Search

Security · GitHub · For devops and sre engineers

45 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Cut a new AperiSolve release — bump the version, commit "chore(release): X.Y.Z", tag it, push, and publish a GitHub Release whose notes are computed from the commits since the last tag.

Zeecka/AperiSolve850—~1.9kAutomated safety check: PassMITyesterday
2

A skill your agent uses when editing, adding, or reviewing any file under .github/workflows/, or when a CI step installs a CLI tool (npm i -g, npx, pipx, uses: /setup-).

asyncapi/generator1.1k—~1.9kAutomated safety check: PassApache-2.03 days ago
3

Inspect, review or triage GitHub Code Scanning alerts, including CodeQL findings; apply verified dismissals when authorized.

netdata/netdata81k—~1.8kAutomated safety check: NotesGPL-3.0today
4

Handle a security fix end to end for MidnightBSD src - triage a FreeBSD security advisory (FreeBSD-SA-) or CVE against this tree, port the fix to master and both stable branches, add the UPDATING…

MidnightBSD/src114—~2.2kAutomated safety check: PassUnknown4 days ago
5

Analyze potential Ankaios security vulnerabilities from pasted reports, local evidence, or advisory URLs.

eclipse-ankaios/ankaios125—~1.5kAutomated safety check: PassApache-2.0yesterday
6

Secure GitHub Actions workflows against supply-chain, privilege, and shell-injection risks.

vechain/x-app-template450—~1.2kAutomated safety check: PassMIT2 mo ago
7

Statically audits GitHub Actions workflows that run AI coding agents, tracing attacker-controlled input to agent prompts and flagging unsafe sandbox, trigger and allowlist settings.

trailofbits/skills7.4k6 repos~5.4kAutomated safety check: NotesCC-BY-SA-4.0yesterday
8

A skill your agent uses when a researcher, maintainer, or contributor found or suspects a malicious skill on ClawHub and needs a private reporting workflow: opening a GitHub private vulnerability…

openclaw/clawscan142—~1.1kAutomated safety check: PassMITyesterday
9

Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images.

warpdotdev/warp65k1 repo~2.1kAutomated safety check: PassAGPL-3.0today
10

A skill your agent uses when fixing compiler warnings, static analyzer findings (clang-tidy, etc.), or runtime errors/crashes in the libYSE codebase.

yvanvds/yse-soundengine238—~3kAutomated safety check: PassMIT8 days ago
11

Manage OpenClaw GitHub Actions and Blacksmith CI capacity, runner-registration budgets, fanout caps, main-push single-flight, shard sizing, hosted-runner offload, queue health, and safe…

openclaw/openclaw392k—~13kAutomated safety check: PassMITtoday
12

Creates a new Earl HCL template for a specific API, database, or shell command.

mathematic-inc/earl113—~2.8kAutomated safety check: PassApache-2.02 days ago
13

Triage a CVE / Dependabot alert in a JS/TS project and recommend the least-invasive fix.

getlago/lago-front163—~2.9kAutomated safety check: PassMITtoday
14

Handle confidential GitHub Security Advisory response for Paperclip.

paperclipai/paperclip99k—~2kAutomated safety check: PassMITtoday
15

Turn a vulnerability report into a publication-ready GitHub Security Advisory.

frappe/skills146—~1.3kAutomated safety check: PassNo licence8 days ago
16

Find new skills on GitHub or check a specific skill before installing.

khendzel/skills-janitor123—~1.6kAutomated safety check: PassMIT8 days ago
17

Run snapshot regression tests after changes to OPA rules, scanners, analyzers, or formatters to detect output regressions.

boostsecurityio/poutine523—~214Automated safety check: PassApache-2.02 days ago
18

Draft a security-audit scope from GitHub repos or API access, with a protocol narrative and a sizing table.

forefy/.context152—~2.3kAutomated safety check: PassMIT3 days ago
19

GitHub repository automation (CI/CD, issue templates, Dependabot, CodeQL).

secondsky/claude-skills227—~4kAutomated safety check: NotesMIT10 days ago
20

File a low-severity finding as an ordinary public GitHub issue after explicit analyst confirmation.

alpha-omega-security/scrutineer231—~1.3kAutomated safety check: PassMITtoday
21

Deep audit before GitHub push: removes junk files, dead code, security holes, and optimization issues.

sickn33/agentic-awesome-skills47k2 repos~2.1kAutomated safety check: NotesMITtoday
22

Configures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot alerts) to perform automated static analysis and vulnerability detection across…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.3kAutomated safety check: PassApache-2.01 mo ago
23

Implements Sigstore-based software signing and verification using Cosign keyless signing, Rekor transparency log verification, and Fulcio certificate authority integration to establish cryptographic…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.2kAutomated safety check: NotesApache-2.01 mo ago
24

Full Go CVE analysis workflow. An agent skill from openshift-eng/ai-helpers.

openshift-eng/ai-helpers120—~2kAutomated safety check: NotesApache-2.0yesterday
25

Review secret detection patterns and scanning workflows. An agent skill from IgorWarzocha/Opencode-Workflows.

IgorWarzocha/Opencode-Workflows122—~1.2kAutomated safety check: NotesNo licence8 mo ago
26

High-precision Google dorks for exposed configs, secrets, and credentials -- real-world validated

uphiago/recon-skills1.3k—~1.1kAutomated safety check: NotesMIT1 mo ago
27

Detect package managers and CI action pins, then discover outdated or vulnerable dependencies.

tobihagemann/turbo407—~1.5kAutomated safety check: PassMITyesterday
28

A skill your agent uses when auditing an authorized website, SaaS, API, AI app, local code path, GitHub repo, staging URL, or owned runtime for security risks, vulnerability checklist scoring…

yaojingang/yao-open-skills1.3k—~1.2kAutomated safety check: PassMIT1 mo ago
29

Scan the ClawHunter agent bounty marketplace for opportunities that genuinely match this agent's real capabilities (code, security research, writing) and surface only real matches — never a raw…

aeonfun/aeon767—~1.7kAutomated safety check: PassMITtoday
30

检测规避/EDR 对抗分析:AMSI/ETW 绕过、无文件、lolbin 链. An agent skill from dslsdzc/rev-skills.

dslsdzc/rev-skills1251 repo~1.6kAutomated safety check: PassApache-2.03 days ago
31

Drive responsible disclosure of a proven finding to a CVE. An agent skill from Encod3d-Sec/TORCH.

Encod3d-Sec/TORCH329—~686Automated safety check: PassMIT1 mo ago
32
32.Fork

Stage a scanned repository into a private repo in the configured GitHub organisation.

alpha-omega-security/scrutineer231—~3.3kAutomated safety check: PassMITtoday
33

File a finding on the upstream repository through GitHub's private vulnerability reporting, request the temporary private fork, and push the proposed patch to it when available.

alpha-omega-security/scrutineer231—~2.6kAutomated safety check: PassMITtoday
34

Configure Claude Code sandbox network isolation with trusted domains, custom access policies, and environment variables

Microck/ordinary-claude-skills4031 repo~2.7kAutomated safety check: NotesUnknown1 mo ago
35

Master GitHub Agentic Workflows (gh-aw) - AI-powered repository automation with safe outputs, sandboxed execution, and multi-engine support

Hack23/cia239—~3.8kAutomated safety check: PassApache-2.0yesterday
36

Full security audit for public repositories across 12 attack surfaces: git history, secrets, CI/CD, containers, dependencies, licenses.

Mathews-Tom/armory328—~2.2kAutomated safety check: PassMIT2 days ago
37

Aggiunge alle repository GitHub dei siti workflow di sicurezza automatici - scansione dipendenze vulnerabili, ricerca di segreti/chiavi nel codice, analisi statica CodeQL e Dependabot.

ccplugins/awesome-claude-code-plugins968—~486Automated safety check: NotesApache-2.01 mo ago
38

Ingest a CVE writeup, blog post, advisory, or GitHub repo into the wiki - fetch, dedup via sources:, update the right technique/tool page(s), re-index.

Encod3d-Sec/TORCH329—~572Automated safety check: PassMIT1 mo ago
39

A skill your agent uses when resolving which GitHub repository to clone for CVE analysis from a container image name in a Jira ticket summary, pscomponent label, or Downstream Component Name field.

openshift-eng/ai-helpers120—~4.5kAutomated safety check: PassApache-2.0yesterday
40

CI/CD pipeline security gate design guide. An agent skill from revfactory/harness-100.

revfactory/harness-1001.3k—~1.5kAutomated safety check: PassApache-2.06 mo ago
41

Find leaked API keys, tokens, and credentials in public GitHub repositories.

uphiago/recon-skills1.3k—~1.8kAutomated safety check: WarnMIT1 mo ago
42

GitHub 安全研究方法论:搜索 GitHub 上的免杀/Loader/C2 技术仓库,分析代码模式,提取新技术入库。当知识库中没有针对当前检测环境的免杀技术时使用——先搜索 GitHub 高星仓库,分析代码后写入 evasion-techniques-db.json 或 loader-components-db.json 入库

wgpsec/AboutSecurity1.8k—~432Automated safety check: PassNo licence4 days ago
43

A skill your agent uses when opening or updating a GitHub pull request after Phase 5 of /compliance:analyze-cve has applied and verified a CVE fix locally.

openshift-eng/ai-helpers120—~6.2kAutomated safety check: PassApache-2.0yesterday
44

This skill should be used when the user asks to "triage security findings", "fix an Aikido finding", "review Aikido issues", "dismiss a false positive", "check SAST/IaC alerts", or needs to work…

bitwarden/ai-plugins154—~2.2kAutomated safety check: PassUnknowntoday
45

Scan GitHub Actions workflow files for security vulnerabilities by reading the YAML and reporting findings directly — no external tools, no installation, no shell execution.

aiskillstore/marketplace430—~3.2kAutomated safety check: PassNo licenceyesterday