Search
Security · Rust · For developers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Guides smart contract audits and bounty target selection with ten DeFi bug classes, kill signals, a Foundry PoC template and grep patterns. | awarexone/ | 5.3k | 3 repos | ~4.5k | Automated safety check: Pass | MIT | yesterday |
| 2 | Security review of the current branch against its merge base — sandbox escapes, memory errors, panics and resource-limit bypasses. | pydantic/ | 8.6k | — | ~852 | Automated safety check: Pass | MIT | yesterday |
| 3 | Run a full Python codebase security audit using PySpector (https://github.com/ParzivalHack/PySpector), a Rust-core SAST scanner. | ParzivalHack/ | 151 | — | ~3.5k | Automated safety check: Notes | Apache-2.0 | 3 days ago |
| 4 | 4.Rsigma Use the rsigma CLI and MCP server: engine eval, engine daemon, rule lint, rule draft, rule tune, rule backtest, backend convert, mcp serve. | timescale/ | 165 | — | ~1.2k | Automated safety check: Pass | MIT | 2 days ago |
| 5 | Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge. | TheDecipherist/ | 551 | — | ~1.3k | Automated safety check: Notes | MIT | 5 mo ago |
| 6 | Write, run, test and package Edge Python programs with the edge CLI. | dylan-sutton-chavez/ | 273 | — | ~11k | Automated safety check: Pass | Unknown | today |
| 7 | 7.Skeptic Run the security-focused Skeptic persona on the local working tree's diff against a base branch. | RaoFoundation/ | 391 | — | ~660 | Automated safety check: Pass | Apache-2.0 | today |
| 8 | End-to-end Stellar development playbook. An agent skill from VelaPayments/vela-payments. | VelaPayments/ | 131 | — | ~1.8k | Automated safety check: Pass | MIT | 4 days ago |
| 9 | Enriches an existing CycloneDX BOM with occurrence, callstack, reachability, data-flow, and crypto-flow evidence using cdxgen evinse, including Go analysis via Golem and Rust analysis via Rusi, and… | cdxgen/ | 1.1k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | today |
| 10 | A skill your agent uses for reverse engineering stripped Go and Rust binaries including runtime recognition, pclntab/moduel data recovery, panic strings, and idiomatic decompilation recovery. | zhaoxuya520/ | 41k | 2 repos | ~339 | Automated safety check: Pass | MIT | 18 days ago |
| 11 | Security code review for Tauri/Rust/TypeScript desktop apps and Hono/oRPC APIs. | deadlock-mod-manager/ | 478 | — | ~1.8k | Automated safety check: Pass | CC-BY-SA-4.0 | today |
| 12 | Diagnose a denied Tenuo call and make the legitimate call work with the smallest change to authority. | tenuo-ai/ | 103 | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | today |
| 13 | 13.St Lsp Solid Keeps truST's architecture simple and well separated, and runs the automated architecture checks. | johannesPettersson80/ | 222 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 14 | 14.Supply Chain Procedure for keeping playwright-rust's cargo audit / cargo deny / cargo vet checks green when bumping the project's own version, when external crates change, and when a security advisory drops. | padamson/ | 157 | — | ~722 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 15 | Guides writing and improving fuzzing harnesses for C, C++ and Rust so random byte input gets translated into structured, reproducible test cases for the target code. | trailofbits/ | 7.5k | 1 repo | ~5.3k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 16 | Compiles cryptographic code and inspects the assembly or bytecode for variable-time instructions, then triages which flagged operations actually touch secrets. | trailofbits/ | 7.5k | — | ~3.3k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 17 | Triages survived mutants and unnecessary test statements using Trailmark call-graph data, sorting them into false positives, missing unit tests and fuzzing targets. | trailofbits/ | 7.5k | — | ~3.2k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 18 | Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. | trailofbits/ | 7.5k | — | ~3.6k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 19 | Gets your own codebase ready for an external security review: sets review goals, runs static analysis, raises test coverage, removes dead code and writes documentation. | trailofbits/ | 7.5k | — | ~2.5k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 20 | Scans Cairo and StarkNet contracts for 6 vulnerability patterns, including felt252 overflow, L1 to L2 messaging faults, address conversion and signature replay. | trailofbits/ | 7.5k | — | ~3.3k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 21 | Sets up cargo-fuzz for a Cargo-based Rust project: nightly toolchain, fuzz targets, structured inputs, sanitizers, coverage and reproducing crashes. | trailofbits/ | 7.5k | — | ~2.9k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 22 | Patches checksums, hash checks, time-based seeds and other non-deterministic state out of fuzzing builds so the fuzzer reaches deeper code, with production behavior intact. | trailofbits/ | 7.5k | — | ~4k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 23 | Builds custom fuzzers with LibAFL, the modular Rust fuzzing library. | trailofbits/ | 7.5k | — | ~4.3k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 24 | 24.Rust Review Rust 服务审查:panic、SQL 注入、密钥、错误吞没、遗留标记 | liuyanghejerry/ | 204 | — | ~180 | Automated safety check: Pass | MIT | 11 days ago |
| 25 | Respond to blocked package installs and manage the Interlinked supply-chain allowlist. | QuentinCody/ | 178 | — | ~2.8k | Automated safety check: Pass | MIT | yesterday |
| 26 | Performs comprehensive Rust security review for safe/unsafe boundary issues, memory safety in unsafe blocks, concurrency hazards, panic-induced DoS, FFI safety, and async runtime mistakes. | trailofbits/ | 7.5k | — | ~11k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 27 | AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching… | github/ | 40k | 1 repo | ~2.3k | Automated safety check: Notes | MIT | yesterday |
| 28 | Reverse engineer stripped Go and Rust binaries: runtime recognition, pclntab/module metadata recovery, panic-string analysis, and idiomatic decompilation strategies. | sickn33/ | 47k | 1 repo | ~458 | Automated safety check: Pass | MIT | yesterday |
| 29 | Detect and remediate software supply chain attacks in npm, PyPI, crates.io, GitHub Actions, and CI/CD pipelines by scanning for known compromised packages, malicious versions, filesystem IOCs, C2… | davila7/ | 33k | — | ~1.7k | Automated safety check: Notes | MIT | today |
| 30 | Flag misspelled, brandjacked, and typosquatted package names across npm, PyPI, and crates.io before installation, using edit-distance, keyboard-proximity, and known-target corpus matching with… | mukul975/ | 34k | — | ~3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 31 | Azure Key Vault Keys SDK for Rust. An agent skill from aiskillstore/marketplace. | aiskillstore/ | 433 | 4 repos | ~1.1k | Automated safety check: Pass | No licence | today |
| 32 | Comprehensive smart contract security audit framework with multi-expert analysis. | forefy/ | 152 | 1 repo | ~5.1k | Automated safety check: Pass | MIT | 6 days ago |
| 33 | Analyze Rust native binaries — demangle symbols, extract panic paths to reconstruct module map, detect frameworks (Tauri/Actix/Rocket/Axum), locate license validation logic. | ptn1411/ | 219 | — | ~586 | Automated safety check: Notes | No licence | 18 days ago |
| 34 | Spoof TLS ClientHello and JA4 fingerprints for browser impersonation. | uphiago/ | 1.3k | — | ~2.1k | Automated safety check: Pass | MIT | 1 mo ago |
| 35 | Defense-in-depth security across Rust, TypeScript, and Bash for the Pump SDK — cryptographic key handling, memory zeroization, secure file I/O, input validation, privilege management, dependency… | nirholas/ | 134 | — | ~892 | Automated safety check: Pass | Unknown | yesterday |
| 36 | 36.SQL Security SQL injection screening for host code (MoonBit / TS / Rust) plus secretlint setup notes. | mizchi/ | 360 | — | ~1.4k | Automated safety check: Pass | No licence | 8 days ago |
| 37 | A skill your agent uses when reviewing a Solidity, Vyper, or Rust (Solana/Anchor) smart contract for paid audit work or pre-launch sanity check. | elophanto/ | 106 | — | ~2.7k | Automated safety check: Pass | Unknown | 9 days ago |
| 38 | Azure Key Vault Certificates library for Rust. An agent skill from microsoft/skills. | microsoft/ | 3.1k | — | ~2k | Automated safety check: Pass | MIT | yesterday |
| 39 | Azure Key Vault Keys library for Rust. An agent skill from microsoft/skills. | microsoft/ | 3.1k | — | ~1.9k | Automated safety check: Pass | MIT | yesterday |
| 40 | A skill your agent uses when analyzing a Rust binary without source code, reverse engineering Rust executables or libraries, demangling Rust symbols, recovering likely crate namespaces, tracing… | hashgraph-online/ | 1.3k | — | ~3.7k | Automated safety check: Pass | Apache-2.0 | today |
| 41 | 41.Sca Audit Scan project dependencies for known vulnerabilities (CVEs). An agent skill from OWASP/secure-agent-playbook. | OWASP/ | 188 | — | ~494 | Automated safety check: Pass | CC-BY-4.0 | 15 days ago |
| 42 | Scan project dependencies for vulnerabilities, license issues, and upgrade opportunities across Python, Node.js, Go, and Rust. | borghei/ | 891 | — | ~1.8k | Automated safety check: Pass | MIT | 3 days ago |
| 43 | Scan repositories for newly disclosed CVEs in dependencies after a specific cutoff date. | ArabelaTso/ | 253 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 44 | Detect CVEs and security issues in project dependencies. An agent skill from jwynia/agent-skills. | jwynia/ | 170 | — | ~1.7k | Automated safety check: Pass | MIT | 7 mo ago |
| 45 | 45.Cpp A skill your agent uses when writing, reviewing, modernizing, building, or debugging C++ - RAII and resource lifetime, smart-pointer ownership, move semantics and the Rule of Zero/Five, target-based… | ericrisco/ | 180 | — | ~4k | Automated safety check: Pass | MIT | yesterday |
| 46 | 46.Audit On-demand security and code quality audit. An agent skill from MadAppGang/claude-code. | MadAppGang/ | 285 | — | ~3.3k | Automated safety check: Pass | MIT | 6 mo ago |
| 47 | Audit C, C++, unsafe Rust, native extensions, parsers, codecs, FFI boundaries, and systems code for memory corruption and low-level exploitation risk. | cyberful/ | 135 | — | ~829 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 48 | Static ReDoS (Regular Expression Denial of Service) vulnerability scanner and regex quality auditor for codebases. | LeoYeAI/ | 2.2k | — | ~5.1k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |