Topic · Security
Best security review skills, page 13
Security review skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 577 | Security best practices for Micronaut/Kotlin backend including authentication, authorization, input validation, and OWASP prevention. | c0x12c/ | 106 | — | ~672 | Automated safety check: Notes | No licence | 3 mo ago |
| 578 | Security audit for Terraform codebases covering IAM, networking, encryption, secrets, access control, and compliance. | c0x12c/ | 106 | — | ~2k | Automated safety check: Pass | No licence | 3 mo ago |
| 579 | Statically analyze code to detect security vulnerabilities including buffer overflows, injection risks (SQL, command, XSS), insecure deserialization, improper authentication, hard-coded credentials… | ArabelaTso/ | 253 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 580 | Generate structured CSV security audit reports from vulnerability data with proper filtering and formatting. | benchflow-ai/ | 1.8k | — | ~3k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 581 | 581.Security Auditor Security vulnerability scanner and OWASP compliance auditor for codebases. | curiositech/ | 243 | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 582 | WordPress security code review for Codex. An agent skill from jorgerosal/wordpress-skills. | jorgerosal/ | 102 | — | ~490 | Automated safety check: Pass | MIT | 4 mo ago |
| 583 | 583.Gemini CLI Google Gemini CLI for second opinions, architectural advice, code reviews, security audits. | secondsky/ | 227 | — | ~2.8k | Automated safety check: Pass | MIT | 11 days ago |
| 584 | REST API security hardening with authentication, rate limiting, input validation, security headers. | secondsky/ | 227 | — | ~718 | Automated safety check: Pass | MIT | 11 days ago |
| 585 | Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. | secondsky/ | 227 | — | ~638 | Automated safety check: Pass | MIT | 11 days ago |
| 586 | Dedicated security-audit route for OWASP-style risks, secret leaks, auth flaws, injection, unsafe input handling, SSRF/XSS, and sensitive-data exposure. | foryourhealth111-pixel/ | 3.6k | — | ~523 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 587 | 587.Security Review Perform a security-focused review of current git changes. An agent skill from SpecterOps/skills. | SpecterOps/ | 704 | — | ~556 | Automated safety check: Pass | Apache-2.0 | 15 days ago |
| 588 | Review or write Python, JavaScript, TypeScript, or Go code using secure defaults. | nightly-labs/ | 473 | — | ~369 | Automated safety check: Pass | Unknown | today |
| 589 | 589.Skill Scanner Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. | sundial-org/ | 663 | 1 repo | ~364 | Automated safety check: Pass | No licence | 7 mo ago |
| 590 | Conduct comprehensive security code reviews using OWASP Top 10, SAST/DAST patterns, and Hack23 ISMS secure development policy | Hack23/ | 239 | — | ~5.8k | Automated safety check: Pass | Apache-2.0 | today |
| 591 | A skill your agent uses when asked 数据出境要申报吗, 数据出境安全评估还是标准合同, 个人信息出境标准合同怎么备案, 我们把数据传到海外总部合规吗, or decide how to transfer data out of mainland China lawfully. | mohitagw15856/ | 1.4k | — | ~1.1k | Automated safety check: Pass | MIT | today |
| 592 | 592.Security Review Review a design, PR, or feature for security issues before it ships. | mohitagw15856/ | 1.4k | — | ~973 | Automated safety check: Pass | MIT | today |
| 593 | Simulate enterprise procurement and security review of your product before your first big deal meets it for real — the questionnaire, the gaps, the deal-slowing findings. | mohitagw15856/ | 1.4k | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 594 | Reverse engineer and security-review macOS applications and Mach-O binaries — thinning universal binaries, recovering Objective-C/Swift structure, reading code-signing entitlements and the hardened… | trilwu/ | 157 | — | ~1.7k | Automated safety check: Pass | MIT | 1 mo ago |
| 595 | 595.Security Review Security review gate for MCP server installations. An agent skill from bobmatnyc/claude-mpm. | bobmatnyc/ | 155 | — | ~1.1k | Automated safety check: Pass | Unknown | 1 mo ago |
| 596 | 596.Secure Security review checklist with optional engagement scoping. An agent skill from hashgraph-online/awesome-codex-plugins. | hashgraph-online/ | 1.3k | — | ~1.5k | Automated safety check: Notes | Apache-2.0 | today |
| 597 | 597.AWS Advisor AWS Advisor workflow skill. An agent skill from diegosouzapw/awesome-omni-skills. | diegosouzapw/ | 159 | — | ~4.3k | Automated safety check: Pass | MIT | 3 mo ago |
| 598 | Security Ownership Map workflow skill. An agent skill from diegosouzapw/awesome-omni-skills. | diegosouzapw/ | 159 | — | ~4.6k | Automated safety check: Pass | Apache-2.0 | 3 mo ago |
| 599 | Audit codebase for security vulnerabilities, insecure patterns, and compliance gaps. | EmeaAppGbb/ | 100 | — | ~2.2k | Automated safety check: Notes | MIT | 5 mo ago |
| 600 | 600.Repomix Package entire code repositories into single AI-friendly files using Repomix. | Microck/ | 404 | — | ~1.4k | Automated safety check: Notes | Unknown | 1 mo ago |
| 601 | Example security audit skill demonstrating how to audit code for security vulnerabilities. | Microck/ | 404 | — | ~758 | Automated safety check: Pass | Unknown | 1 mo ago |
| 602 | Vulnerability review, threat modeling, OWASP patterns, and secure coding assessment. | rsmdt/ | 557 | — | ~1.3k | Automated safety check: Pass | MIT | 2 mo ago |
| 603 | 603.Security Review AI-powered security analysis of code changes — traces data flow, detects injection, auth bypass, secrets exposure, and unsafe deserialization across files. | danielvm-git/ | 258 | — | ~1.5k | Automated safety check: Pass | MIT | 17 days ago |
| 604 | Best practices for building an unauthenticated public Q&A chatbot widget. | swyxio/ | 175 | — | ~9.8k | Automated safety check: Pass | MIT | 4 days ago |
| 605 | Reviews package dependencies for security vulnerabilities, outdated versions, and license compliance. | aiskillstore/ | 430 | — | ~2.2k | Automated safety check: Notes | No licence | today |
| 606 | 606.Security Audit Security auditing and vulnerability assessment specialist. An agent skill from aiskillstore/marketplace. | aiskillstore/ | 430 | 1 repo | ~383 | Automated safety check: Pass | No licence | today |
| 607 | A skill your agent uses when optimizing performance or reviewing security. | MadAppGang/ | 285 | — | ~2.4k | Automated safety check: Notes | MIT | 6 mo ago |
| 608 | 608.Go Review Performs security review of arbitrary Go packages, including libraries, frameworks, CLIs, HTTP and gRPC services, and backend applications. | SpecterOps/ | 704 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 15 days ago |
| 609 | Route a cloud-native security audit across effective IAM, infrastructure as code, build and release paths, containers, Kubernetes, serverless workloads, secrets, event sources, and control-plane… | cyberful/ | 135 | — | ~852 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 610 | 610.Security Audit 2 Fail-closed security auditing for OpenClaw/ClawHub skills & repos: trufflehog secrets scanning, semgrep SAST, prompt-injection/persistence signals, and supply-chain hygiene checks before enabling or… | sundial-org/ | 663 | — | ~875 | Automated safety check: Pass | No licence | 7 mo ago |
| 611 | For a batch of findings from a non-security audit tool (<audit-tool — ruff / flake8 / mypy / pylint / CodeQL / Apache Verum / Apache Caer / equivalent; full list in the body) against <upstream… | apache/ | 113 | — | ~4.9k | Automated safety check: Pass | Apache-2.0 | today |
| 612 | Read-only GitHub Actions workflow security audit for one repository, a repository set, or a whole GitHub org. | apache/ | 113 | — | ~3.8k | Automated safety check: Pass | Apache-2.0 | today |
| 613 | 613.Harden Applies NIST/CWE security hardening to Python and Rust code. | athola/ | 341 | — | ~2.7k | Automated safety check: Pass | MIT | 3 days ago |
| 614 | A skill your agent uses when writing skills, CLAUDE.md files, agent prompts, or any directives that involve shell commands, environment variables, API credentials, file creation, or git operations -… | ed3dai/ | 250 | — | ~2.5k | Automated safety check: Warn | No licence | 1 mo ago |
| 615 | 615.Review Security Review application and infrastructure changes for exploitable security risks by tracing assets, trust boundaries, attacker-controlled input, authorization, sensitive data, and dangerous sinks. | hashgraph-online/ | 1.3k | — | ~601 | Automated safety check: Pass | Apache-2.0 | today |
| 616 | セキュリティ観点の通常レビューエージェント. An agent skill from hashgraph-online/awesome-codex-plugins. | hashgraph-online/ | 1.3k | — | ~730 | Automated safety check: Pass | MIT | today |
| 617 | Repository または subsystem を対象に、source-only で明示的なセキュリティ監査を行う entry skill。 | hashgraph-online/ | 1.3k | — | ~4.2k | Automated safety check: Pass | MIT | today |
| 618 | 完成した差分・PR・検証証拠に残る Unknown(未確認の前提・調査されていない影響・ 不足している証拠)を横断合成する evidence-sufficiency のメタ観点。個別 defect の 検出は既存 skill へ委譲し、本 skill は「そのリスク種別を調査した証拠が残っているか」 の meta 評価のみを行う。通常は finding verification 後の… | hashgraph-online/ | 1.3k | — | ~2.6k | Automated safety check: Pass | MIT | today |
| 619 | Security review checklist for construction software systems. | datadrivenconstruction/ | 345 | — | ~3.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 620 | Run security scans and vulnerability checks. An agent skill from enuno/unifi-mcp-server. | enuno/ | 282 | — | ~194 | Automated safety check: Pass | Apache-2.0 | today |
| 621 | 621.Rust Security Rust security skill for supply chain safety and memory-safe development. | mohitmishra786/ | 253 | — | ~1.6k | Automated safety check: Pass | MIT | 3 mo ago |
| 622 | 622.Zz Code Recon Deep architectural context building for security audits. An agent skill from sendaifun/skills. | sendaifun/ | 130 | — | ~3.3k | Automated safety check: Notes | Apache-2.0 | 2 mo ago |
| 623 | 623.Security Audit Perform a broad, authorized security audit across application, infrastructure, identity, dependencies, and operations. | seb1n/ | 206 | — | ~2.4k | Automated safety check: Notes | MIT | 2 mo ago |
| 624 | OWASP LLM Top 10 (2025) audit checklist for AI applications, agent tools, RAG pipelines, and prompt construction. | HoangNguyen0403/ | 571 | — | ~921 | Automated safety check: Pass | MIT | today |
Explore related skills
Category
More topics in Security
- Web application vulnerabilities468
- Vulnerability scanning305
- Static analysis and SAST284
- Security operations246
- Supply chain security232
- Threat modeling227
- Penetration testing181
- Cryptography160
- Prompt injection and agent security154
- Red teaming and adversary simulation149
- Reverse engineering and malware129
- OSINT120
- Secure coding113
- Cloud security96
- Digital forensics88
- Smart contract auditing79
- Fuzzing76
- Bug bounty75
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails38