security assessment — image vulnerability scanning, SBOM diff analysis, K8s cluster auditing, RBAC privilege mapping, NetworkPolicy review, container escape testing, and… | hardw00t/ | 105 | — | ~2.8k | Automated safety check: Pass | No licence | 5 mo ago |
| 357 | Verify supply chain integrity for AI agent plugins, tools, and dependencies. | github/ | 40k | 1 repo | ~2.7k | Automated safety check: Pass | MIT | 2 days ago |
| 358 | Security hardening and best practices for robotic systems, covering SROS2 DDS security, network segmentation, secrets management, secure boot, and the physical-cyber safety intersection. | arpitg1304/ | 369 | — | ~7.8k | Automated safety check: Warn | Apache-2.0 | 2 mo ago |
| 359 | 359.Generate Poc Reproduce a true-positive finding against the running application. | seqra/ | 163 | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 360 | 360.Sast JWT Detect insecure JWT (JSON Web Token) implementations in a codebase using a two-phase approach: first map all JWT issuance and verification sites to understand the token lifecycle and signing… | utkusen/ | 1.3k | — | ~6k | Automated safety check: Pass | MIT | 6 mo ago |
| 361 | 361.Corpus Sweep Run a large sharded measurement sweep over npm packages (the build-jail catalog probe, or any harness that installs thousands of package-versions and records a verdict per run). | nubjs/ | 4.4k | — | ~2.4k | Automated safety check: Pass | MIT | yesterday |
| 362 | 362.Pytm Python-based threat modeling using pytm library for programmatic STRIDE analysis, data flow diagram generation, and automated security threat identification. | AgentSecOps/ | 220 | 2 repos | ~4.4k | Automated safety check: Notes | Unknown | 5 mo ago |
| 363 | 363.Sca Trivy Software Composition Analysis (SCA) and container vulnerability scanning using Aqua Trivy for identifying CVE vulnerabilities in dependencies, container images, IaC misconfigurations, and license… | AgentSecOps/ | 220 | 2 repos | ~3.7k | Automated safety check: Pass | Unknown | 5 mo ago |
| 364 | Assess game build, launcher, update, distribution, mod, plugin, dependency, signing, provenance, and recovery trust. | gmh5225/ | 3.6k | — | ~227 | Automated safety check: Pass | MIT | today |
| 365 | Expert guidance for proactive threat hunting in Google SecOps. | google/ | 21k | 1 repo | ~2.6k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 366 | Expert guidance for security alert triage in Google SecOps. An agent skill from google/skills. | google/ | 21k | 1 repo | ~3.3k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 367 | KRACK (CVE-2017-13077..082) and FragAttacks (CVE-2020-24586..588 + 26139-26147) — key reinstallation, fragmentation, and aggregation attacks against WPA2 supplicants. | SnailSploit/ | 7.4k | — | ~1.1k | Automated safety check: Notes | MIT | 21 days ago |
| 368 | 368.Detection Sigma Generic detection rule creation and management using Sigma, the universal SIEM rule format. | AgentSecOps/ | 220 | 1 repo | ~4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 369 | 369.Sbom Syft Software Bill of Materials (SBOM) generation using Syft for container images, filesystems, and archives. | AgentSecOps/ | 220 | 1 repo | ~3.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 370 | A skill your agent uses when a user asks what the EU Cyber Resilience Act (CRA) means for their product, whether and when they must report a vulnerability or incident, or what a specific CVE… | davila7/ | 33k | 1 repo | ~4.5k | Automated safety check: Pass | CC-BY-4.0 | yesterday |
| 371 | Deep audit before GitHub push: removes junk files, dead code, security holes, and optimization issues. | sickn33/ | 47k | 2 repos | ~2.1k | Automated safety check: Notes | MIT | 2 days ago |
| 372 | Secure the AI model supply chain with artifact signing, provenance attestation, SBOM workflows, dependency controls, and trusted model promotion. | sickn33/ | 47k | 2 repos | ~3.4k | Automated safety check: Pass | MIT | 2 days ago |
| 373 | 373.Report Generator Generates professional security audit reports from findings. | alt-research2/ | 104 | — | ~1k | Automated safety check: Pass | Unknown | 4 mo ago |
| 374 | Full STRIDE-A threat model analysis and incremental update skill for repositories and systems. | github/ | 40k | 1 repo | ~1.5k | Automated safety check: Pass | MIT | 2 days ago |
| 375 | Generate or refresh a STRIDE-based threat model for the current repository using Bug Hunter-native artifacts. | codexstar69/ | 520 | — | ~408 | Automated safety check: Pass | MIT | 1 mo ago |
| 376 | Admin account register: system, main and backup admin, seats, plan, 2FA, shared logins and access-review dates, as CSV, SQL, JSON Schema or Notion on request. | sickn33/ | 47k | 1 repo | ~4.2k | Automated safety check: Pass | MIT | 2 days ago |
| 377 | Build structured communication templates for malware incidents (ransomware, wiper, trojan, worm), covering internal stakeholder notifications, executive briefings, technical advisories for IT teams… | mukul975/ | 34k | — | ~2.5k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 378 | Build a structured SOC escalation matrix defining severity tiers, response SLAs, tiered escalation paths, and notification procedures for security incidents, using context-driven criteria that… | mukul975/ | 34k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 379 | Implement a vulnerability aging dashboard and SLA tracking system that measures time-to-remediation against severity-based deadlines (e.g. | mukul975/ | 34k | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 380 | Deploy DefectDojo as a centralized vulnerability management dashboard that ingests findings from 200+ security scanners, deduplicates results, tracks remediation metrics, and integrates with CI/CD… | mukul975/ | 34k | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 381 | Build a two-tier PKI Certificate Authority hierarchy (offline Root CA plus issuing Intermediate CA) using OpenSSL and the Python cryptography library, covering certificate extensions, CRL… | mukul975/ | 34k | — | ~879 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 382 | Configures host-based intrusion detection systems (HIDS) to monitor endpoint file integrity, system calls, and configuration changes for security violations. | mukul975/ | 34k | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 383 | Configures Hardware Security Modules for cryptographic key storage using the PKCS11 standard interface, covering key generation, signing, encryption, and key management on physical HSMs and SoftHSM2… | mukul975/ | 34k | — | ~984 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 384 | Configures Google Cloud Identity-Aware Proxy (IAP) via gcloud to enforce per-request identity verification on Compute Engine, App Engine, Cloud Run, and GKE, including IAM bindings, Access Context… | mukul975/ | 34k | — | ~3.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |