Search
Security · Python
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Audits source code, dependencies and config files for vulnerabilities and hardcoded secrets, using two bundled Python scanners and an OWASP Top 10 checklist. | eigent-ai/ | 15k | — | ~1.8k | Automated safety check: Notes | Apache-2.0 | today |
| 2 | Generates Mermaid diagrams from Trailmark code graphs, including call graphs, class hierarchies, module dependency maps, complexity heatmaps and attack surface data flows. | trailofbits/ | 7.4k | 1 repo | ~1.7k | Automated safety check: Pass | CC-BY-SA-4.0 | today |
| 3 | Guides building Flowsint enrichers and types: where definitions live, how the base class and vault work, and when a new type is warranted. | reconurge/ | 9.5k | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 4 | Scans a codebase for vulnerabilities with CodeQL's data flow and taint tracking in run-all or important-only modes, including data extensions for project-specific sources and sinks. | trailofbits/ | 7.4k | — | ~4.6k | Automated safety check: Notes | CC-BY-SA-4.0 | today |
| 5 | Run a Kedro security scan on the full codebase or just a pull request. | kedro-org/ | 11k | — | ~3.3k | Automated safety check: Pass | Unknown | today |
| 6 | Polymarket integration for prediction market trading on Polygon. | Polymarket/ | 191 | 2 repos | ~2k | Automated safety check: Pass | No licence | 7 mo ago |
| 7 | A skill your agent uses when modifying, testing, documenting, or reviewing the Vulners Python SDK. | vulnersCom/ | 375 | — | ~2.3k | Automated safety check: Pass | MIT | 9 days ago |
| 8 | Adding a Community Agent Skill: a Markdown attack-workflow file that users import from the catalog, which then competes in the Intent Router and is injected into the agent's system prompt. | samugit83/ | 3k | — | ~775 | Automated safety check: Pass | MIT | yesterday |
| 9 | Reviews code for security, performance, quality and maintainability, using a checklist, a finding template and two metrics scripts. | luongnv89/ | 42k | — | ~764 | Automated safety check: Pass | MIT | 8 days ago |
| 10 | 10.C To Ast Parse C source code into an Abstract Syntax Tree (AST). An agent skill from Narwhal-Lab/MagicSkills. | Narwhal-Lab/ | 316 | — | ~1.1k | Automated safety check: Pass | MIT | 6 mo ago |
| 11 | 11.Skylos Run, interpret, or modify Skylos safely. An agent skill from duriantaco/skylos. | duriantaco/ | 843 | — | ~581 | Automated safety check: Pass | Apache-2.0 | today |
| 12 | Scans code with a bundled Node script for injection, secrets, XSS and other risky patterns, ranks findings by severity and checks that security decisions are documented. | fengshao1227/ | 5.9k | — | ~621 | Automated safety check: Notes | MIT | 23 days ago |
| 13 | Fingerprints which language or framework produced a serialized blob, then helps build a working gadget chain to test for insecure deserialization. | PentesterFlow/ | 1.4k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 14 | Linux 用户态安全入侵检测与取证工具,专为 AI Agent 设计。自动判断服务器是否被入侵, 提供完整证据链和可执行修复建议。51 个安全分析器覆盖进程/网络/认证/持久化/Rootkit/ 恶意软件/内存取证/容器逃逸等 12 类检测维度,10 个数据采集器全面采集系统状态, 映射 103+ MITRE ATT&CK 技术,支持 standalone/docker/k8s 三种部署模式。 | aliyun/ | 148 | 1 repo | ~2.6k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 15 | Security review of the current branch against its merge base — sandbox escapes, memory errors, panics and resource-limit bypasses. | pydantic/ | 8.6k | — | ~852 | Automated safety check: Pass | MIT | today |
| 16 | Run a full Python codebase security audit using PySpector (https://github.com/ParzivalHack/PySpector), a Rust-core SAST scanner. | ParzivalHack/ | 151 | — | ~3.5k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 17 | Verify or select a SageMaker execution role before creating models, endpoints, or training jobs. | waybarrios/ | 533 | — | ~1.6k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 18 | Django access control and IDOR security review. An agent skill from getsentry/skills. | getsentry/ | 1k | 3 repos | ~2.6k | Automated safety check: Notes | Apache-2.0 | 5 days ago |
| 19 | Weighs infrastructure, TTP, malware code and timing evidence with the Diamond Model and competing hypotheses to reach a confidence-rated attribution. | mukul975/ | 34k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 20 | Investigate and harden Skylos security behavior. An agent skill from duriantaco/skylos. | duriantaco/ | 843 | — | ~545 | Automated safety check: Pass | Apache-2.0 | today |
| 21 | Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge. | TheDecipherist/ | 550 | — | ~1.3k | Automated safety check: Notes | MIT | 5 mo ago |
| 22 | Runs Slither and Mythril against Solidity contracts to find reentrancy, overflow and access-control bugs before mainnet deployment, then triages and reports findings. | tradecatlabs/ | 17k | 1 repo | ~738 | Automated safety check: Pass | Apache-2.0 | today |
| 23 | 23.Combine Dbc Combine multiple individual single-signal DBC files into one combined DBC at the application level. | CSS-Electronics/ | 180 | — | ~826 | Automated safety check: Pass | MIT | yesterday |
| 24 | Runs a bug-bounty engagement through a script that tracks the current pass, builds a board of rows from recon and prints the next required action each turn. | Encod3d-Sec/ | 329 | 1 repo | ~1.8k | Automated safety check: Pass | MIT | 1 mo ago |
| 25 | 25.Edge Python Write, run, test and package Edge Python programs with the edge CLI. | dylan-sutton-chavez/ | 272 | — | ~12k | Automated safety check: Pass | Unknown | today |
| 26 | 26.Ghidra Re Expert-level Ghidra reverse engineering for firmware binaries with emphasis on stripped binary analysis, automated function discovery, cryptographic routine identification, authentication logic… | OrbitCurve/ | 214 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 27 | Installs, tunes and enforces Sponsio contracts that block unsafe tool calls in LLM agents, covering setup, auditing, observe mode and flipping to enforce. | SponsioLabs/ | 445 | — | ~12k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 28 | Maximum-fidelity Python source reconstruction from Nuitka .nbc / NBC/2 files produced by nuitkadecompiler.py. | DimaReverse/ | 132 | — | ~2k | Automated safety check: Pass | MIT | 1 mo ago |
| 29 | KISA 가이드라인 기반 배포 전 보안 컴플라이언스 체크리스트를 실행합니다. An agent skill from cdppcorp/KESE-KIT. | cdppcorp/ | 361 | — | ~956 | Automated safety check: Pass | MIT | 6 mo ago |
| 30 | Shows how to replace unsafe hasattr and setattr loops over user-controlled kwargs with an explicit allowlist when configuring ONNX Runtime option objects. | microsoft/ | 22k | — | ~737 | Automated safety check: Pass | MIT | today |
| 31 | Security-focused code review checklist and automated scanning patterns. | nicepkg/ | 192 | 1 repo | ~3.9k | Automated safety check: Pass | MIT | 7 mo ago |
| 32 | Runs a capture-the-flag box from first scan to root with a driver script that tracks progress and prints the next action each turn. | Encod3d-Sec/ | 329 | 1 repo | ~1.8k | Automated safety check: Pass | MIT | 1 mo ago |
| 33 | Review and structure auto insurance bodily injury claims, including intake triage, evidence completeness, injury causation, treatment chronology, medical necessity, wage-loss support, negotiation… | samarailly51-pixel/ | 117 | — | ~640 | Automated safety check: Pass | MIT | 1 mo ago |
| 34 | 34.Cyber Neo Comprehensive cybersecurity analysis for any local project. An agent skill from Hainrixz/cyber-neo. | Hainrixz/ | 281 | — | ~5.9k | Automated safety check: Warn | MIT | 2 mo ago |
| 35 | Guides forensic analysis of Windows LNK shortcut files and Jump Lists with LECmd, JLECmd and manual parsing to show file access and program execution. | mukul975/ | 34k | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 36 | 36.Stellar Dev End-to-end Stellar development playbook. An agent skill from VelaPayments/vela-payments. | VelaPayments/ | 131 | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 37 | Unpacks Electron apps and audits their ASAR contents, window security settings, IPC handlers and hardcoded secrets with a bundled Python analysis script. | ptn1411/ | 219 | — | ~830 | Automated safety check: Notes | No licence | 16 days ago |
| 38 | Infrastructure security audit for VPN server. An agent skill from Sergei-thinker/vpn-setup. | Sergei-thinker/ | 189 | — | ~1.5k | Automated safety check: Notes | MIT | 5 mo ago |
| 39 | Format and pretty-print Hak5 WiFi Pineapple recon JSON scan files for readability. | sneakerhax/ | 112 | — | ~259 | Automated safety check: Pass | GPL-3.0 | 1 mo ago |
| 40 | Hunts Windows malware persistence with Sysinternals Autoruns, covering run keys, services, scheduled tasks and drivers, with baseline comparison. | mukul975/ | 34k | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 41 | Create or delegate Tenuo warrants from natural-language authority requirements. | tenuo-ai/ | 102 | — | ~4.9k | Automated safety check: Pass | Apache-2.0 | today |
| 42 | Covers recovering and verifying the VC7 C runtime, compiler-runtime and D3DX library functions in the TH08 decompilation, with hash-pinned evidence. | N0zoM1z0/ | 100 | — | ~877 | Automated safety check: Pass | MIT | 19 days ago |
| 43 | Reference for building payment systems that meet PCI DSS: the 12 requirements, merchant levels, data that must never be stored, tokenization and encryption. | wshobson/ | 40k | 11 repos | ~1.9k | Automated safety check: Pass | MIT | 3 days ago |
| 44 | Debug and emulate specific code fragments or functions using the Unicorn engine. | index-login/ | 123 | — | ~1.9k | Automated safety check: Pass | MIT | 8 days ago |
| 45 | Display Hak5 WiFi Pineapple recon scan data as a formatted table. | sneakerhax/ | 112 | — | ~298 | Automated safety check: Pass | GPL-3.0 | 1 mo ago |
| 46 | Guides a Windows forensic examination of the NTFS Master File Table to recover deleted-file evidence, build timelines and spot timestomping. | mukul975/ | 34k | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 47 | Audits the Safe multisig wallets of DeFi protocols for governance misconfigurations, scoring each against a finding library and producing a severity-ranked report. | forefy/ | 152 | — | ~1.4k | Automated safety check: Pass | MIT | 3 days ago |
| 48 | Parses and processes SARIF files from static analysis tools like CodeQL, Semgrep, or other scanners. | trailofbits/ | 7.4k | 4 repos | ~4.4k | Automated safety check: Notes | CC-BY-SA-4.0 | today |