Search
Security · Threat modeling
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Hardens code against vulnerabilities. An agent skill from penpot/penpot. | penpot/ | 61k | 6 repos | ~4.7k | Automated safety check: Notes | MPL-2.0 | yesterday |
| 2 | 2.X Ray Generates an x-ray.md pre-audit report covering overview, enhanced threat model (protocol-type profiling, git-weighted attack surfaces, temporal risk analysis, composability dependency mapping)… | pashov/ | 1.2k | 1 repo | ~10k | Automated safety check: Pass | MIT | 6 days ago |
| 3 | Runs and configures the anomalib tiled-ensemble pipeline, which trains/evaluates one model per image tile and merges results (with optional seam smoothing) for high-resolution anomaly detection. | open-edge-platform/ | 6.2k | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 4 | Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics. | alexgreensh/ | 190 | — | ~2.5k | Automated safety check: Notes | Unknown | 14 days ago |
| 5 | Runs claude-flow CLI security scans for input validation, path traversal, SQL injection, XSS, hardcoded secrets and known CVEs, and writes an audit report. | ruvnet/ | 74k | 1 repo | ~823 | Automated safety check: Pass | MIT | today |
| 6 | Builds a cited research base on normal system behavior and adversary abuse patterns before a threat hunt hypothesis gets written. | OTRF/ | 4.7k | — | ~1.3k | Automated safety check: Pass | MIT | 9 mo ago |
| 7 | Run an ASSERT evaluation against a described risk. An agent skill from responsibleai/ASSERT. | responsibleai/ | 330 | — | ~11k | Automated safety check: Notes | MIT | 2 days ago |
| 8 | Author a Cartography security rule (one or more Cypher Facts plus a Pydantic Finding output model) under cartography/rules/data/rules/. | cartography-cncf/ | 4.1k | — | ~3k | Automated safety check: Pass | Apache-2.0 | today |
| 9 | Three-axis review of the branch diff — Standards (this repo's documented standards + public API/bridge surface), Spec (the originating Linear/GitHub issue or PR), and Correctness (runtime bugs + the… | getsentry/ | 1.8k | — | ~1.9k | Automated safety check: Pass | MIT | 2 days ago |
| 10 | Comprehensive OSINT methodology for external red-team operations and authorized attack-surface assessments. | elementalsouls/ | 2.8k | — | ~8.7k | Automated safety check: Notes | MIT | yesterday |
| 11 | Runs an evidence-first security audit of a codebase through gstack's trusted launcher, with static findings by default and isolated reproduction when enabled. | garrytan/ | 136k | — | ~4.5k | Automated safety check: Pass | MIT | today |
| 12 | Applies a threat-model-first approach to web code that handles untrusted input, authentication, data storage, dependencies or personal data. | addyosmani/ | 105k | 1 repo | ~4.4k | Automated safety check: Notes | MIT | yesterday |
| 13 | Translates a threat hunt's investigative intent into query-agnostic analytics that describe how adversary behavior should appear in data, grounded in table schemas. | OTRF/ | 4.7k | — | ~819 | Automated safety check: Pass | MIT | 9 mo ago |
| 14 | Writing to the Neo4j attack-surface graph in RedAmon: the tenant-isolation MERGE key every entity node must carry, where graph methods live (mixins, not the client), and the schema places that must… | samugit83/ | 3k | — | ~2.2k | Automated safety check: Pass | MIT | 2 days ago |
| 15 | Token-efficient smart contract security auditing via Behavioral State Analysis (BSA). | quillai-network/ | 130 | — | ~1.4k | Automated safety check: Pass | MIT | 6 mo ago |
| 16 | Three-axis review of the branch diff — Standards (this repo's documented standards + public API surface), Spec (the originating Linear issue / PR), and Correctness (runtime bugs + the SDK threat… | getsentry/ | 873 | — | ~1.3k | Automated safety check: Pass | MIT | 2 days ago |
| 17 | Scan code changes for security vulnerabilities using Bug Hunter-native artifacts and STRIDE context. | codexstar69/ | 520 | — | ~629 | Automated safety check: Pass | MIT | 1 mo ago |
| 18 | Ultimate AI-powered cybersecurity code review skill. An agent skill from AgriciDaniel/claude-cybersecurity. | AgriciDaniel/ | 228 | — | ~11k | Automated safety check: Warn | MIT | 5 mo ago |
| 19 | 19.Security Use before shipping to production. An agent skill from garagon/nanostack. | garagon/ | 207 | — | ~3.7k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 20 | Audit source code for exploitable vulnerabilities using threat-model-driven review, taint tracing, invariant checking, and variant analysis. | trilwu/ | 157 | — | ~3.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 21 | A skill your agent uses when preparing for a security audit, performing reconnaissance on a new codebase, or creating a protocol overview. | ccashwell/ | 131 | — | ~25k | Automated safety check: Pass | MIT | 11 days ago |
| 22 | Builds attack trees that map how an attacker could reach a goal, with AND and OR nodes and cost, time, skill and detection ratings, to find defense gaps. | wshobson/ | 40k | 8 repos | ~623 | Automated safety check: Pass | MIT | 6 days ago |
| 23 | Match identified threats to preventive, detective and corrective controls across network, application, data, endpoint and process layers to plan remediation. | wshobson/ | 40k | 8 repos | ~742 | Automated safety check: Pass | MIT | 6 days ago |
| 24 | Audit browser-engine changes that process untrusted content or cross native-memory, origin, network, storage, extension, decoder, sandbox, or operating-system boundaries. | nordstjernen-web/ | 128 | — | ~920 | Automated safety check: Pass | GPL-3.0 | today |
| 25 | Finds security threats in a design with a STRIDE pass per component, rates severity and records fixes, with extra checks for AI agent and tool risks. | dralgorhythm/ | 125 | — | ~581 | Automated safety check: Pass | No licence | 2 mo ago |
| 26 | Advanced vulnerability analysis principles. An agent skill from xenitV1/Antigravity-Workflows. | xenitV1/ | 130 | 7 repos | ~1.8k | Automated safety check: Notes | MIT | 8 mo ago |
| 27 | A skill your agent uses when stitching kernels into a multi-launch ELF and the AIE compiler rejects the merged module (BD exhaustion, channel routing, herd shape conflict, IR validation error, DMA… | Xilinx/ | 150 | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 28 | Apply STRIDE methodology to systematically identify threats. | sangrokjung/ | 852 | 9 repos | ~5.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 29 | Runs a parallel security audit with three vulnerability hunters and two proof-of-concept engineers, rating each finding by whether it is actually exploitable. | code-yeongyu/ | 70k | — | ~1.9k | Automated safety check: Pass | Unknown | today |
| 30 | 30.Hunter Deep behavioral code analysis agent for Bug Hunter. An agent skill from codexstar69/bug-hunter. | codexstar69/ | 520 | — | ~2.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 31 | Analyse Mitre ATT&CK tactics, techniques and sub-techniques. | tsale/ | 323 | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | 5 mo ago |
| 32 | Security audit skill. An agent skill from blueberrycongee/termcanvas. | blueberrycongee/ | 405 | — | ~966 | Automated safety check: Notes | MIT | 4 mo ago |
| 33 | 33.Cso Chief Security Officer mode. An agent skill from no-session/pstack. | no-session/ | 136 | — | ~12k | Automated safety check: Notes | MIT | 6 mo ago |
| 34 | Comprehensive security engineering skill for application security, penetration testing, security architecture, and compliance auditing. | davila7/ | 33k | 2 repos | ~1.1k | Automated safety check: Notes | MIT | today |
| 35 | 35.Vuln Hunter Hunt for vulnerabilities in a running debuggee by analyzing imports/exports, triaging attack surface, and iteratively testing for bugs with PoC generation. | dariushoule/ | 209 | — | ~3.9k | Automated safety check: Notes | MIT | 7 mo ago |
| 36 | Detect business logic vulnerabilities in a codebase using a three-phase approach: threat modeling (domain analysis and attack scenarios), batched verify (check exploitable gaps in parallel… | utkusen/ | 1.3k | — | ~5.3k | Automated safety check: Pass | MIT | 6 mo ago |
| 37 | 37.History Mine repository history for security fixes that were never published as advisories, producing a cached worklist for threat-model and advisory-deep-dive. | alpha-omega-security/ | 245 | — | ~2.9k | Automated safety check: Notes | MIT | today |
| 38 | Analyzes Solidity contract entry points to map attack surface. | alt-research2/ | 104 | — | ~959 | Automated safety check: Pass | Unknown | 4 mo ago |
| 39 | 39.Threat Model MCP threat-model artifact for a scaffolded harness. An agent skill from ruvnet/metaharness. | ruvnet/ | 696 | — | ~637 | Automated safety check: Notes | MIT | yesterday |
| 40 | Builds a code graph of functions, classes and calls across languages, then queries it for call paths, taint, blast radius, entry points and complexity hotspots. | trailofbits/ | 7.5k | — | ~4.3k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 41 | Expert in threat modeling methodologies, security architecture review, and risk assessment. | davila7/ | 33k | 8 repos | ~529 | Automated safety check: Pass | MIT | today |
| 42 | 42.Fabric Intelligent pattern selection for Fabric CLI. An agent skill from ynulihao/AgentSkillOS. | ynulihao/ | 618 | 1 repo | ~3.4k | Automated safety check: Pass | No licence | 7 mo ago |
| 43 | Run a focused STRIDE-based security review using Bug Hunter-native artifacts. | codexstar69/ | 520 | — | ~567 | Automated safety check: Pass | MIT | 1 mo ago |
| 44 | Analyze code changes for security vulnerabilities using LLM reasoning and threat model patterns. | Factory-AI/ | 111 | — | ~2.3k | Automated safety check: Pass | No licence | today |
| 45 | Repository-grounded threat modeling that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and mitigations, and writes a concise Markdown threat model. | trailofbits/ | 513 | 9 repos | ~1.4k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 mo ago |
| 46 | Classify game-cheat capabilities and their defensive implications across memory, injection, rendering, input, engines, kernels, DMA, and remote transports. | gmh5225/ | 3.6k | — | ~356 | Automated safety check: Pass | MIT | today |
| 47 | 47.Web2 Recon Web2 recon pipeline — subdomain enumeration (subfinder, Chaos API, assetfinder), live host discovery (dnsx, httpx), URL crawling (katana, waybackurls, gau), directory fuzzing (ffuf), JS analysis… | awarexone/ | 5.3k | 2 repos | ~6.4k | Automated safety check: Warn | MIT | yesterday |
| 48 | Runs full Trailmark structural analysis by building a graph, running preanalysis(), and reporting hotspots, taint, blast radius, privilege boundaries, attack surface, and version-gated Trailmark… | trailofbits/ | 7.5k | — | ~1.5k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |