Search
Secrets management
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 145 | Security hardening and best practices for robotic systems, covering SROS2 DDS security, network segmentation, secrets management, secure boot, and the physical-cyber safety intersection. | arpitg1304/ | 369 | — | ~7.8k | Automated safety check: Warn | Apache-2.0 | 2 mo ago |
| 146 | 146.Sast Bandit Python security vulnerability detection using Bandit SAST with CWE and OWASP mapping. | AgentSecOps/ | 220 | 1 repo | ~2.6k | Automated safety check: Pass | Unknown | 5 mo ago |
| 147 | 147.Varlock Secure-by-default environment variable management for Claude Code sessions. | sickn33/ | 47k | 2 repos | ~2.6k | Automated safety check: Notes | MIT | 2 days ago |
| 148 | 148.Mcloud Variables Execute mcloud variables commands to list, get, set, and delete environment variables for a Cloud environment. | medusajs/ | 228 | — | ~1.7k | Automated safety check: Notes | No licence | 6 days ago |
| 149 | AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching… | github/ | 40k | 1 repo | ~2.3k | Automated safety check: Notes | MIT | 2 days ago |
| 150 | 150.Golang Security Security best practices and vulnerability prevention for Golang — injection (SQL, command, XSS), cryptography, path traversal, SSRF and HTTP security headers, cookies, secrets management, memory… | unxed/ | 243 | 2 repos | ~3.6k | Automated safety check: Pass | MIT | yesterday |
| 151 | Deploy cloud-native deception across AWS, Azure, and GCP using decoy (honey) resources whose only purpose is to generate a high-fidelity alert the instant an attacker touches them: canary IAM access… | mukul975/ | 34k | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 152 | Configures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot alerts) to perform automated static analysis and vulnerability detection across… | mukul975/ | 34k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 153 | 153.Security Audit RLS validation, security audits, OWASP compliance, and vulnerability scanning. | bybren-llc/ | 423 | — | ~1.4k | Automated safety check: Pass | MIT | 2 mo ago |
| 154 | 154.Secret Scanner Detect exposed secrets, API keys, credentials, and tokens in code. | alirezarezvani/ | 777 | — | ~1.4k | Automated safety check: Warn | MIT | 3 mo ago |
| 155 | Audit a pull request diff for common security concerns (input validation, sanitization, authentication and authorization, secrets management, unsafe dependencies, and related risks) and fold… | warpdotdev/ | 312 | 1 repo | ~2k | Automated safety check: Notes | MIT | 24 days ago |
| 156 | Guides Microsoft Entra ID app registration, OAuth 2.0 authentication, and MSAL integration. | microsoft/ | 255 | 2 repos | ~2.1k | Automated safety check: Pass | MIT | yesterday |
| 157 | 157.Secrets Request user-supplied credentials securely into a dotenv file without exposing their values to the agent. | get-bb/ | 4.2k | — | ~427 | Automated safety check: Notes | MIT | yesterday |
| 158 | 158.Penguin Config Manage model API keys, default models and per-agent vault secrets with the penguin CLI. | Prism-Shadow/ | 2.5k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 159 | Detect compromised cloud credentials across AWS, Azure, and GCP by analyzing anomalous API activity, impossible-travel patterns, and credential-stuffing indicators using GuardDuty, Microsoft… | mukul975/ | 34k | — | ~3.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 160 | Enable Microsoft Defender for Cloud (CSPM + CWPP) across VMs, containers, SQL, storage, and Key Vault, using Azure Policy for evaluation, Log Analytics for telemetry, Azure Arc for hybrid coverage… | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 161 | Integrates SAST, DAST, and SCA into CI/CD pipelines using Semgrep for SAST, Trivy for SCA and container scanning, OWASP ZAP for DAST, and Gitleaks for secrets detection. | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 162 | Configures HashiCorp Vault dynamic secrets engines for database credentials, AWS IAM keys, and PKI certificates, with automatic generation, lease management, and rotation to eliminate static secrets… | mukul975/ | 34k | — | ~5.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 163 | Deploy HashiCorp Vault for centralized secrets management, covering dynamic secret generation for databases and cloud providers, transit encryption, PKI certificate management, and Kubernetes… | mukul975/ | 34k | — | ~3.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 164 | Hardens serverless compute platforms (AWS Lambda, Azure Functions, Google Cloud Functions): least-privilege IAM roles, dependency vulnerability scanning, secrets management integration, input… | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 165 | Python configuration management via environment variables and typed settings. | wshobson/ | 40k | — | ~1.6k | Automated safety check: Notes | MIT | 6 days ago |
| 166 | Manage environment-variable hygiene and secrets safety across local development and production. | alirezarezvani/ | 28k | — | ~2.7k | Automated safety check: Notes | MIT | 1 mo ago |
| 167 | 167.Managing Secrets Managing secrets (API keys, database credentials, certificates) with Vault, cloud providers, and Kubernetes. | ancoleman/ | 525 | — | ~2.9k | Automated safety check: Pass | MIT | 10 mo ago |
| 168 | 168.Config Configuration and environment variable conventions for the Playwright scaffold — env file layout (env/.env.), dotenv loading via playwright.config.ts and the ENVIRONMENT variable, config objects in… | idavidov13/ | 225 | — | ~2.8k | Automated safety check: Notes | MIT | 3 days ago |
| 169 | Manages Medusa Cloud resources through the Cloud CLI (mcloud). | medusajs/ | 228 | — | ~1.1k | Automated safety check: Pass | No licence | 6 days ago |
| 170 | This skill provides guidance for implementing security features that span across Better Auth, including rate limiting, CSRF protection, session security, trusted origins, secret management, OAuth… | viclafouch/ | 110 | — | ~4.2k | Automated safety check: Pass | No licence | 6 mo ago |
| 171 | Vercel environment variable expert guidance. An agent skill from vercel/vercel-plugin. | vercel/ | 301 | — | ~3k | Automated safety check: Notes | Unknown | yesterday |
| 172 | Establish a security baseline for a website or web app. An agent skill from rampstackco/claude-skills. | rampstackco/ | 945 | — | ~3k | Automated safety check: Pass | MIT | 4 days ago |
| 173 | Guide for using MSBuild Server to improve CLI build performance. | microsoft/ | 1k | — | ~678 | Automated safety check: Pass | MIT | yesterday |
| 174 | 174.Env Var Auditor List the environment variables a codebase reads and flag ones missing from the example env file. | zhuyansen/ | 413 | — | ~194 | Automated safety check: Pass | MIT | yesterday |
| 175 | 175.Conductor Working with Conductor (conductor.build), the parallel-agent app. | freekmurze/ | 1k | — | ~3.1k | Automated safety check: Notes | No licence | 3 days ago |
| 176 | This skill covers implementing Gitleaks for detecting and preventing hardcoded secrets in git repositories. | mukul975/ | 34k | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 177 | 177.Security Nextjs Review Next.js security audit patterns for App Router and Server Actions. | IgorWarzocha/ | 122 | — | ~1.5k | Automated safety check: Notes | No licence | 8 mo ago |
| 178 | 178.Quarkus Security Quarkus Security best practices for authentication, authorization, JWT/OIDC, RBAC, input validation, CSRF, secrets management, and dependency security. | affaan-m/ | 276k | — | ~3.1k | Automated safety check: Pass | MIT | yesterday |
| 179 | 179.Patentfig Generate patent-office-compliant figures via the PatentFig AI API — patent line art from text (PNG or SVG), vectorize drawings to SVG/DXF/vector PDF, AI-upscale images, and convert to filing-ready… | davila7/ | 33k | — | ~1.2k | Automated safety check: Pass | MIT | yesterday |
| 180 | 180.Stage Launch Phase 2 of building a Claude Managed Agent — turn a validated build sheet into exact API payloads and a resumable BYOK curl launch script, then launch (environment → agent → session → kickoff) using… | alirezarezvani/ | 28k | — | ~964 | Automated safety check: Pass | MIT | 1 mo ago |
| 181 | 181.Azure A skill your agent uses when writing Python code that integrates with Azure Blob Storage, AI Search, Document Intelligence, or Key Vault — or when configuring Managed Identity auth, designing a… | kid-sid/ | 190 | — | ~3.7k | Automated safety check: Notes | MIT | 2 mo ago |
| 182 | Run Azure compliance and security audits with azqr plus Key Vault expiration checks. | microsoft/ | 255 | 2 repos | ~997 | Automated safety check: Pass | MIT | yesterday |
| 183 | A skill your agent uses when handling API keys, passwords, tokens, private keys, or any sensitive credential. | aiming-lab/ | 3.5k | — | ~246 | Automated safety check: Notes | MIT | 4 mo ago |
| 184 | Integrate gitleaks and trufflehog into CI/CD pipelines to detect leaked secrets before deployment | mukul975/ | 34k | — | ~956 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 185 | Runs Trivy across every target type it supports - container images, filesystems, Git repositories, and Kubernetes clusters - for OS and dependency vulnerabilities, IaC misconfiguration, exposed… | mukul975/ | 34k | — | ~818 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 186 | 186.Leaked Secrets A skill your agent uses when reviewing client-side JavaScript, HTML source, or git history for exposed credentials, API keys, or tokens. | thedaviddias/ | 74k | — | ~596 | Automated safety check: Notes | MIT | 5 days ago |
| 187 | Analyze JS bundles and source maps for hardcoded secrets, API keys, JWTs, and internal endpoints | uphiago/ | 1.3k | — | ~2.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 188 | Automatically discover security skills when working with authentication, authorization, input validation, security headers, vulnerability assessment, or secrets management. | rand/ | 181 | — | ~1.9k | Automated safety check: Pass | MIT | 7 mo ago |
| 189 | Audit MCP (Model Context Protocol) server configurations for security issues. | github/ | 40k | — | ~3.1k | Automated safety check: Pass | MIT | 2 days ago |
| 190 | Deploy to production — CI/CD pipelines, environment config, deployment strategies. | ww-w-ai/ | 601 | — | ~2.7k | Automated safety check: Notes | Apache-2.0 | 14 days ago |
| 191 | 191.Azure Usage This skill should be used when user asks to "query Azure resources", "list storage accounts", "manage Key Vault secrets", "work with Cosmos DB", "check AKS clusters", "use Azure MCP", or interact… | fcakyon/ | 1.2k | — | ~461 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 192 | 192.Secrets Audit Find leaked secrets in source code, Git history, build artifacts, and infrastructure — and audit the secrets-management posture preventing future leaks. | briiirussell/ | 413 | — | ~2.6k | Automated safety check: Notes | MIT | 4 mo ago |