Topic · Security
Best security review skills, page 10
Security review skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 433 | 433.Apex Azure Rbac ANALYSIS SKILL — Find the right Azure RBAC role for an identity with least-privilege access; generate CLI, Bicep, and Terraform code to assign it. | jonathan-vella/ | 217 | — | ~1.8k | Automated safety check: Pass | MIT | today |
| 434 | 434.LLM Security Authorized security assessment of LLM applications and AI agents: prompt injection, tool abuse, RAG exposure, memory poisoning, system-prompt extraction, and agent-compliance engineering per OWASP… | sickn33/ | 47k | 1 repo | ~1.2k | Automated safety check: Warn | MIT | yesterday |
| 435 | 435.Review Reviews code for quality, security, correctness. An agent skill from softspark/ai-toolkit. | softspark/ | 179 | — | ~3.1k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 436 | 436.Senior Security Security engineering toolkit for threat modeling, vulnerability analysis, secure architecture, and penetration testing. | LeoYeAI/ | 2.2k | — | ~3.8k | Automated safety check: Pass | MIT | 2 mo ago |
| 437 | 437.Code Review Review or improve code — one skill, four modes: bug/security review (default), performance, clean-code audit, slop cleanup. | luongnv89/ | 131 | — | ~2.4k | Automated safety check: Pass | MIT | today |
| 438 | Audit wallet security by analyzing token approvals, permissions, and transaction patterns. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | today |
| 439 | Probe a target for accidentally-public admin / debug / introspection endpoints — Spring Boot Actuator, Apache server-status, Prometheus metrics, GraphQL playground, Swagger UI, phpMyAdmin… | jeremylongshore/ | 2.8k | — | ~2k | Automated safety check: Pass | MIT | today |
| 440 | Probe a target for directories that return auto-generated index listings instead of denying or serving a specific file — exposes the full file tree under any reachable directory, including files the… | jeremylongshore/ | 2.8k | — | ~1.8k | Automated safety check: Notes | MIT | today |
| 441 | Preflight Snowflake Native App package releases from trusted, privacy-safe provider evidence without publishing, upgrading, altering, granting, or approving anything. | jeremylongshore/ | 2.8k | — | ~2k | Automated safety check: Pass | MIT | today |
| 442 | 442.Validator Expert Validate production readiness of Vertex AI Agent Engine deployments across security, monitoring, performance, compliance, and best practices. | jeremylongshore/ | 2.8k | — | ~1.9k | Automated safety check: Pass | MIT | today |
| 443 | 443.Rust Dep Hygiene Dependency hygiene for the Rocky engine workspace — how to add/update deps via [workspace.dependencies], MSRV 1.88 policy, cargo-audit / cargo-deny / cargo-machete usage, and how the weekly security… | rocky-data/ | 304 | — | ~2k | Automated safety check: Pass | Apache-2.0 | today |
| 444 | 444.Audit Audit current changes, a path, or the full project for quality, security, performance, or test problems and record durable findings. | aiblueprinthq/ | 463 | — | ~6.7k | Automated safety check: Pass | MIT | yesterday |
| 445 | Cross-framework infrastructure security audit across cloud, network, and CI/CD. | borghei/ | 891 | — | ~2.1k | Automated safety check: Pass | MIT | 2 days ago |
| 446 | 446.Feature Verify Feature verification (READ-ONLY, P0-P5). An agent skill from sd0xdev/sd0x-harness. | sd0xdev/ | 192 | — | ~3.2k | Automated safety check: Notes | MIT | 2 days ago |
| 447 | 447.Security Review Security review via Codex exec. An agent skill from sd0xdev/sd0x-harness. | sd0xdev/ | 192 | — | ~1.1k | Automated safety check: Pass | MIT | 2 days ago |
| 448 | Perform an evidence-based Levyra security review and Codex Security workflow covering threat modeling, attack paths, validation, remediation, revalidation, secrets, provider URLs, redirects, SSRF… | LUC4N3X/ | 590 | — | ~2.3k | Automated safety check: Pass | GPL-3.0 | today |
| 449 | 449.Threat Pulse Recommended starting point for new users and daily SOC operations. | SCStelz/ | 249 | — | ~25k | Automated safety check: Pass | MIT | yesterday |
| 450 | ANALYSIS SKILL — Azure compliance and security auditing: best practices, Key Vault expiration monitoring, resource validation. | jonathan-vella/ | 217 | — | ~1.6k | Automated safety check: Pass | MIT | today |
| 451 | 451.Secure Coding Apply security-conscious thinking when generating or modifying code. | techygarg/ | 199 | — | ~1.5k | Automated safety check: Pass | MIT | today |
| 452 | Develop evidence-backed structural and architectural security hardening proposals from vulnerability disclosures, supplied findings, incident or assessment documents, source code, or a completed… | vlinx-io/ | 281 | — | ~5.7k | Automated safety check: Pass | MIT | 3 days ago |
| 453 | 453.Meme Coin Audit Meme coin and token security audit | sickn33/ | 47k | 1 repo | ~4.2k | Automated safety check: Pass | MIT | yesterday |
| 454 | 454.Security Audit Security audit of a codebase — web apps, APIs, services, CLI tools, libraries, daemons, and more. | shepherdjerred/ | 112 | 1 repo | ~2.9k | Automated safety check: Pass | MIT | today |
| 455 | Perform a comprehensive read-only security audit of Clawdbot's own configuration. | sundial-org/ | 663 | 1 repo | ~4.4k | Automated safety check: Pass | No licence | 7 mo ago |
| 456 | The Contracts & Security review perspective for PostHog Review. | PostHog/ | 40k | — | ~1k | Automated safety check: Pass | Unknown | today |
| 457 | A skill your agent uses when preparing your agent for production — IAM scoping, inbound auth (JWT, SigV4), secrets management, cold start optimization, session lifecycle, rate limiting, input… | aws/ | 2.8k | — | ~8k | Automated safety check: Notes | Apache-2.0 | today |
| 458 | Have a fast, conversational analysis with the AWS DevOps Agent. | aws/ | 2.8k | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | today |
| 459 | Pull AWS Security Agent findings (penetration tests and code reviews) and drive remediation. | aws/ | 2.8k | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | today |
| 460 | Run an AWS Security Agent scan on the workspace — uploads the source to AWS, scans it with the managed Security Agent service, and returns ranked, verified findings with code locations and… | aws/ | 2.8k | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | today |
| 461 | This skill provides AWS cost optimization, monitoring, and operational best practices with integrated MCP servers for billing analysis, cost estimation, observability, and security assessment. | Microck/ | 404 | 1 repo | ~2.5k | Automated safety check: Pass | Unknown | 1 mo ago |
| 462 | 462.Security Audit Audit Stella code, paths, or Git diffs for security defects affecting privileged legal data, tenant isolation, authentication, files, AI, and auditability. | stella/ | 258 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | today |
| 463 | 463.Security Scan Review trust boundaries, auth, input handling, secrets, and dependency risk before release. | PacificStudio/ | 268 | — | ~865 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 464 | 464.Security Audit Comprehensive security auditing for Clawdbot deployments. An agent skill from aAAaqwq/AGI-Super-Team. | aAAaqwq/ | 105 | 2 repos | ~619 | Automated safety check: Notes | MIT | yesterday |
| 465 | Runs a guided, end-to-end security review of a Power Pages site and consolidates every finding into one HTML report covering source code and dependencies, the live site, browser headers, firewall… | microsoft/ | 984 | — | ~4.3k | Automated safety check: Notes | MIT | today |
| 466 | 466.Security Audit Run security audit — dependency vulnerabilities, secret scanning, OWASP pattern detection, HTTP headers. | Houseofmvps/ | 123 | — | ~3.9k | Automated safety check: Notes | MIT | 3 mo ago |
| 467 | 467.Security Audit Periodic security sweep of Atlas in four areas (MCP and CLI, the Tauri desktop shell, the web renderer and connectors, the supply chain and CI) that follows untrusted input to what it can reach… | wlsdks/ | 142 | — | ~182 | Automated safety check: Pass | MIT | today |
| 468 | 468.Flow Swarm Multi-agent swarm orchestration via RuFlo + Claude Code. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~5.3k | Automated safety check: Pass | MIT | 2 mo ago |
| 469 | 469.Java Audit Skill AI驱动的Java代码安全审计技能,实现系统化、高覆盖率的漏洞挖掘。使用场景: (1) 审计Java/Kotlin项目寻找安全漏洞(0day挖掘、代码审计、安全评估) (2) 企业级代码库的安全审计(支持大型项目) (3) 需要高质量、低幻觉率的安全审计报告 (4) CI/CD集成的前期漏洞发现 触发关键词:Java审计、代码审计、安全审计、漏洞挖掘、0day、安全评估、Java… | LeoYeAI/ | 2.2k | — | ~3.1k | Automated safety check: Pass | MIT | 2 mo ago |
| 470 | 470.Harness Feedback A skill your agent uses when an agent says a test, VM, proof, evaluator, or release gate is overloaded, too strict, blocking staging, or causing false positives; split checks by profile, measure the… | AnastasiyaW/ | 154 | — | ~1k | Automated safety check: Pass | MIT | today |
| 471 | 471.Testing Strategy A skill your agent uses when planning or reviewing tests for a code change, choosing between unit, focused regression, integration, contract, end-to-end, performance, security, property-based, or… | AnastasiyaW/ | 154 | — | ~2k | Automated safety check: Pass | MIT | today |
| 472 | Harden OpenClaw self-hosted environments with baseline host controls, auth tightening, secret handling, network segmentation, and safe update/rollback workflows. | BagelHole/ | 1.2k | — | ~1k | Automated safety check: Notes | MIT | 4 mo ago |
| 473 | Multi-dimensional LLM council review of an open PR (default) or a local feature branch (§ 8 branch mode, invoked via /gflow:branch-review). | ffroliva/ | 269 | — | ~12k | Automated safety check: Pass | MIT | yesterday |
| 474 | 474.PDF Toolkit Audit PDF files for metadata leakage, page count, encryption, JavaScript, embedded files, and version. | borghei/ | 891 | — | ~1.4k | Automated safety check: Pass | MIT | 2 days ago |
| 475 | Solutions architecture for technical pre-sales. An agent skill from borghei/Claude-Skills. | borghei/ | 891 | — | ~4.1k | Automated safety check: Pass | MIT | 2 days ago |
| 476 | Code review using Codex exec. An agent skill from sd0xdev/sd0x-harness. | sd0xdev/ | 192 | — | ~9.8k | Automated safety check: Pass | MIT | 2 days ago |
| 477 | Use this skill as THE specialized Lightning Web Security (LWS) validator for a Lightning Web Component bundle (.js, .ts, .html, .css, .js-meta.xml) — the canonical LWS/Product-Security review for… | forcedotcom/ | 1.1k | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | today |
| 478 | 信息安全分析师与软件开发工程师在搭建文档处理流水线时,当需要拦截违规文件或外部URL,请挂载此技能作为强制前置安检,自动输出 pass/reject 判定与详细合规扫描报告,一键守住零信任安全底线。 | anbeime/ | 7.8k | — | ~321 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 479 | 479.Security Scan 对进入系统的文件或 URL 执行安全与合规扫描,输出 pass/reject 判定与扫描报告,作为所有文档处理的强制前置关卡。 | anbeime/ | 7.8k | — | ~310 | Automated safety check: Pass | No licence | yesterday |
| 480 | 480.Security Review Security review checklist for web applications. An agent skill from cohen-liel/hivemind. | cohen-liel/ | 110 | — | ~701 | Automated safety check: Notes | Apache-2.0 | 5 mo ago |
Explore related skills
Category
More topics in Security
- Web application vulnerabilities466
- Vulnerability scanning307
- Static analysis and SAST282
- Security operations247
- Supply chain security233
- Threat modeling224
- Penetration testing181
- Cryptography160
- Prompt injection and agent security156
- Red teaming and adversary simulation148
- Reverse engineering and malware131
- OSINT120
- Secure coding113
- Cloud security96
- Digital forensics88
- Smart contract auditing79
- Fuzzing77
- Bug bounty75
- Network security66
- Capture the flag46
- Mobile application security42
- Access reviews and audit trails38