Search

Security · For developers

1,197 skills found, page 9.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
385
385.Iam

AWS Identity and Access Management for users, roles, policies, and permissions.

itsmostafa/aws-agent-skills1.2k—~1.8kAutomated safety check: PassMIT6 days ago
386

Complete reference for 28 web2 bug classes with root causes, detection patterns, bypass tables, exploit techniques, and real paid examples.

Gabson0x/bountyforge442—~11kAutomated safety check: WarnNo licence24 days ago
387

Explains authorization in an Arandu Go application: write a Policy, get a security.Grant through security.Authorize, re-authorize each row, and keep tenant isolation.

arandu-io/arandu281—~1.9kAutomated safety check: PassMITyesterday
388

Generate a Transilience-branded PDF report (pentest, vuln assessment, compliance, threat intel) from a single findings JSON using the bundled ReportLab generator.

transilienceai/communitytools563—~1.7kAutomated safety check: PassMIT2 mo ago
389

Sequences safe dependency upgrades: read the changelog, verify the version exists upstream, pin it, and keep major bumps in separate commits behind a full gate run.

dralgorhythm/claude-agentic-framework125—~1.5kAutomated safety check: PassNo licence2 mo ago
390

Proactive security audit: OWASP top 10, dependency vulnerabilities, secrets detection, input validation, auth patterns, and secure defaults.

Aedelon/claude-code-blueprint120—~1.6kAutomated safety check: NotesUnknown7 mo ago
391

Insecure deserialization detection and gadget chain exploitation

NeoTheCapt/RedteamAgent143—~836Automated safety check: PassNo licence2 mo ago
392
392.Modern C++ IdiomsOfficial

Steers C++ code toward C++20, C++23 and C++26 idioms such as smart pointers, concepts, std::expected and std::print, with a security focus.

trailofbits/skills7.5k—~2.2kAutomated safety check: PassCC-BY-SA-4.0yesterday
393

Review Django security audit patterns for settings and middleware.

IgorWarzocha/Opencode-Workflows122—~1.6kAutomated safety check: NotesNo licence8 mo ago
394

Guide to maintain creating modern and secure code while developing WordPress plugins.

duracelltomi/gtm4wp174—~7.2kAutomated safety check: PassGPL-2.0-or-later2 days ago
395

Locks down an AI agent by configuring platform-level tool restrictions (deniedTools) and Earl network egress rules.

mathematic-inc/earl113—~2.1kAutomated safety check: PassApache-2.03 days ago
396

Perform language and framework specific security best-practice reviews and suggest improvements.

trailofbits/skills-curated5139 repos~2.2kAutomated safety check: NotesCC-BY-SA-4.02 mo ago
397
397.ScaffoldingOfficial

Implementation details for EF Core scaffolding (reverse engineering).

dotnet/efcore15k—~321Automated safety check: PassMITyesterday
398

减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。

index-login/MobileRE-Skill158—~242Automated safety check: PassMITyesterday
399
399.Plan

Turn a development task into one work file in .work/ — goal, decisions, lanes with exact files and verification, done-criteria.

guardana/guardana259—~1.1kAutomated safety check: PassApache-2.0today
400

AgentShield を使用して、Claude Code の設定(.claude/ ディレクトリ)のセキュリティ脆弱性、設定ミス、インジェクションリスクをスキャンします。CLAUDE.md、settings.json、MCP サーバー、フック、エージェント定義をチェックします。

affaan-m/ECC277k2 repos~796Automated safety check: PassMITtoday
401

認証の追加、ユーザー入力の処理、シークレットの操作、APIエンドポイントの作成、支払い/機密機能の実装時にこのスキルを使用します。包括的なセキュリティチェックリストとパターンを提供します。

affaan-m/ECC277k2 repos~2.5kAutomated safety check: NotesMITtoday
402

인증 추가, 사용자 입력 처리, 시크릿 관리, API 엔드포인트 생성, 결제/민감한 기능 구현 시 이 스킬을 사용하세요.

affaan-m/ECC277k2 repos~2.7kAutomated safety check: NotesMITtoday
403

A skill your agent uses when reviewing code for security vulnerabilities, hardening an application, or deriving security requirements from OWASP/ASVS guidance.

jellydn/my-ai-tools123—~2.9kAutomated safety check: NotesMITyesterday
404

Web2 recon pipeline — subdomain enumeration (subfinder, Chaos API, assetfinder), live host discovery (dnsx, httpx), URL crawling (katana, waybackurls, gau), directory fuzzing (ffuf), JS analysis…

awarexone/Agentic-Bug-Hunter5.3k2 repos~6.4kAutomated safety check: WarnMIT2 days ago
405

Audits MCP servers and their client configs for tool poisoning, prompt injection, over-privileged tools, injection bugs, secret leaks and missing approval gates.

awarexone/Agentic-Bug-Hunter5.3k—~1.9kAutomated safety check: WarnMIT2 days ago
406

Guides static analysis of an Android APK with jadx and apktool: reading the manifest, Java code, resources and permissions, and recognizing hardening or obfuscation.

dslsdzc/rev-skills135—~2kAutomated safety check: PassApache-2.06 days ago
407

Provides digital forensics and signal analysis techniques for CTF challenges.

ljagiello/ctf-skills3.4k—~9.2kAutomated safety check: WarnMIT27 days ago
408

Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing.

trailofbits/skills7.5k—~3.6kAutomated safety check: PassCC-BY-SA-4.0yesterday
409

Scans Algorand TEAL and PyTeal contracts for 11 known vulnerability patterns, such as unchecked rekeying and fees, and reports each with severity and a fix.

trailofbits/skills7.5k—~3.1kAutomated safety check: PassCC-BY-SA-4.0yesterday
410

Gets your own codebase ready for an external security review: sets review goals, runs static analysis, raises test coverage, removes dead code and writes documentation.

trailofbits/skills7.5k—~2.5kAutomated safety check: PassCC-BY-SA-4.0yesterday
411

Scans Cairo and StarkNet contracts for 6 vulnerability patterns, including felt252 overflow, L1 to L2 messaging faults, address conversion and signature replay.

trailofbits/skills7.5k—~3.3kAutomated safety check: PassCC-BY-SA-4.0yesterday
412

Sets up cargo-fuzz for a Cargo-based Rust project: nightly toolchain, fuzz targets, structured inputs, sanitizers, coverage and reproducing crashes.

trailofbits/skills7.5k—~2.9kAutomated safety check: PassCC-BY-SA-4.0yesterday
413

Scores a smart contract or blockchain codebase across 9 maturity categories with evidence, then delivers a scorecard and a priority-ordered improvement roadmap.

trailofbits/skills7.5k—~1.8kAutomated safety check: PassCC-BY-SA-4.0yesterday
414

Scans Cosmos SDK modules and CosmWasm contracts for consensus-critical flaws that can halt a chain, lose funds or diverge state, using parallel scanning agents.

trailofbits/skills7.5k—~2.7kAutomated safety check: PassCC-BY-SA-4.0yesterday
415

Reviews a pull request, commit or diff for security problems, using git history, caller counts and test coverage, and writes a markdown report.

trailofbits/skills7.5k—~1.8kAutomated safety check: NotesCC-BY-SA-4.0yesterday
416

Builds fuzzing dictionaries of keywords, magic bytes and tokens and wires them into libFuzzer, AFL++ or cargo-fuzz so fuzzers get past input validation.

trailofbits/skills7.5k—~2.5kAutomated safety check: PassCC-BY-SA-4.0yesterday
417

Patches checksums, hash checks, time-based seeds and other non-deterministic state out of fuzzing builds so the fuzzer reaches deeper code, with production behavior intact.

trailofbits/skills7.5k—~4kAutomated safety check: PassCC-BY-SA-4.0yesterday
418

Reviews a smart contract project against Trail of Bits development guidelines, covering documentation, architecture, upgradeability, implementation quality, dependencies and tests.

trailofbits/skills7.5k—~2.2kAutomated safety check: PassCC-BY-SA-4.0yesterday
419
419.LibaflOfficial

Builds custom fuzzers with LibAFL, the modular Rust fuzzing library.

trailofbits/skills7.5k—~4.3kAutomated safety check: NotesCC-BY-SA-4.0yesterday
420
420.OssfuzzOfficial

Enrolls a project in OSS-Fuzz, Google's free continuous fuzzing service for open source, and drives it locally.

trailofbits/skills7.5k—~4.2kAutomated safety check: PassCC-BY-SA-4.0yesterday
421
421.RuzzyOfficial

Sets up and runs Ruzzy, Trail of Bits' coverage-guided Ruby fuzzer and the only production-ready one for the language.

trailofbits/skills7.5k—~3kAutomated safety check: PassCC-BY-SA-4.0yesterday
422

Scans TON (The Open Network) smart contracts for 3 critical vulnerabilities including integer-as-boolean misuse, fake Jetton contracts, and forward TON without gas checks.

trailofbits/skills7.5k—~3.8kAutomated safety check: PassCC-BY-SA-4.0yesterday
423

Parallel read-only multi-agent review of a current git diff or explicit file scope to find behavioral regressions, security or privacy risks, performance or reliability issues, and contract or test…

Dimillian/Skills4k—~1.6kAutomated safety check: PassMIT6 mo ago
424

Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations.

affaan-m/ECC277k1 repo~4.3kAutomated safety check: NotesMITtoday
425

Verification loop for Quarkus projects: build, static analysis (Checkstyle, PMD, SpotBugs), tests with JaCoCo coverage, OWASP dependency and container security scans, GraalVM native compilation…

affaan-m/ECC277k1 repo~2.7kAutomated safety check: PassMITtoday
426

SQL injection detection→exploitation→proof for web apps and APIs.

s0ld13rr/pentestcode828—~710Automated safety check: PassMIT9 days ago
427

Azure Key Vault Keys SDK for .NET. An agent skill from microsoft/skills.

microsoft/skills3.1k5 repos~3.1kAutomated safety check: PassMIT2 days ago
428

Generates Foundry invariant tests and Echidna property-based fuzz tests for Solidity contracts.

alt-research2/SolidityGuard104—~763Automated safety check: NotesUnknown4 mo ago
429

面向新手的全谱系逆向工程路由器,覆盖 Web/JavaScript、Android/iOS、Frida、脱壳、反分析、原生二进制、协议、固件、恶意软件、游戏、云 API、CTF、可复现一致性测试。用于逆向、起步、脱壳、反编译、hook、Frida、绕过检测、APK/SO/DEX/JS/PCAP/WASM/PE/ELF/Mach-O 分析、签名还原,或从样本到验证结果的完整调查。

manyuegong33/r0crawl_skills312—~1.2kAutomated safety check: PassNo licence21 days ago
430

A skill your agent uses when setting up an email inbox for an AI agent (Moltbot, Clawdbot, or similar) - configuring inbound email, webhooks, tunneling for local development, and implementing…

viclafouch/meme-studio1102 repos~10kAutomated safety check: WarnNo licence6 mo ago
431

A ten-category security checklist for the agent-core codebase, to run before any security-sensitive change or pull request: secrets, input validation, SQL, access control and prompt injection.

openJiuwen-ai/agent-core446—~1.7kAutomated safety check: NotesApache-2.0today
432

Configure SAML 2.0 identity federation between on-premises Active Directory (via AD FS or a third-party IdP) and Microsoft Entra ID, covering federation models (AD FS, password hash sync…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.5kAutomated safety check: PassApache-2.01 mo ago