Search
Security · For devops and sre engineers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Installs or refreshes Iron Proxy and its Iron Control web console for NanoClaw, with a local Docker setup, database, credentials and a human approval bridge. | nanocoai/ | 31k | — | ~4.6k | Automated safety check: Notes | MIT | yesterday |
| 2 | Guidelines for Ascend NPU kernel / Triton-Ascend backend performance work in the FLA repo. | fla-org/ | 5.8k | — | ~6.3k | Automated safety check: Pass | MIT | today |
| 3 | Points the agent at deepsec's own docs to answer questions about initializing, configuring, resuming, scanning with and extending the vulnerability scanner. | vercel-labs/ | 8.1k | — | ~956 | Automated safety check: Pass | Apache-2.0 | 8 days ago |
| 4 | Scan agent skills for security issues. An agent skill from getsentry/skills. | getsentry/ | 1k | 4 repos | ~2.5k | Automated safety check: Warn | Apache-2.0 | 5 days ago |
| 5 | Apply trader Serenity's (@aleabitoreddit) AI/semiconductor supply-chain analytical lens to US-stock ideas and market judgment. | yan-labs/ | 480 | 1 repo | ~3.3k | Automated safety check: Pass | No licence | 6 days ago |
| 6 | Triage Elastic Security alerts — gather context, classify threats, create cases, and acknowledge. | elastic/ | 592 | 1 repo | ~3.5k | Automated safety check: Notes | Apache-2.0 | today |
| 7 | 当用户要求利用、检测或测试 Apache Shiro rememberMe 反序列化漏洞 (Shiro-550, CVE-2016-4437) 时使用。触发词包括 "Shiro"、"rememberMe"、"shiro attack"、"CVE-2016-4437"、"Shiro-550"、"爆破 Shiro key"、"利用 Shiro"、"Shiro… | SummerSec/ | 2.6k | — | ~945 | Automated safety check: Pass | MIT | 4 mo ago |
| 8 | Verify if a CVE affects the project and remediate it. An agent skill from rundeck/rundeck. | rundeck/ | 6.3k | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | today |
| 9 | Hunts for compromised workloads and malicious traffic in a Kubernetes cluster by sweeping network data through Kubeshark MCP, mapped to MITRE ATT&CK. | kubeshark/ | 12k | — | ~7.3k | Automated safety check: Notes | Apache-2.0 | today |
| 10 | 10.Eu Cra Expert EU Cyber Resilience Act (CRA) advisor for Regulation (EU) 2024/2847 — mandatory cybersecurity and vulnerability handling requirements for all products with digital elements (PDEs) sold in the… | Sushegaad/ | 942 | 1 repo | ~4k | Automated safety check: Pass | MIT | 3 days ago |
| 11 | 11.Semgrep Run Semgrep static analysis scan on a codebase using parallel subagents. | vigolium/ | 140 | 1 repo | ~2.4k | Automated safety check: Notes | MIT | 18 days ago |
| 12 | 12.Release Cut a new AperiSolve release — bump the version, commit "chore(release): X.Y.Z", tag it, push, and publish a GitHub Release whose notes are computed from the commits since the last tag. | Zeecka/ | 850 | — | ~1.9k | Automated safety check: Pass | MIT | today |
| 13 | A skill your agent uses when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment) before private sync or public publish, or when asked to… | agentlas-ai/ | 1.6k | 1 repo | ~822 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 14 | Update native dependencies (libpng, libexpat, zlib, libwebp, harfbuzz, freetype, libjpeg-turbo, etc.) in SkiaSharp's Skia fork. | mono/ | 5.6k | — | ~4.1k | Automated safety check: Pass | MIT | today |
| 15 | 15.C To Ast Parse C source code into an Abstract Syntax Tree (AST). An agent skill from Narwhal-Lab/MagicSkills. | Narwhal-Lab/ | 316 | — | ~1.1k | Automated safety check: Pass | MIT | 6 mo ago |
| 16 | A skill your agent uses when editing, adding, or reviewing any file under .github/workflows/, or when a CI step installs a CLI tool (npm i -g, npx, pipx, uses: /setup-). | asyncapi/ | 1.1k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 17 | Create, tune, and manage Elastic Security detection rules (SIEM and Endpoint). | elastic/ | 592 | 1 repo | ~3.9k | Automated safety check: Notes | Apache-2.0 | today |
| 18 | Answers AWS architecture, security and service-selection questions by searching AWS documentation through MCP tools first, then adapting advice to your stack and team. | tech-leads-club/ | 7k | — | ~2.1k | Automated safety check: Pass | CC-BY-4.0 | 17 days ago |
| 19 | Keeps Kubernetes manifests, Helm charts and policies grounded by diagnosing six failure modes, such as insecure defaults and API drift, and loading only matching references. | LukasNiessen/ | 444 | — | ~1.2k | Automated safety check: Pass | MIT | 24 days ago |
| 20 | 20.Forensify Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics. | alexgreensh/ | 188 | — | ~2.5k | Automated safety check: Notes | Unknown | 11 days ago |
| 21 | 21.Hol Guard Run HOL Guard scanner and guard operations via uv run hol-guard. | hashgraph-online/ | 815 | — | ~542 | Automated safety check: Pass | Apache-2.0 | today |
| 22 | Verify that code changes do not introduce OAuth security vulnerabilities. | doorkeeper-gem/ | 5.5k | — | ~1.4k | Automated safety check: Pass | MIT | today |
| 23 | Command reference for omniroute's audit, logs, policy and telemetry commands: search and export audit trails, manage access policies and review request history for compliance work. | diegosouzapw/ | 74k | 1 repo | ~733 | Automated safety check: Pass | MIT | today |
| 24 | 24.Semia Audit an agent skill with Semia inside Codex. An agent skill from berabuddies/Semia. | berabuddies/ | 612 | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 25 | Linux 用户态安全入侵检测与取证工具,专为 AI Agent 设计。自动判断服务器是否被入侵, 提供完整证据链和可执行修复建议。51 个安全分析器覆盖进程/网络/认证/持久化/Rootkit/ 恶意软件/内存取证/容器逃逸等 12 类检测维度,10 个数据采集器全面采集系统状态, 映射 103+ MITRE ATT&CK 技术,支持 standalone/docker/k8s 三种部署模式。 | aliyun/ | 148 | 1 repo | ~2.6k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 26 | Detects languages, proposes rulesets for approval, then runs the approved Semgrep scan across a codebase and merges the output into one SARIF file. | trailofbits/ | 7.4k | — | ~3.7k | Automated safety check: Notes | CC-BY-SA-4.0 | today |
| 27 | Security-audit a third-party skill bundle (folder with SKILL.md, or .zip / .tar.gz archive) before installing it, using the SkillWard cloud scanner. | Fangcun-AI/ | 143 | — | ~2.9k | Automated safety check: Pass | Unknown | 2 mo ago |
| 28 | General-purpose Static Application Security Testing (SAST) skill for code vulnerability analysis. | SunWeb3Sec/ | 286 | — | ~6.2k | Automated safety check: Pass | No licence | 1 mo ago |
| 29 | 29.Game Recon Figure out how a specific installed game can be modded, before writing any mod code. | rehan-remade/ | 5.3k | — | ~1k | Automated safety check: Pass | MIT | today |
| 30 | Write, debug, or validate a CVEhound detection rule (.cocci or .grep) for a Linux kernel CVE. | evdenis/ | 138 | — | ~2.5k | Automated safety check: Pass | GPL-3.0 | 6 days ago |
| 31 | Unattended VulnHunter operator. An agent skill from nealbridges/VulnHunter. | nealbridges/ | 646 | — | ~711 | Automated safety check: Pass | Apache-2.0 | today |
| 32 | 32.Sast Semgrep Static application security testing (SAST) using Semgrep for vulnerability detection, security code review, and secure coding guidance with OWASP and CWE framework mapping. | AgentSecOps/ | 220 | 2 repos | ~2.4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 33 | Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge. | TheDecipherist/ | 550 | — | ~1.3k | Automated safety check: Notes | MIT | 5 mo ago |
| 34 | A skill your agent uses when scanning code for security vulnerabilities. | tanviet12/ | 287 | — | ~5.3k | Automated safety check: Notes | MIT | 10 days ago |
| 35 | Run a pre-deployment security compliance checklist based on KISA guidelines. | cdppcorp/ | 361 | — | ~1.3k | Automated safety check: Pass | MIT | 6 mo ago |
| 36 | 36.Semia Audit an agent skill with Semia inside OpenClaw. An agent skill from berabuddies/Semia. | berabuddies/ | 612 | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 37 | 37.Create Rule Author a Cartography security rule (one or more Cypher Facts plus a Pydantic Finding output model) under cartography/rules/data/rules/. | cartography-cncf/ | 4.1k | — | ~3k | Automated safety check: Pass | Apache-2.0 | today |
| 38 | 38.Vulnhunt Scan a codebase for exploitable security defects. An agent skill from capitalone/VulnHunter. | capitalone/ | 1.1k | 1 repo | ~5k | Automated safety check: Pass | Apache-2.0 | today |
| 39 | Manages Google Cloud Privileged Access Manager entitlements and grants: create and edit entitlements, request temporary access, and approve or deny pending grants. | google/ | 21k | — | ~3.2k | Automated safety check: Pass | Apache-2.0 | today |
| 40 | Parses reports from the humble HTTP security header analyzer and explains each finding with remediation steps for DevOps teams. | rfc-st/ | 379 | — | ~3.7k | Automated safety check: Pass | MIT | today |
| 41 | Triage Apache Roller security reports, maintain private case tracking, prepare CVE records, coordinate fixes and reporter review, and prepare disclosure with a release. | apache/ | 133 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | today |
| 42 | 42.Cyberowlai Check if recent cybersecurity alerts from 10 international CERTs affect your current project. | karimhabush/ | 263 | — | ~2.5k | Automated safety check: Pass | MIT | today |
| 43 | Runs a fast security sweep of recent code changes before a commit or PR, checking for leaked secrets, vulnerable dependencies, unsafe input handling and auth gaps. | zereight/ | 2k | 1 repo | ~859 | Automated safety check: Notes | MIT | 2 days ago |
| 44 | File a Bugzilla bug for Firefox/Gecko work, or draft a bug summary and description. | SAP/ | 180 | 2 repos | ~828 | Automated safety check: Pass | GPL-3.0 | 2 days ago |
| 45 | Inspect, review or triage GitHub Code Scanning alerts, including CodeQL findings; apply verified dismissals when authorized. | netdata/ | 81k | — | ~1.8k | Automated safety check: Notes | GPL-3.0 | today |
| 46 | Checks each shell command for destructive patterns such as recursive deletes, force pushes and dropped tables, and asks before letting them run. | garrytan/ | 136k | — | ~931 | Automated safety check: Notes | MIT | today |
| 47 | Triage a security finding in a Symfony UX package into a disposition: a private CVE (coordinated disclosure through the Symfony security process), a public hardening PR (fix in the open, no CVE), or… | symfony/ | 1.1k | — | ~3.2k | Automated safety check: Pass | MIT | yesterday |
| 48 | 48.Chaitin CLI A skill your agent uses when running chaitin-cli commands to manage Chaitin security products: SafeLine WAF (site management, IP blocking, ACL, policy rules, attack logs), X-Ray vulnerability… | chaitin/ | 114 | — | ~15k | Automated safety check: Notes | GPL-3.0 | 9 days ago |