Search
By AgentSecOps
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Static application security testing (SAST) using Semgrep for vulnerability detection, security code review, and secure coding guidance with OWASP and CWE framework mapping. | AgentSecOps/ | 219 | 2 repos | ~2.4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 2 | Hardcoded secret detection and prevention in git repositories and codebases using Gitleaks. | AgentSecOps/ | 219 | 2 repos | ~4.1k | Automated safety check: Pass | Unknown | 5 mo ago |
| 3 | Aggregates scanner results into DefectDojo, deduplicates findings, tracks remediation SLAs and prepares compliance reports across products and pipelines. | AgentSecOps/ | 219 | — | ~2.3k | Automated safety check: Pass | Unknown | 5 mo ago |
| 4 | Guides authorized packet capture and analysis with TShark, Wireshark's command-line tool, for security investigations, malware detection and forensic examination of network traffic. | AgentSecOps/ | 219 | 1 repo | ~4.8k | Automated safety check: Notes | Unknown | 5 mo ago |
| 5 | Scans container images, filesystems and SBOMs with Grype for known vulnerabilities, ranks them by CVSS, EPSS and CISA KEV, and wires scans into CI/CD thresholds. | AgentSecOps/ | 219 | 1 repo | ~2.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 6 | Lints Dockerfiles with Hadolint for security misconfigurations and best-practice violations, locally and in CI, with strict, balanced and permissive rule templates. | AgentSecOps/ | 219 | 1 repo | ~4.4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 7 | Guides authorized password-hash recovery with hashcat for security audits, forensic cases and policy testing, starting with an explicit authorization check before any cracking runs. | AgentSecOps/ | 219 | 1 repo | ~3.3k | Automated safety check: Notes | Unknown | 5 mo ago |
| 8 | Runs ffuf for DAST work: directory and file discovery, GET and POST parameter fuzzing, virtual host enumeration and filtered, recursive scans. | AgentSecOps/ | 219 | 1 repo | ~3.3k | Automated safety check: Pass | Unknown | 5 mo ago |
| 9 | Fast, template-based vulnerability scanning using ProjectDiscovery's Nuclei with extensive community templates covering CVEs, OWASP Top 10, misconfigurations, and security issues across web… | AgentSecOps/ | 219 | 1 repo | ~4.1k | Automated safety check: Notes | Unknown | 5 mo ago |
| 10 | 10.Dast Zap Dynamic application security testing (DAST) using OWASP ZAP (Zed Attack Proxy) with passive and active scanning, API testing, and OWASP Top 10 vulnerability detection. | AgentSecOps/ | 219 | 1 repo | ~3.7k | Automated safety check: Pass | Unknown | 5 mo ago |
| 11 | 11.Pytm Python-based threat modeling using pytm library for programmatic STRIDE analysis, data flow diagram generation, and automated security threat identification. | AgentSecOps/ | 219 | 2 repos | ~4.4k | Automated safety check: Notes | Unknown | 5 mo ago |
| 12 | 12.Sca Trivy Software Composition Analysis (SCA) and container vulnerability scanning using Aqua Trivy for identifying CVE vulnerabilities in dependencies, container images, IaC misconfigurations, and license… | AgentSecOps/ | 219 | 2 repos | ~3.7k | Automated safety check: Pass | Unknown | 5 mo ago |
| 13 | Generic detection rule creation and management using Sigma, the universal SIEM rule format. | AgentSecOps/ | 219 | 1 repo | ~4k | Automated safety check: Pass | Unknown | 5 mo ago |
| 14 | SQL-powered forensic investigation and system interrogation using osquery to query operating systems as relational databases. | AgentSecOps/ | 219 | 1 repo | ~4.9k | Automated safety check: Notes | Unknown | 5 mo ago |
| 15 | 15.Iac Checkov Infrastructure as Code (IaC) security scanning using Checkov with 750+ built-in policies for Terraform, CloudFormation, Kubernetes, Dockerfile, and ARM templates. | AgentSecOps/ | 219 | 1 repo | ~4.6k | Automated safety check: Pass | Unknown | 5 mo ago |
| 16 | Endpoint visibility, digital forensics, and incident response using Velociraptor Query Language (VQL) for evidence collection and threat hunting at scale. | AgentSecOps/ | 219 | 1 repo | ~3.1k | Automated safety check: Pass | Unknown | 5 mo ago |
| 17 | 17.Policy Opa Policy-as-code enforcement and compliance validation using Open Policy Agent (OPA). | AgentSecOps/ | 219 | 1 repo | ~3.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 18 | 18.Recon Nmap Network reconnaissance and security auditing using Nmap for port scanning, service enumeration, and vulnerability detection. | AgentSecOps/ | 219 | 1 repo | ~4.6k | Automated safety check: Notes | Unknown | 5 mo ago |
| 19 | 19.Reviewdog Automated code review and security linting integration for CI/CD pipelines using reviewdog. | AgentSecOps/ | 219 | 1 repo | ~3k | Automated safety check: Pass | Unknown | 5 mo ago |
| 20 | 20.Sast Bandit Python security vulnerability detection using Bandit SAST with CWE and OWASP mapping. | AgentSecOps/ | 219 | 1 repo | ~2.6k | Automated safety check: Pass | Unknown | 5 mo ago |
| 21 | 21.Sbom Syft Software Bill of Materials (SBOM) generation using Syft for container images, filesystems, and archives. | AgentSecOps/ | 219 | 1 repo | ~3.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 22 | 22.Webapp Nikto Web server vulnerability scanner for identifying security issues, misconfigurations, and outdated software versions. | AgentSecOps/ | 219 | 1 repo | ~2.8k | Automated safety check: Pass | Unknown | 5 mo ago |
| 23 | Automated SQL injection detection and exploitation tool for web application security testing. | AgentSecOps/ | 219 | 1 repo | ~3.2k | Automated safety check: Pass | Unknown | 5 mo ago |
| 24 | 24.API Spectral API specification linting and security validation using Stoplight's Spectral with support for OpenAPI, AsyncAPI, and Arazzo specifications. | AgentSecOps/ | 219 | 1 repo | ~5.6k | Automated safety check: Pass | Unknown | 5 mo ago |