Search

Security · npm

69 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

A skill your agent uses when editing, adding, or reviewing any file under .github/workflows/, or when a CI step installs a CLI tool (npm i -g, npx, pipx, uses: /setup-).

asyncapi/generator1.1k—~1.9kAutomated safety check: PassApache-2.0yesterday
2

Reviews a verdaccio diff, branch or PR against the repository's review guide, verifies each finding in the code and reports only actionable issues.

verdaccio/verdaccio18k—~853Automated safety check: PassMIT2 days ago
3

Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge.

TheDecipherist/claude-code-mastery551—~1.3kAutomated safety check: NotesMIT5 mo ago
4

Scan an Activepieces Docker image with grype for OS/base-image (deb) and application (npm) CVEs of High/Critical severity.

activepieces/activepieces25k—~3.6kAutomated safety check: PassUnknowntoday
5

Runs a fast security sweep of recent code changes before a commit or PR, checking for leaked secrets, vulnerable dependencies, unsafe input handling and auth gaps.

zereight/gitlab-mcp2k1 repo~859Automated safety check: NotesMITtoday
6

Runs supply-chain risk analysis on CycloneDX BOMs with cdx-audit predictive auditing and cdxgen --bom-audit embedded rules, covering npm and PyPI package compromise posture, CI permission risk…

cdxgen/cdxgen1.1k—~2.4kAutomated safety check: PassApache-2.0today
7

Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk.

bodadotsh/npm-security-best-practices858—~1kAutomated safety check: WarnMIT10 days ago
8

Author CycloneDX-VEX or OpenVEX documents that import cleanly into ReARM.

relizaio/rearm127—~2.9kAutomated safety check: PassAGPL-3.0yesterday
9

Check and apply security updates across the photofield project (api/Go, ui/npm, docs/npm, e2e/npm).

SmilyOrg/photofield608—~808Automated safety check: PassMIT1 mo ago
10

Installs hooks that check each agent action against security policies before it runs, blocking destructive commands and logging every decision.

pegasi-ai/reins392—~1.4kAutomated safety check: WarnApache-2.0yesterday
11

Scan code for security issues: dependency vulnerabilities (npm/pip audit), secret leaks (regex and entropy analysis), and OWASP anti-patterns like SQL injection, XSS, or command injection.

zebbern/claude-code-guide4.7k—~1.3kAutomated safety check: PassMITyesterday
12

Audits outdated npm and Bun packages for supply chain integrity before bumping them, deferring risky ones and logging every decision.

backnotprop/plannotator9.3k—~1.8kAutomated safety check: PassApache-2.0today
13

Use HOL Guard to preview and protect AI-agent package installs, Cursor surfaces, CI, and automation workflows.

hashgraph-online/hol-guard845—~605Automated safety check: PassApache-2.0today
14

The Massing release discipline — how to ship a verified, CI-green version-numbered release direct to main.

ibuilder/massing122—~2.3kAutomated safety check: PassMIT2 days ago
15

Remediate security vulnerabilities found by Grype or pnpm audit.

stacklok/toolhive-studio171—~2.3kAutomated safety check: NotesApache-2.0yesterday
16

Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner.

majiayu000/spellbook287—~1.5kAutomated safety check: PassMIT2 days ago
17

Check dependencies for known vulnerabilities using npm audit, pip-audit, etc.

alirezarezvani/claude-code-tresor777—~1.2kAutomated safety check: NotesMIT3 mo ago
18

Audits a project's dependencies for supply-chain risk: version-matched advisories for direct dependencies and the full lockfile tree, abandoned or archived upstreams, npm publisher concentration…

trailofbits/skills7.5k—~1.7kAutomated safety check: NotesCC-BY-SA-4.0yesterday
19

Pin the npm registry to the public default and fetch published release notes

cisco-ai-defense/skill-scanner2.6k—~180Automated safety check: NotesApache-2.02 days ago
20

Check every dependency in a package.json against live CVE databases and security advisories in real time — specifically targeting vulnerabilities disclosed in the last 48 hours, the window that…

tinyfish-io/tinyfish-cookbook2.2k—~2.4kAutomated safety check: PassMIT2 days ago
21

Supply-chain security controls for the @cipherstash/stack monorepo.

cipherstash/stack157—~5.2kAutomated safety check: WarnMITyesterday
22

Sequences safe dependency upgrades: read the changelog, verify the version exists upstream, pin it, and keep major bumps in separate commits behind a full gate run.

dralgorhythm/claude-agentic-framework125—~1.5kAutomated safety check: PassNo licence2 mo ago
23

Respond to blocked package installs and manage the Interlinked supply-chain allowlist.

QuentinCody/interlinked-cli178—~2.8kAutomated safety check: PassMITyesterday
24

Senior SecOps engineer skill for application security, vulnerability management, compliance verification, and secure development practices.

alirezarezvani/claude-skills28k1 repo~4kAutomated safety check: PassMIT1 mo ago
25

Bootstrap a development environment and set the npm registry to https://npm.artifacts-mirror.internal-corp.dev

cisco-ai-defense/skill-scanner2.6k—~169Automated safety check: NotesApache-2.02 days ago
26

Run a Snyk security scan of the repo (frontend npm deps, backend pip deps, Dockerfile/base image, and Snyk Code SAST), triage findings, and remediate the real ones with verified fixes.

bagofwords1/bagofwords459—~1.7kAutomated safety check: PassUnknowntoday
27

Scans deps for known CVEs via native audit (npm, pip, composer, cargo, go, bundler, dart).

softspark/ai-toolkit180—~1.3kAutomated safety check: NotesApache-2.0yesterday
28

Scan package manifests and lockfiles for outdated and vulnerable dependencies.

cobusgreyling/loop-engineering11k—~531Automated safety check: PassMITtoday
29

Run a large sharded measurement sweep over npm packages (the build-jail catalog probe, or any harness that installs thousands of package-versions and records a verdict per run).

nubjs/nub4.4k—~2.4kAutomated safety check: PassMITyesterday
30

Audit and manage dependencies across multi-language projects.

alirezarezvani/claude-skills28k—~1.1kAutomated safety check: PassMIT1 mo ago
31

Pre-production audit, hardening, and go-live checklists for FrontMCP servers.

agentfront/frontmcp146—~6.5kAutomated safety check: PassApache-2.0yesterday
32

Automate browsers (Playwright) and Windows desktop applications (UI automation) for reverse-engineering evidence collection, UI-driven workflows, and network observation during analysis.

sickn33/agentic-awesome-skills47k1 repo~1.3kAutomated safety check: PassMIT2 days ago
33

Audit project dependencies, frameworks, languages, and dev tools for known vulnerabilities, CVEs, and security anti-patterns.

briiirussell/cybersecurity-skills413—~3.2kAutomated safety check: WarnMIT4 mo ago
34

Inkline's platform & trust surface — the styleframe license boundary, supply-chain and secrets hygiene, npm distribution integrity, and the future Studio/commercial direction.

inkline/inkline1.5k—~1.1kAutomated safety check: PassNo licence29 days ago
35

Scans your project for outdated npm, pip, Cargo, Go, or Ruby packages.

Varnan-Tech/opendirectory674—~3kAutomated safety check: NotesMIT1 mo ago
36

Detect and remediate software supply chain attacks in npm, PyPI, crates.io, GitHub Actions, and CI/CD pipelines by scanning for known compromised packages, malicious versions, filesystem IOCs, C2…

davila7/claude-code-templates33k—~1.7kAutomated safety check: NotesMITyesterday
37

Flag misspelled, brandjacked, and typosquatted package names across npm, PyPI, and crates.io before installation, using edit-distance, keyboard-proximity, and known-target corpus matching with…

mukul975/Anthropic-Cybersecurity-Skills34k—~3kAutomated safety check: PassApache-2.01 mo ago
38

Detects typosquatting attacks in npm and PyPI package registries by analyzing package name similarity using Levenshtein distance and other string metrics, examining publish date heuristics to…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.3kAutomated safety check: PassApache-2.01 mo ago
39

Audit JS/TS projects against NPM Security Guidelines covering project setup, dependency hygiene, CI/CD pipeline, Dependabot, and incident response.

c0x12c/ai-toolkit106—~1.6kAutomated safety check: WarnNo licence3 mo ago
40

Audit MCP (Model Context Protocol) server configurations for security issues.

github/awesome-copilot40k—~3.1kAutomated safety check: PassMIT2 days ago
41

Scan project dependencies for known vulnerabilities and CVEs.

ruvnet/ruflo74k—~258Automated safety check: PassMITyesterday
42

Proactive supply-chain watch for this repo. An agent skill from epam/ai-dial-chat.

epam/ai-dial-chat504—~1.9kAutomated safety check: PassApache-2.0yesterday
43

A skill your agent uses when the user says 'dependency audit', 'npm audit', 'pip audit', 'cargo audit', 'security vulnerabilities', 'outdated packages', 'supply chain', or needs to scan project…

cwinvestments/memstack423—~3.1kAutomated safety check: PassProprietary14 days ago
44

Detect package managers and CI action pins, then discover outdated or vulnerable dependencies.

tobihagemann/turbo408—~1.5kAutomated safety check: PassMIT2 days ago
45

Handle CVE/vulnerability reports from security linters (trivy, osv-scanner, etc.).

hardisgroupcom/sfdx-hardis403—~1.3kAutomated safety check: NotesAGPL-3.0yesterday
46

Dependabot-aware dependency updates with security audit, real-CI validation, and a unified PR.

joshukraine/dotfiles429—~2.2kAutomated safety check: PassMIT4 days ago
47

Execute this skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin.

jeremylongshore/tons-of-skills-marketplace2.8k—~927Automated safety check: PassMITyesterday
48

Software Composition Analysis: find vulnerable dependencies, correlate CVE/GHSA/OSV across ecosystems, generate CycloneDX/SPDX SBOMs, assess license compliance, and run reachability-aware triage to…

hardw00t/ai-security-arsenal105—~3kAutomated safety check: PassNo licence5 mo ago