Search
Security · Cryptography
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Security code review for vulnerabilities. An agent skill from getsentry/skills. | getsentry/ | 1k | 4 repos | ~2.9k | Automated safety check: Notes | CC-BY-SA-4.0 | 7 days ago |
| 2 | Migrate a .NET 9 project or solution to .NET 10 and resolve all breaking changes. | dotnet/ | 5.6k | 2 repos | ~4.8k | Automated safety check: Pass | MIT | yesterday |
| 3 | Shows how to call NEAR AI Cloud through an OpenAI-compatible API and verify that inference ran in a TEE, using attestation checks and signed chat responses. | internet-court/ | 6.5k | 1 repo | ~1.3k | Automated safety check: Pass | Unknown | 1 mo ago |
| 4 | End-to-end Stellar development playbook. An agent skill from VelaPayments/vela-payments. | VelaPayments/ | 131 | — | ~1.8k | Automated safety check: Pass | MIT | 3 days ago |
| 5 | Add an EAP authentication method (e.g. An agent skill from talkincode/toughradius. | talkincode/ | 691 | — | ~802 | Automated safety check: Pass | MIT | yesterday |
| 6 | Reviews APIs, configuration schemas and library interfaces for footguns, the designs where the easy path leads to insecure use, using a four-phase analysis. | trailofbits/ | 7.4k | 3 repos | ~3k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 7 | Explores and triages a CycloneDX BOM interactively with the cdxi REPL, using built-in commands for dependency trees, licenses, services, cryptographic assets, audit findings, evidence occurrences… | cdxgen/ | 1.1k | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 8 | Finds sensitive data that C, C++ or Rust code never wipes from memory, including wipes the compiler optimizes away, using source, assembly and control-flow analysis. | trailofbits/ | 7.4k | 4 repos | ~5.9k | Automated safety check: Notes | CC-BY-SA-4.0 | 2 days ago |
| 9 | Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills. | ljagiello/ | 3.4k | — | ~11k | Automated safety check: Notes | MIT | 26 days ago |
| 10 | 10.Adcs Attacks Active Directory Certificate Services (AD CS) escalation techniques ESC1 through ESC17, driven by hand with Certipy (ly4k). | ADScanPro/ | 211 | — | ~3.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 11 | Security guidelines for writing secure code. An agent skill from semgrep/skills. | semgrep/ | 322 | — | ~1.2k | Automated safety check: Pass | Unknown | 2 mo ago |
| 12 | Builds and debugs Arcium encrypted computation apps on Solana: Arcis circuits, Anchor orchestration, encrypted inputs and the init, queue and callback flow. | sendaifun/ | 130 | — | ~2.8k | Automated safety check: Pass | MIT | 2 mo ago |
| 13 | 13.Crypto Audit Audit cryptography implementation — algorithm choice, key sizes, KDF parameters, IV/nonce handling, signature verification, randomness, TLS configuration, and key rotation. | briiirussell/ | 413 | — | ~2.8k | Automated safety check: Notes | MIT | 4 mo ago |
| 14 | 14.Webcrypt MCP Teaches the agent to use the WebCrypt MCP server for AES-256-GCM symmetric encryption, RSA-4096 hybrid encryption, key generation, digital signatures, hashing, and post-quantum cryptography. | putervision/ | 114 | — | ~847 | Automated safety check: Pass | MIT | 6 days ago |
| 15 | A skill your agent uses when assessing cryptography — TLS/PKI auditing, RSA/ECC key attacks, ECDSA nonce lattice recovery, symmetric/AEAD misuse, JWT/JOSE forgery, hash cracking, post-quantum… | hypnguyen1209/ | 388 | — | ~2.2k | Automated safety check: Pass | MIT | 12 days ago |
| 16 | Paid API marketplace for AI agents via Corbits. An agent skill from moonpay/skills. | moonpay/ | 113 | — | ~1.5k | Automated safety check: Pass | MIT | 29 days ago |
| 17 | Security review of an open-autonomy agent service — cryptographic key handling, dynamic code execution, ABCI authentication and replay, secret exposure, dependency supply chain, and deployment… | valory-xyz/ | 129 | — | ~11k | Automated safety check: Notes | Apache-2.0 | 25 days ago |
| 18 | Guides authorized password-hash recovery with hashcat for security audits, forensic cases and policy testing, starting with an explicit authorization check before any cracking runs. | AgentSecOps/ | 220 | 1 repo | ~3.3k | Automated safety check: Notes | Unknown | 5 mo ago |
| 19 | 19.Crypto Bom Generates a CycloneDX Cryptographic Bill of Materials (CBOM) with the cdxgen cbom command, inventorying cryptographic algorithms, certificates, keys, and protocol usage from source code and hosts… | cdxgen/ | 1.1k | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 20 | Comprehensive security engineering skill for application security, penetration testing, security architecture, and compliance auditing. | davila7/ | 32k | 2 repos | ~1.1k | Automated safety check: Notes | MIT | yesterday |
| 21 | A skill your agent uses when the user asks to log in or out with a wallet session, fetch a wallet sign-in challenge, verify an externally signed challenge, or troubleshoot AltLLM Portal wallet login… | internet-court/ | 6.5k | 1 repo | ~632 | Automated safety check: Pass | ISC | 1 mo ago |
| 22 | A skill your agent uses when the user asks to create a NOWPayments crypto payment link, poll payment status, or execute a supported direct wallet payment through the AltLLM Portal CLI. | internet-court/ | 6.5k | 1 repo | ~563 | Automated safety check: Pass | ISC | 1 mo ago |
| 23 | Compiles cryptographic code and inspects the assembly or bytecode for variable-time instructions, then triages which flagged operations actually touch secrets. | trailofbits/ | 7.4k | — | ~3.3k | Automated safety check: Notes | CC-BY-SA-4.0 | 2 days ago |
| 24 | Turns a cryptographic protocol's source code, RFC, paper or ProVerif or Tamarin model into a Mermaid sequence diagram annotated with each cryptographic operation. | trailofbits/ | 7.4k | — | ~4.6k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 25 | Converts a Mermaid sequence diagram of a cryptographic protocol into a ProVerif model file ready for checking secrecy, authentication and forward secrecy. | trailofbits/ | 7.4k | — | ~4.5k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 26 | Uses mutation testing on cryptographic implementations to find coverage gaps, then writes new test vectors for the uncovered paths and compares kill rates to show they help. | trailofbits/ | 7.4k | — | ~4.8k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 27 | Manage cryptographic keys using Azure Key Vault Keys SDK for JavaScript (@azure/keyvault-keys). | microsoft/ | 3.1k | 5 repos | ~1.7k | Automated safety check: Pass | MIT | today |
| 28 | Azure Key Vault Keys Java SDK for cryptographic key management. | microsoft/ | 3.1k | 5 repos | ~2.9k | Automated safety check: Pass | MIT | today |
| 29 | A skill your agent uses when reviewing code for security vulnerabilities, hardening an application, or deriving security requirements from OWASP/ASVS guidance. | jellydn/ | 123 | — | ~2.9k | Automated safety check: Notes | MIT | today |
| 30 | Validates cryptographic implementations against Project Wycheproof's test vectors, which encode known attacks and edge cases across AES, RSA, ECDSA, ECDH, and more. | trailofbits/ | 7.4k | — | ~4.9k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 31 | Azure Key Vault Keys SDK for .NET. An agent skill from microsoft/skills. | microsoft/ | 3.1k | 5 repos | ~3.1k | Automated safety check: Pass | MIT | today |
| 32 | 32.Bagman Secure key management for AI agents. An agent skill from profbernardoj/everclaw-community-branches. | profbernardoj/ | 112 | — | ~4.4k | Automated safety check: Warn | MIT | 1 mo ago |
| 33 | Static security review for Flutter mobile apps and Dart code: hardcoded secrets, insecure storage, unsafe network calls, leaky logs, vulnerable dependencies. | VeryGoodOpenSource/ | 170 | — | ~4.4k | Automated safety check: Notes | MIT | 3 days ago |
| 34 | Agent skill for security-manager - invoke with $agent-security-manager | ruvnet/ | 74k | 2 repos | ~4.9k | Automated safety check: Pass | MIT | today |
| 35 | Measures timing side channels in cryptographic implementations by running them, using dudect for statistical analysis and Timecop over Valgrind for dynamic tracing. | trailofbits/ | 7.4k | — | ~5.2k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 36 | Cryptography expert for TLS, symmetric/asymmetric encryption, hashing, and key management | RightNow-AI/ | 18k | — | ~959 | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 37 | Security-focused code review mapped to OWASP Top 10 and ASVS. | OWASP/ | 187 | — | ~549 | Automated safety check: Pass | CC-BY-4.0 | 14 days ago |
| 38 | Analyze cryptographic code to detect operations that leak secret data through execution timing variations. | sickn33/ | 47k | 2 repos | ~2.4k | Automated safety check: Pass | MIT | today |
| 39 | AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching… | github/ | 40k | 1 repo | ~2.3k | Automated safety check: Notes | MIT | today |
| 40 | Security best practices and vulnerability prevention for Golang — injection (SQL, command, XSS), cryptography, path traversal, SSRF and HTTP security headers, cookies, secrets management, memory… | unxed/ | 241 | 2 repos | ~3.6k | Automated safety check: Pass | MIT | today |
| 41 | Build a two-tier PKI Certificate Authority hierarchy (offline Root CA plus issuing Intermediate CA) using OpenSSL and the Python cryptography library, covering certificate extensions, CRL… | mukul975/ | 34k | — | ~879 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 42 | Configures Hardware Security Modules for cryptographic key storage using the PKCS11 standard interface, covering key generation, signing, encryption, and key management on physical HSMs and SoftHSM2… | mukul975/ | 34k | — | ~984 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 43 | Guides implementing AES-256 encryption in GCM mode (FIPS 197) for files and data stores at rest, covering key derivation, IV/nonce management, and authenticated encryption. | mukul975/ | 34k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 44 | Performs automated static analysis of Android applications using Mobile Security Framework (MobSF) to identify hardcoded secrets, insecure permissions, vulnerable components, weak cryptography, and… | mukul975/ | 34k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 45 | Help users own an ERC-4337 smart account whose ECDSA key never lives in the application process — sign UserOperations with AWS KMS, Azure Key Vault, an HSM, a Ledger, or a Trezor instead of an… | Nethereum/ | 2.3k | — | ~2.3k | Automated safety check: Pass | MIT | 4 days ago |
| 46 | Manage Ethereum keys, accounts, and keystores with Nethereum. | Nethereum/ | 2.3k | — | ~1.2k | Automated safety check: Pass | MIT | 4 days ago |
| 47 | Help users verify Groth16 zero-knowledge proofs from Circom/snarkjs circuits using Nethereum.ZkProofsVerifier (.NET). | Nethereum/ | 2.3k | — | ~853 | Automated safety check: Pass | MIT | 4 days ago |
| 48 | Produces a dynamic CycloneDX BOM by executing a command under the cdxgen safer-exec sandbox with tracebom, tracing dlopen shared-library loads, eBPF HTTP URL access, cryptographic library and… | cdxgen/ | 1.1k | — | ~2k | Automated safety check: Pass | Apache-2.0 | yesterday |