Topic · Security
Best cryptography skills for Claude Code, Codex and other agents.
- skills
- 155
- official
- 21
Cryptography skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Shows how to call NEAR AI Cloud through an OpenAI-compatible API and verify that inference ran in a TEE, using attestation checks and signed chat responses. | internet-court/ | 6.4k | 2 repos | ~1.3k | Automated safety check: Pass | Unknown | 1 mo ago |
| 2 | Guides Stripe integration decisions — API selection (Checkout Sessions vs PaymentIntents), Connect platform setup (Accounts v2, controller properties), billing/subscriptions, Treasury financial… | kanchengw/ | 175 | 3 repos | ~925 | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 3 | Security code review for vulnerabilities. An agent skill from getsentry/skills. | getsentry/ | 1k | 4 repos | ~2.9k | Automated safety check: Notes | CC-BY-SA-4.0 | 5 days ago |
| 4 | 4.Nit Git for agent identity — one identity, any apps. An agent skill from newtype-ai/nit. | newtype-ai/ | 114 | — | ~3.6k | Automated safety check: Pass | MIT | 5 mo ago |
| 5 | Manage secrets and PKI with HashiCorp Vault. An agent skill from BagelHole/DevOps-Security-Agent-Skills. | BagelHole/ | 1.1k | — | ~2k | Automated safety check: Pass | MIT | 4 mo ago |
| 6 | Migrate a .NET 9 project or solution to .NET 10 and resolve all breaking changes. | dotnet/ | 5.6k | 2 repos | ~4.8k | Automated safety check: Pass | MIT | today |
| 7 | End-to-end Stellar development playbook. An agent skill from VelaPayments/vela-payments. | VelaPayments/ | 131 | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 8 | Authenticate to Elasticsearch using native, file-based, LDAP/AD, SAML, OIDC, Kerberos, JWT, or certificate realms. | aspectrr/ | 405 | — | ~1.2k | Automated safety check: Notes | MIT | 5 mo ago |
| 9 | Start a local Django development server and make HTTP requests against it for interactive endpoint testing | mathiasertl/ | 158 | — | ~977 | Automated safety check: Pass | GPL-3.0 | 3 days ago |
| 10 | Guides Stripe integration decisions across development and test environment planning (separate sandboxes vs the shared test mode sandbox), API selection (Checkout Sessions vs PaymentIntents)… | fossasia/ | 1.7k | 1 repo | ~1.7k | Automated safety check: Pass | Apache-2.0 | today |
| 11 | Add an EAP authentication method (e.g. An agent skill from talkincode/toughradius. | talkincode/ | 691 | — | ~802 | Automated safety check: Pass | MIT | 4 days ago |
| 12 | 12.Pytest Instructions for running, writing, and maintaining tests in this project | mathiasertl/ | 158 | — | ~924 | Automated safety check: Pass | GPL-3.0 | 3 days ago |
| 13 | Reviews APIs, configuration schemas and library interfaces for footguns, the designs where the easy path leads to insecure use, using a four-phase analysis. | trailofbits/ | 7.4k | 3 repos | ~3k | Automated safety check: Pass | CC-BY-SA-4.0 | 5 days ago |
| 14 | 14.Bom Explore Explores and triages a CycloneDX BOM interactively with the cdxi REPL, using built-in commands for dependency trees, licenses, services, cryptographic assets, audit findings, evidence occurrences… | cdxgen/ | 1.1k | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 15 | Finds sensitive data that C, C++ or Rust code never wipes from memory, including wipes the compiler optimizes away, using source, assembly and control-flow analysis. | trailofbits/ | 7.4k | 4 repos | ~5.9k | Automated safety check: Notes | CC-BY-SA-4.0 | 5 days ago |
| 16 | This skill retrieves upcoming earnings announcements for US stocks using the Financial Modeling Prep (FMP) API. | tradermonty/ | 3k | 4 repos | ~5.7k | Automated safety check: Pass | MIT | 2 days ago |
| 17 | Reference for building with near-api-js v7 in TypeScript or JavaScript: accounts, keys, signing, contract calls, tokens, unit conversion and meta-transactions on NEAR. | internet-court/ | 6.4k | 1 repo | ~4.1k | Automated safety check: Pass | Unknown | 1 mo ago |
| 18 | 18.Ctf Crypto Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills. | ljagiello/ | 3.4k | — | ~11k | Automated safety check: Notes | MIT | 24 days ago |
| 19 | Deploy and manage AI agent workloads with GPU checks, API key management, and health monitoring | bolivian-peru/ | 118 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 20 | 20.Adcs Attacks Active Directory Certificate Services (AD CS) escalation techniques ESC1 through ESC17, driven by hand with Certipy (ly4k). | ADScanPro/ | 209 | — | ~3.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 21 | Security guidelines for writing secure code. An agent skill from semgrep/skills. | semgrep/ | 322 | — | ~1.2k | Automated safety check: Pass | Unknown | 2 mo ago |
| 22 | Builds and debugs Arcium encrypted computation apps on Solana: Arcis circuits, Anchor orchestration, encrypted inputs and the init, queue and callback flow. | sendaifun/ | 130 | — | ~2.8k | Automated safety check: Pass | MIT | 2 mo ago |
| 23 | 23.Crypto Audit Audit cryptography implementation — algorithm choice, key sizes, KDF parameters, IV/nonce handling, signature verification, randomness, TLS configuration, and key rotation. | briiirussell/ | 412 | — | ~2.8k | Automated safety check: Notes | MIT | 4 mo ago |
| 24 | 24.Webcrypt MCP Teaches the agent to use the WebCrypt MCP server for AES-256-GCM symmetric encryption, RSA-4096 hybrid encryption, key generation, digital signatures, hashing, and post-quantum cryptography. | putervision/ | 111 | — | ~847 | Automated safety check: Pass | MIT | 4 days ago |
| 25 | A skill your agent uses when assessing cryptography — TLS/PKI auditing, RSA/ECC key attacks, ECDSA nonce lattice recovery, symmetric/AEAD misuse, JWT/JOSE forgery, hash cracking, post-quantum… | hypnguyen1209/ | 386 | — | ~2.2k | Automated safety check: Pass | MIT | 9 days ago |
| 26 | Paid API marketplace for AI agents via Corbits. An agent skill from moonpay/skills. | moonpay/ | 113 | — | ~1.5k | Automated safety check: Pass | MIT | 27 days ago |
| 27 | Security review of an open-autonomy agent service — cryptographic key handling, dynamic code execution, ABCI authentication and replay, secret exposure, dependency supply chain, and deployment… | valory-xyz/ | 129 | — | ~11k | Automated safety check: Notes | Apache-2.0 | 23 days ago |
| 28 | Guides authorized password-hash recovery with hashcat for security audits, forensic cases and policy testing, starting with an explicit authorization check before any cracking runs. | AgentSecOps/ | 219 | 1 repo | ~3.3k | Automated safety check: Notes | Unknown | 5 mo ago |
| 29 | This skill should be used when the user asks to "review the security architecture", "check authentication patterns", "evaluate trust boundaries", "review encryption implementation", "assess… | bitwarden/ | 154 | — | ~2.2k | Automated safety check: Pass | Unknown | yesterday |
| 30 | 30.Crypto Bom Generates a CycloneDX Cryptographic Bill of Materials (CBOM) with the cdxgen cbom command, inventorying cryptographic algorithms, certificates, keys, and protocol usage from source code and hosts… | cdxgen/ | 1.1k | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 31 | Comprehensive security engineering skill for application security, penetration testing, security architecture, and compliance auditing. | davila7/ | 32k | 2 repos | ~1.1k | Automated safety check: Notes | MIT | today |
| 32 | A skill your agent uses when the user asks to log in or out with a wallet session, fetch a wallet sign-in challenge, verify an externally signed challenge, or troubleshoot AltLLM Portal wallet login… | internet-court/ | 6.4k | 1 repo | ~632 | Automated safety check: Pass | ISC | 1 mo ago |
| 33 | A skill your agent uses when the user asks to create a NOWPayments crypto payment link, poll payment status, or execute a supported direct wallet payment through the AltLLM Portal CLI. | internet-court/ | 6.4k | 1 repo | ~563 | Automated safety check: Pass | ISC | 1 mo ago |
| 34 | Compiles cryptographic code and inspects the assembly or bytecode for variable-time instructions, then triages which flagged operations actually touch secrets. | trailofbits/ | 7.4k | — | ~3.3k | Automated safety check: Notes | CC-BY-SA-4.0 | 5 days ago |
| 35 | Turns a cryptographic protocol's source code, RFC, paper or ProVerif or Tamarin model into a Mermaid sequence diagram annotated with each cryptographic operation. | trailofbits/ | 7.4k | — | ~4.6k | Automated safety check: Pass | CC-BY-SA-4.0 | 5 days ago |
| 36 | Converts a Mermaid sequence diagram of a cryptographic protocol into a ProVerif model file ready for checking secrecy, authentication and forward secrecy. | trailofbits/ | 7.4k | — | ~4.5k | Automated safety check: Pass | CC-BY-SA-4.0 | 5 days ago |
| 37 | Uses mutation testing on cryptographic implementations to find coverage gaps, then writes new test vectors for the uncovered paths and compares kill rates to show they help. | trailofbits/ | 7.4k | — | ~4.8k | Automated safety check: Pass | CC-BY-SA-4.0 | 5 days ago |
| 38 | Manage cryptographic keys using Azure Key Vault Keys SDK for JavaScript (@azure/keyvault-keys). | microsoft/ | 3.1k | 5 repos | ~1.7k | Automated safety check: Pass | MIT | yesterday |
| 39 | Azure Key Vault Keys Java SDK for cryptographic key management. | microsoft/ | 3.1k | 5 repos | ~2.9k | Automated safety check: Pass | MIT | yesterday |
| 40 | A skill your agent uses when reviewing code for security vulnerabilities, hardening an application, or deriving security requirements from OWASP/ASVS guidance. | jellydn/ | 123 | — | ~2.9k | Automated safety check: Notes | MIT | today |
| 41 | Advanced GPG multi-key management strategies for consultants, CI/CD automation, and enterprise teams. | Prorise-cool/ | 305 | — | ~3.2k | Automated safety check: Warn | No licence | 21 days ago |
| 42 | Validates cryptographic implementations against Project Wycheproof's test vectors, which encode known attacks and edge cases across AES, RSA, ECDSA, ECDH, and more. | trailofbits/ | 7.4k | — | ~4.9k | Automated safety check: Pass | CC-BY-SA-4.0 | 5 days ago |
| 43 | Manage SSL/TLS certificates with Let's Encrypt and internal PKI. | sickn33/ | 47k | 2 repos | ~2.8k | Automated safety check: Pass | MIT | yesterday |
| 44 | Azure Key Vault Keys SDK for .NET. An agent skill from microsoft/skills. | microsoft/ | 3.1k | 5 repos | ~3.1k | Automated safety check: Pass | MIT | yesterday |
| 45 | 45.Bagman Secure key management for AI agents. An agent skill from profbernardoj/everclaw-community-branches. | profbernardoj/ | 112 | — | ~4.4k | Automated safety check: Warn | MIT | 1 mo ago |
| 46 | Static security review for Flutter mobile apps and Dart code: hardcoded secrets, insecure storage, unsafe network calls, leaky logs, vulnerable dependencies. | VeryGoodOpenSource/ | 169 | — | ~4.4k | Automated safety check: Notes | MIT | yesterday |
| 47 | Agent skill for security-manager - invoke with $agent-security-manager | ruvnet/ | 74k | 2 repos | ~4.9k | Automated safety check: Pass | MIT | today |
| 48 | Measures timing side channels in cryptographic implementations by running them, using dudect for statistical analysis and Timecop over Valgrind for dynamic tracing. | trailofbits/ | 7.4k | — | ~5.2k | Automated safety check: Pass | CC-BY-SA-4.0 | 5 days ago |
Questions, answered from the data.
What is the best cryptography skill?
NEAR AI Cloud Private Inference from internet-court/internet-court-skill ranks first of the 155 cryptography skills listed here, with the highest score: its repository has 6.4k GitHub stars, 2 other GitHub owners carry a copy, its SKILL.md loads about 1.3k tokens and it passes the automated safety check with no findings. Next come Stripe Best Practices and Security Review.
Which cryptography skills are official?
21 of the 155 cryptography skills are official, published by the vendor's own GitHub organization: Security Review, Migrate Dotnet9 To Dotnet10, Sharp Edges Analysis, Zeroization Audit, Code Security and 16 more.
How are these skills ranked?
By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.
Explore related skills
Category
More topics in Security
- Security review611
- Web application vulnerabilities460
- Vulnerability scanning303
- Static analysis and SAST281
- Security operations248
- Supply chain security242
- Threat modeling207
- Penetration testing183
- Prompt injection and agent security154
- Red teaming and adversary simulation147
- Reverse engineering and malware132
- OSINT117
- Secure coding105
- Cloud security90
- Digital forensics86
- Smart contract auditing80
- Fuzzing75
- Bug bounty74
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails34