Search
GitHub · Vulnerability scanning
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Run a full Python codebase security audit using PySpector (https://github.com/ParzivalHack/PySpector), a Rust-core SAST scanner. | ParzivalHack/ | 151 | — | ~3.5k | Automated safety check: Notes | Apache-2.0 | 3 days ago |
| 2 | Resolve a pnpm audit (dependency-audit CI job) failure — high/critical CVEs in the dependency tree. | openplayerjs/ | 649 | — | ~1k | Automated safety check: Pass | MIT | 5 days ago |
| 3 | Automatically fetch and fix Dependabot security alerts by querying GitHub REST API for open alerts, identifying vulnerable packages, researching secure versions, and updating package.json files… | livesession/ | 114 | — | ~2k | Automated safety check: Pass | MIT | 2 days ago |
| 4 | A skill your agent uses when the dependency audit goes red — .github/scripts/check/dependencyaudit.sh or the bundler-audit CI job — or when a newly published CVE/GHSA on a dependency gem blocks a PR. | DataDog/ | 417 | — | ~2.6k | Automated safety check: Pass | Unknown | today |
| 5 | Handle a security fix end to end for MidnightBSD src - triage a FreeBSD security advisory (FreeBSD-SA-) or CVE against this tree, port the fix to master and both stable branches, add the UPDATING… | MidnightBSD/ | 114 | — | ~2.2k | Automated safety check: Pass | Unknown | yesterday |
| 6 | Analyze potential Ankaios security vulnerabilities from pasted reports, local evidence, or advisory URLs. | eclipse-ankaios/ | 125 | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 7 | 7.Docs Update project documentation when features are added or changed. | boostsecurityio/ | 523 | — | ~336 | Automated safety check: Pass | Apache-2.0 | today |
| 8 | Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images. | warpdotdev/ | 65k | 1 repo | ~2.1k | Automated safety check: Pass | AGPL-3.0 | today |
| 9 | Triage a CVE / Dependabot alert in a JS/TS project and recommend the least-invasive fix. | getlago/ | 163 | — | ~2.9k | Automated safety check: Pass | MIT | today |
| 10 | Fix a PR that is failing due to security or vulnerability issues — npm/pnpm/yarn/bun audit failures, CVE alerts, Dependabot merge conflicts, Snyk failures, or GitHub security advisory blocks. | unional/ | 133 | — | ~1.4k | Automated safety check: Warn | MIT | 2 days ago |
| 11 | Handle confidential GitHub Security Advisory response for Paperclip. | paperclipai/ | 99k | — | ~2k | Automated safety check: Pass | MIT | today |
| 12 | Create batched Dependabot-style pull requests for GitHub security findings in axelixlabs/axelix, grouped by dependency surface such as master/front-end, master/build.gradle.kts, or starter Gradle… | axelixlabs/ | 148 | — | ~4.2k | Automated safety check: Pass | LGPL-3.0 | today |
| 13 | 13.Snapshot Run snapshot regression tests after changes to OPA rules, scanners, analyzers, or formatters to detect output regressions. | boostsecurityio/ | 523 | — | ~214 | Automated safety check: Pass | Apache-2.0 | today |
| 14 | Update the embedded build platform vulnerability database from the CVE Project's cvelistV5 repository. | boostsecurityio/ | 523 | — | ~173 | Automated safety check: Pass | Apache-2.0 | today |
| 15 | 15.Pii Guard Personally identifiable information (PII) leak prevention for EverClaw. | profbernardoj/ | 112 | — | ~921 | Automated safety check: Pass | MIT | 1 mo ago |
| 16 | 16.Recon Osint A skill your agent uses when mapping a target's external attack surface or gathering OSINT — subdomain enumeration, attack-surface mapping (httpx/katana/JS secrets), subdomain takeover… | hypnguyen1209/ | 388 | — | ~2.2k | Automated safety check: Pass | MIT | 12 days ago |
| 17 | 17.Analyze Cve Full Go CVE analysis workflow. An agent skill from openshift-eng/ai-helpers. | openshift-eng/ | 120 | — | ~2k | Automated safety check: Notes | Apache-2.0 | 3 days ago |
| 18 | This skill covers implementing Software Composition Analysis (SCA) using Snyk to detect vulnerable open-source dependencies in CI/CD pipelines. | mukul975/ | 34k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 19 | Detect package managers and CI action pins, then discover outdated or vulnerable dependencies. | tobihagemann/ | 408 | — | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 20 | Hunting skill for auth bypass vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~8.2k | Automated safety check: Pass | MIT | today |
| 21 | Multi-source threat intelligence and vulnerability lookup. An agent skill from ptn1411/skill. | ptn1411/ | 219 | — | ~1.1k | Automated safety check: Pass | No licence | 18 days ago |
| 22 | Resolve Dependabot security alerts on owid/etl by upgrading vulnerable dependencies. | owid/ | 159 | — | ~2.8k | Automated safety check: Pass | MIT | today |
| 23 | 23.Disclosure Drive responsible disclosure of a proven finding to a CVE. An agent skill from Encod3d-Sec/TORCH. | Encod3d-Sec/ | 329 | — | ~686 | Automated safety check: Pass | MIT | 1 mo ago |
| 24 | Scan repositories for newly disclosed CVEs in dependencies after a specific cutoff date. | ArabelaTso/ | 253 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 25 | Ingest a CVE writeup, blog post, advisory, or GitHub repo into the wiki - fetch, dedup via sources:, update the right technique/tool page(s), re-index. | Encod3d-Sec/ | 329 | — | ~572 | Automated safety check: Pass | MIT | 1 mo ago |
| 26 | A skill your agent uses when resolving which GitHub repository to clone for CVE analysis from a container image name in a Jira ticket summary, pscomponent label, or Downstream Component Name field. | openshift-eng/ | 120 | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | 3 days ago |
| 27 | Automated vulnerability scanner for agent platforms. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~4.1k | Automated safety check: Pass | MIT | 2 mo ago |
| 28 | CI/CD pipeline security gate design guide. An agent skill from revfactory/harness-100. | revfactory/ | 1.3k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 29 | A skill your agent uses when opening or updating a GitHub pull request after Phase 5 of /compliance:analyze-cve has applied and verified a CVE fix locally. | openshift-eng/ | 120 | — | ~6.2k | Automated safety check: Pass | Apache-2.0 | 3 days ago |
| 30 | Help an adopter or framework developer file a clean, redacted GitHub issue against the Apache Magpie framework repo when a skill, tool, or doc misbehaves. | apache/ | 114 | — | ~4.7k | Automated safety check: Pass | Apache-2.0 | today |