Search
Python · Security review
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format. | shareAI-lab/ | 78k | 4 repos | ~1.1k | Automated safety check: Pass | MIT | 12 days ago |
| 2 | Audits source code, dependencies and config files for vulnerabilities and hardcoded secrets, using two bundled Python scanners and an OWASP Top 10 checklist. | eigent-ai/ | 15k | — | ~1.8k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 3 | Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, Java 8, PHP, Ruby, Rails, Python, Django, FastAPI, Go, C/.NET, Kotlin, Swift, Dart… | awesome-skills/ | 2.1k | — | ~2.8k | Automated safety check: Notes | MIT | 1 mo ago |
| 4 | Scans a codebase for vulnerabilities with CodeQL's data flow and taint tracking in run-all or important-only modes, including data extensions for project-specific sources and sinks. | trailofbits/ | 7.5k | — | ~4.6k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 5 | Run a Kedro security scan on the full codebase or just a pull request. | kedro-org/ | 11k | — | ~3.3k | Automated safety check: Pass | Unknown | yesterday |
| 6 | Reviews code for security, performance, quality and maintainability, using a checklist, a finding template and two metrics scripts. | luongnv89/ | 42k | — | ~764 | Automated safety check: Pass | MIT | 10 days ago |
| 7 | Security review of the current branch against its merge base — sandbox escapes, memory errors, panics and resource-limit bypasses. | pydantic/ | 8.6k | — | ~852 | Automated safety check: Pass | MIT | yesterday |
| 8 | Run a full Python codebase security audit using PySpector (https://github.com/ParzivalHack/PySpector), a Rust-core SAST scanner. | ParzivalHack/ | 151 | — | ~3.5k | Automated safety check: Notes | Apache-2.0 | 3 days ago |
| 9 | Django access control and IDOR security review. An agent skill from getsentry/skills. | getsentry/ | 1k | 3 repos | ~2.6k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 10 | Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge. | TheDecipherist/ | 551 | — | ~1.3k | Automated safety check: Notes | MIT | 5 mo ago |
| 11 | Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, PHP, Python, Django, Go, C/.NET, Kotlin, Swift, NestJS, C/C++, and more. | Rain-kl/ | 289 | — | ~2.3k | Automated safety check: Notes | MIT | 3 days ago |
| 12 | Shows how to replace unsafe hasattr and setattr loops over user-controlled kwargs with an explicit allowlist when configuring ONNX Runtime option objects. | microsoft/ | 22k | — | ~737 | Automated safety check: Pass | MIT | today |
| 13 | 13.Cyber Neo Comprehensive cybersecurity analysis for any local project. An agent skill from Hainrixz/cyber-neo. | Hainrixz/ | 283 | — | ~5.9k | Automated safety check: Warn | MIT | 2 mo ago |
| 14 | Unpacks Electron apps and audits their ASAR contents, window security settings, IPC handlers and hardcoded secrets with a bundled Python analysis script. | ptn1411/ | 219 | — | ~830 | Automated safety check: Notes | No licence | 19 days ago |
| 15 | Infrastructure security audit for VPN server. An agent skill from Sergei-thinker/vpn-setup. | Sergei-thinker/ | 189 | — | ~1.5k | Automated safety check: Notes | MIT | 5 mo ago |
| 16 | Provides comprehensive code review guidance for React 19, Vue 3, Rust, TypeScript, Java, Python, and C/C++. | andrew-yangy/ | 155 | — | ~1.7k | Automated safety check: Notes | MIT | 7 mo ago |
| 17 | Audits the Safe multisig wallets of DeFi protocols for governance misconfigurations, scoring each against a finding library and producing a severity-ranked report. | forefy/ | 152 | — | ~1.4k | Automated safety check: Pass | MIT | 6 days ago |
| 18 | Scans a repository's source for security vulnerabilities with the supercov CLI, pointing to the line of each finding and mapping it to CWE classes. | supercorp-ai/ | 152 | 1 repo | ~236 | Automated safety check: Pass | MIT | yesterday |
| 19 | Install local-first security hardening: pre-commit secret detection, offline dependency scans, static analysis, reports, and gated free CI. | luongnv89/ | 131 | — | ~4.5k | Automated safety check: Pass | MIT | yesterday |
| 20 | Finds exploitable application security vulnerabilities in code changes. | getsentry/ | 417 | — | ~1.8k | Automated safety check: Pass | Unknown | today |
| 21 | Dependabot and security analysis skill for HASTE. An agent skill from microsoft/haste. | microsoft/ | 107 | — | ~1k | Automated safety check: Pass | MIT | yesterday |
| 22 | Perform language and framework specific security best-practice reviews and suggest improvements. | trailofbits/ | 513 | 9 repos | ~2.2k | Automated safety check: Notes | CC-BY-SA-4.0 | 2 mo ago |
| 23 | Audits MCP servers and their client configs for tool poisoning, prompt injection, over-privileged tools, injection bugs, secret leaks and missing approval gates. | awarexone/ | 5.3k | — | ~1.9k | Automated safety check: Warn | MIT | yesterday |
| 24 | A ten-category security checklist for the agent-core codebase, to run before any security-sensitive change or pull request: secrets, input validation, SQL, access control and prompt injection. | openJiuwen-ai/ | 446 | — | ~1.7k | Automated safety check: Notes | Apache-2.0 | today |
| 25 | 25.Sast Bandit Python security vulnerability detection using Bandit SAST with CWE and OWASP mapping. | AgentSecOps/ | 220 | 1 repo | ~2.6k | Automated safety check: Pass | Unknown | 5 mo ago |
| 26 | Comprehensive Snowflake development assistant covering SQL best practices, data pipeline design (Dynamic Tables, Streams, Tasks, Snowpipe), Cortex AI functions, Cortex Agents, Snowpark Python, dbt… | sickn33/ | 47k | 2 repos | ~2.1k | Automated safety check: Pass | MIT | yesterday |
| 27 | AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching… | github/ | 40k | 1 repo | ~2.3k | Automated safety check: Notes | MIT | yesterday |
| 28 | Detects and analyzes Bluetooth Low Energy (BLE) security attacks including sniffing, replay attacks, GATT enumeration abuse, and Man-in-the-Middle interception. | mukul975/ | 34k | — | ~3.4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 29 | Assess SSL/TLS server configurations using the sslyze Python scanning library to evaluate supported protocol versions, cipher suite strength, certificate chain validation, HSTS enforcement, OCSP… | mukul975/ | 34k | — | ~597 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 30 | 信息安全分析师与软件开发工程师在搭建文档处理流水线时,当需要拦截违规文件或外部URL,请挂载此技能作为强制前置安检,自动输出 pass/reject 判定与详细合规扫描报告,一键守住零信任安全底线。 | anbeime/ | 7.8k | — | ~321 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 31 | 对进入系统的文件或 URL 执行安全与合规扫描,输出 pass/reject 判定与扫描报告,作为所有文档处理的强制前置关卡。 | anbeime/ | 7.8k | — | ~310 | Automated safety check: Pass | No licence | yesterday |
| 32 | SecOps for application security, vulnerability management, compliance, and secure development. | borghei/ | 891 | — | ~1.7k | Automated safety check: Pass | MIT | 3 days ago |
| 33 | Run defensive pre-release security tests for Python web applications. | aiskillstore/ | 433 | — | ~1.2k | Automated safety check: Notes | MIT | yesterday |
| 34 | 服务上线前的 AI 安全审查,聚焦需要理解代码语义和业务逻辑的安全问题. An agent skill from 312362115/claude. | 312362115/ | 107 | — | ~1.3k | Automated safety check: Pass | MIT | 5 mo ago |
| 35 | Comprehensive security vulnerability analysis for codebases and infrastructure. | aiskillstore/ | 433 | — | ~1.2k | Automated safety check: Notes | No licence | yesterday |
| 36 | Code vulnerability pattern database. An agent skill from revfactory/harness-100. | revfactory/ | 1.3k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 37 | Generate structured CSV security audit reports from vulnerability data with proper filtering and formatting. | benchflow-ai/ | 1.8k | — | ~3k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 38 | Review or write Python, JavaScript, TypeScript, or Go code using secure defaults. | nightly-labs/ | 489 | — | ~369 | Automated safety check: Pass | Unknown | yesterday |
| 39 | REST API security hardening with authentication, rate limiting, input validation, security headers. | secondsky/ | 227 | — | ~718 | Automated safety check: Pass | MIT | 12 days ago |
| 40 | Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. | secondsky/ | 227 | — | ~638 | Automated safety check: Pass | MIT | 12 days ago |
| 41 | 41.Harden Applies NIST/CWE security hardening to Python and Rust code. | athola/ | 341 | — | ~2.7k | Automated safety check: Pass | MIT | yesterday |
| 42 | Probe for hardcoded secrets, injection surfaces, unguarded routes, business logic flaws, and platform-specific weaknesses across backend (Node, Go, Java, Python, Rust), frontend (React, Angular… | HoangNguyen0403/ | 572 | — | ~977 | Automated safety check: Pass | MIT | yesterday |