Search

Security · Model Context Protocol · For devops and sre engineers

51 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Hunts for compromised workloads and malicious traffic in a Kubernetes cluster by sweeping network data through Kubeshark MCP, mapped to MITRE ATT&CK.

kubeshark/kubeshark12k—~7.3kAutomated safety check: NotesApache-2.02 days ago
2

Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics.

alexgreensh/repo-forensics188—~2.5kAutomated safety check: NotesUnknown12 days ago
3

Run HOL Guard scanner and guard operations via uv run hol-guard.

hashgraph-online/hol-guard827—~542Automated safety check: PassApache-2.0today
4

Install or initialize HOL Guard local runtime protection for Claude Code.

hashgraph-online/hol-guard827—~443Automated safety check: PassApache-2.0today
5

Request a security expert assessment for code changes that touch child process spawning, file system access, configuration loading, or environment variable handling.

ktnyt/cclsp675—~565Automated safety check: PassMIT7 mo ago
6

Check HOL Guard local protection status for Claude Code without changing configuration.

hashgraph-online/hol-guard827—~231Automated safety check: PassApache-2.0today
7

Commit and push a finished change the way this repo requires — explicit paths, one commit per logical change, no attribution, the five documentation places answered, the site checks before a push (a…

guardana/guardana130—~838Automated safety check: NotesApache-2.0yesterday
8

Decrypt and recover obfuscated strings from binaries by analyzing encryption patterns and generating decryption scripts

P4nda0s/bin-deobf-skills140—~876Automated safety check: PassNo licence4 mo ago
9

Mod a PC game the user owns, taking an idea to working in the real game and recorded.

rehan-remade/universal-modder5.8k—~2.9kAutomated safety check: PassMITtoday
10

Perform exhaustive analysis of a critical IOC. An agent skill from dandye/ai-runbooks.

dandye/ai-runbooks127—~1.1kAutomated safety check: PassApache-2.01 mo ago
11

Scan AI agent skills, plugins, MCP servers, and agent tooling for prompt injection, unsafe commands, secret exposure, and supply-chain risks before installing or trusting them.

iflytek/skillhub5.2k2 repos~1.1kAutomated safety check: NotesApache-2.0today
12

Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool.

getknit/knit132—~1.2kAutomated safety check: PassGPL-3.05 days ago
13

Performs a comprehensive Amazon ECS operations review across the 6 review pillars (Resiliency & HA, Observability, Security, Operations, Performance, Additional Analysis) using read-only AWS APIs…

aws/tools-for-devops-agent102—~4.8kAutomated safety check: PassApache-2.02 days ago
14

OpenClaw 安全部署指南 / Security deployment guide — help users secure their OpenClaw installation

jnMetaCode/shellward140—~644Automated safety check: WarnApache-2.011 days ago
15

Audit AI agent configurations for security risks — excessive permissions, prompt injection surfaces, data exfiltration paths, and missing guardrails.

OWASP/secure-agent-playbook187—~542Automated safety check: PassCC-BY-4.014 days ago
16

Teaches the agent to use the WebCrypt MCP server for AES-256-GCM symmetric encryption, RSA-4096 hybrid encryption, key generation, digital signatures, hashing, and post-quantum cryptography.

putervision/state-memory-mcp114—~847Automated safety check: PassMIT6 days ago
17

Hunt for vulnerabilities in a running debuggee by analyzing imports/exports, triaging attack surface, and iteratively testing for bugs with PoC generation.

dariushoule/x64dbg-skills209—~3.9kAutomated safety check: NotesMIT7 mo ago
18

Hunt for the failure this project exists to prevent — code that compiles, types, tests green, and quietly reports "all clear" about something it never examined.

guardana/guardana130—~1.1kAutomated safety check: PassApache-2.0yesterday
19

Use astgrepscan, sourcesinkscan, and smtcheckreachability (mantisprogramanalysis MCP server) to move a candidate toward a proven-reachable finding

deonmenezes/mantishack504—~551Automated safety check: PassApache-2.06 days ago
20
20.Plan

Turn a development task into one work file in .work/ — goal, decisions, lanes with exact files and verification, done-criteria.

guardana/guardana130—~1kAutomated safety check: PassApache-2.0yesterday
21

For any security-related task — threat triage, incident response, MITRE ATT&CK mapping, CVE lookup, exploit analysis, defensive control validation, red/blue/purple team work — always consult the…

lyonzin/knowledge-rag292—~2.3kAutomated safety check: PassMIT5 days ago
22

Security review: (1) vet an untrusted SKILL.md or .mcp.json BEFORE installing it — the injection/exfiltration scanner; CRITICAL blocks the install; (2) audit code on an untrusted-input path (a…

redhat-et/ripwire2.4k—~2.8kAutomated safety check: WarnApache-2.0today
23

Threat-model and find vulnerabilities, with practical remediation.

antonbabenko/deliberation170—~1.1kAutomated safety check: PassMITyesterday
24

What to do if a mantiscanary decoy tool ever shows up as tempting or gets called -- treat it as a security incident, not a normal tool result

deonmenezes/mantishack504—~376Automated safety check: PassApache-2.06 days ago
25

Reverse engineer binaries with IDA Pro: decompilation, disassembly, data-flow tracking, cross-references, and IDA MCP automation for deep static analysis of PE/ELF/Mach-O targets.

sickn33/agentic-awesome-skills47k1 repo~3.1kAutomated safety check: PassMITtoday
26

Step-by-step cookbook for setting up cryptographically signed audit trails on Claude Code tool calls.

wshobson/agents40k—~2.5kAutomated safety check: PassMIT5 days ago
27

Build a CodeQL database and run dataflow-backed query-suite analysis via the mantiscodeql MCP server

deonmenezes/mantishack504—~325Automated safety check: PassApache-2.06 days ago
28
28.Azure ComplianceOfficial

Run Azure compliance and security audits with azqr plus Key Vault expiration checks.

microsoft/GitHub-Copilot-for-Azure2552 repos~997Automated safety check: PassMITtoday
29

Run osv-scanner via the mantisosvscanner MCP server for SCA (vulnerable dependency) findings

deonmenezes/mantishack504—~298Automated safety check: PassApache-2.06 days ago
30

Run and inspect the local pieces of Guardana — the throwaway PostgreSQL for the collector, the collector itself, a fake OpenAI-compatible endpoint to probe, the documentation site served locally…

guardana/guardana130—~568Automated safety check: PassApache-2.0yesterday
31

Run full security scans on the codebase using Ruflo security tools.

ruvnet/ruflo74k—~298Automated safety check: PassMITtoday
32

Scan inputs for prompt injection, unsafe content, and adversarial attacks using AIDefence.

ruvnet/ruflo74k—~409Automated safety check: NotesMITtoday
33

Create OPA governance policies for Harness via MCP. An agent skill from harness/harness-skills.

harness/harness-skills115—~1.9kAutomated safety check: PassApache-2.03 days ago
34

Deep code property graph analysis with Joern CPG (AST+CFG+PDG) and CodeQL for control flow, data flow, taint analysis, and security auditing

alinaqi/maggy707—~2kAutomated safety check: PassMIT15 days ago
35

ANALYSIS SKILL — Azure compliance and security auditing: best practices, Key Vault expiration monitoring, resource validation.

jonathan-vella/apex217—~1.6kAutomated safety check: PassMITyesterday
36

Run trufflehog via the mantistrufflehog MCP server and handle secret findings without ever exposing the raw secret

deonmenezes/mantishack504—~347Automated safety check: PassApache-2.06 days ago
37

Enterprise-review-grade threat model from harness threat-model <path.

ruvnet/ruflo74k—~363Automated safety check: NotesMITtoday
38

Explore GTI relationships for an IOC to discover related entities.

dandye/ai-runbooks127—~690Automated safety check: PassApache-2.01 mo ago
39

MCP server attack hunting - tool poisoning, indirect prompt injection via tool output, rug-pull updates, cross-tool shadowing, over-permissioned/excessive-agency tools, lethal trifecta.

Encod3d-Sec/TORCH329—~1.4kAutomated safety check: PassMIT1 mo ago
40
40.Wiki

Search, query, and maintain the qmd-indexed wiki - semantic search, keyword search, re-index after adding pages, check index status.

Encod3d-Sec/TORCH329—~1.1kAutomated safety check: PassMIT1 mo ago
41

Review an MCP server for common security gaps: LLM-facing surfaces as injection vector (tools, resources, prompts, descriptions), scope blast radius, destructive ops without consent, upstream auth…

cyanheads/pubmed-mcp-server156—~6.4kAutomated safety check: PassApache-2.05 days ago
42
42.Work

Entry point for any development task in this repo — feature, bugfix, refactor, cleanup, a new command, target or evaluator, a collector change.

guardana/guardana130—~968Automated safety check: PassApache-2.0yesterday
43

Read-only audit of MCP definition language across an existing surface — tools, resources, prompts, server instructions.

cyanheads/pubmed-mcp-server156—~4.8kAutomated safety check: PassApache-2.05 days ago
44

MCP gateway security patterns, token management, request validation, and audit logging for MCP communications

Hack23/cia239—~2.4kAutomated safety check: PassApache-2.0today
45

Diagnose and operate Spring AI projects with version-aware Maven or Gradle checks for ChatClient, advisors, retrieval, conversation memory, tool/MCP boundaries, streaming, configuration, and…

magnus919/agent-skills116—~1.2kAutomated safety check: PassMITyesterday
46

A skill your agent uses when /compliance:analyze-cve is invoked with --jira= or --jql= and needs the CVE ID, image name, branch, and enriched ticket context from a Jira issue.

openshift-eng/ai-helpers120—~3.3kAutomated safety check: PassApache-2.03 days ago
47

MCP server security registry and trust assessment — look up servers in the 427+ server security metadata registry, run pre-install marketplace checks, batch fleet risk scoring, assess skill file…

LeoYeAI/openclaw-master-skills2.2k—~969Automated safety check: PassApache-2.02 mo ago
48
48.AWS SecurityOfficial

AWS security service suitability, coverage and cost recommendations: WAF/origin overlap, AWS Network Firewall inspection coverage and policy review, VPC endpoint, Transit Gateway/Cloud WAN…

aws/agent-toolkit-for-aws2.8k—~4.1kAutomated safety check: PassApache-2.0today