Topic · Security
Best security review skills, page 3
Security review skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | A skill your agent uses when the user needs to inspect, audit, or diagnose the safety of a Stata do-file. | SepineTam/ | 264 | — | ~1.2k | Automated safety check: Pass | AGPL-3.0 | 2 days ago |
| 98 | Secure GitHub Actions workflows against supply-chain, privilege, and shell-injection risks. | vechain/ | 450 | — | ~1.2k | Automated safety check: Pass | MIT | 2 mo ago |
| 99 | Skill to perform a thorough security audit of the codebase. An agent skill from fdhhhdjd/Class-AI-Agent. | fdhhhdjd/ | 266 | — | ~440 | Automated safety check: Notes | No licence | 5 mo ago |
| 100 | 100.Code Review Review VotingPlugin pull requests, branch diffs, commits, and explicitly included local changes before publishing. | BenCodez/ | 100 | — | ~4.4k | Automated safety check: Pass | Unknown | today |
| 101 | Socratic coding tutor powered by GitHub Copilot. An agent skill from timothywarner/chatgptclass. | timothywarner/ | 143 | — | ~1.9k | Automated safety check: Pass | Unknown | 19 days ago |
| 102 | Infrastructure security audit for VPN server. An agent skill from Sergei-thinker/vpn-setup. | Sergei-thinker/ | 189 | — | ~1.5k | Automated safety check: Notes | MIT | 5 mo ago |
| 103 | 103.Find Skills Helps users discover agent skills when they ask questions like "how do I do X", "find a skill for X", "is there a skill that can...", or express interest in extending capabilities. | burkeholland/ | 142 | — | ~1.5k | Automated safety check: Pass | MIT | 4 mo ago |
| 104 | 104.Build DB 使用 jar-analyzer-engine 从 JAR/WAR/Class 文件构建 SQLite 分析数据库。这是进行 Java 代码安全审计、方法调用分析的第一步。 | jar-analyzer/ | 141 | — | ~898 | Automated safety check: Pass | No licence | 6 mo ago |
| 105 | Statically audits GitHub Actions workflows that run AI coding agents, tracing attacker-controlled input to agent prompts and flagging unsafe sandbox, trigger and allowlist settings. | trailofbits/ | 7.4k | 6 repos | ~5.4k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 106 | Builds and formats security audit reports in Google Docs through the Docs API, with fixes for index drift, code styling and cross-reference links. | forefy/ | 152 | — | ~951 | Automated safety check: Pass | MIT | 4 days ago |
| 107 | Provides comprehensive code review guidance for React 19, Vue 3, Rust, TypeScript, Java, Python, and C/C++. | andrew-yangy/ | 155 | — | ~1.7k | Automated safety check: Notes | MIT | 7 mo ago |
| 108 | A skill your agent uses when performing a cybersecurity audit, security review, OWASP Top 10 compliance check, vulnerability assessment, or preparing for a penetration test on a… | LIDR-academy/ | 278 | — | ~4.3k | Automated safety check: Notes | MIT | 4 mo ago |
| 109 | Security audit checklist based on OWASP Top 10 and best practices. | unxed/ | 241 | — | ~5.4k | Automated safety check: Notes | BSD-3-Clause | today |
| 110 | Audits an Azure API Management setup against the OWASP API Security Top 10 and Azure Security Benchmark, covering policies, network layout and identity. | thomast1906/ | 202 | — | ~3.1k | Automated safety check: Pass | MIT | yesterday |
| 111 | Tests a security patch against the original bug, its variants and normal behavior, with reproducible baseline-versus-patched evidence before you merge or call it fixed. | trailofbits/ | 7.4k | — | ~3.8k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 112 | Scan code changes for security vulnerabilities using Bug Hunter-native artifacts and STRIDE context. | codexstar69/ | 519 | — | ~629 | Automated safety check: Pass | MIT | 1 mo ago |
| 113 | 113.Secureclaw Security hardening toolkit for OpenClaw. An agent skill from adversa-ai/secureclaw. | adversa-ai/ | 348 | 1 repo | ~193 | Automated safety check: Pass | MIT | 5 mo ago |
| 114 | A skill your agent uses when auditing Simple IoT for security issues, reviewing a change that touches authentication, authorization, enrollment, sync, or a network-facing parser, or checking whether… | simpleiot/ | 219 | — | ~3k | Automated safety check: Pass | Apache-2.0 | 16 days ago |
| 115 | Security review for Scalus/Cardano smart contracts. An agent skill from scalus3/scalus. | scalus3/ | 105 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | today |
| 116 | 116.Mission Planner Decomposes goals into team blueprints using evidence-based scaling laws, topology selection, and role design. | jdforsythe/ | 151 | — | ~3.5k | Automated safety check: Pass | MIT | 3 mo ago |
| 117 | 117.Healthcheck Host security hardening and risk-tolerance guidance for Understudy deployments. | understudy-ai/ | 461 | — | ~1.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 118 | 118.Cybersecurity Ultimate AI-powered cybersecurity code review skill. An agent skill from AgriciDaniel/claude-cybersecurity. | AgriciDaniel/ | 227 | — | ~11k | Automated safety check: Warn | MIT | 5 mo ago |
| 119 | 119.Cc Review 结构化代码审查工作流,适用于显式 quick/full/security review;不负责普通实现或 bug 修复流程。 | doccker/ | 1.1k | — | ~541 | Automated safety check: Pass | Unknown | 1 mo ago |
| 120 | 120.Sast Analysis Perform codebase analysis and architecture mapping as the first phase of a security assessment. | utkusen/ | 1.3k | — | ~1k | Automated safety check: Pass | MIT | 6 mo ago |
| 121 | 121.Security Review Security code review for Tauri/Rust/TypeScript desktop apps and Hono/oRPC APIs. | deadlock-mod-manager/ | 574 | — | ~1.8k | Automated safety check: Pass | CC-BY-SA-4.0 | today |
| 122 | Routes a review request to the right mode and reference file in the claude-code-harness project: code, plan or scope review, a quick closeout, a dual Claude-and-Codex opinion, or a security-only pass. | Chachamaru127/ | 3.2k | — | ~3.6k | Automated safety check: Notes | MIT | 3 days ago |
| 123 | 123.Production Grade A skill your agent uses when the user wants to build, create, or develop anything — websites, apps, APIs, services, platforms. | nagisanzenin/ | 181 | — | ~16k | Automated safety check: Notes | No licence | 1 mo ago |
| 124 | Review Hermes settings for security risks. An agent skill from OnlyTerp/hermes-optimization-guide. | OnlyTerp/ | 683 | — | ~1.1k | Automated safety check: Notes | MIT | 14 days ago |
| 125 | Runs trace-mcp security, quality-gate and antipattern checks before a commit or pull request, and builds a symbol-level diff for the PR description. | nikolai-vysotskyi/ | 186 | — | ~565 | Automated safety check: Pass | MIT | today |
| 126 | 126.Do Analyze 对 jar-analyzer-engine 构建的 SQLite 数据库执行安全审计分析查询。支持方法调用搜索、调用链追踪、Spring 组件分析、字符串搜索、漏洞模式检测等。 | jar-analyzer/ | 141 | — | ~2.5k | Automated safety check: Pass | No licence | 6 mo ago |
| 127 | 127.Security Use before shipping to production. An agent skill from garagon/nanostack. | garagon/ | 207 | — | ~3.7k | Automated safety check: Notes | Apache-2.0 | 28 days ago |
| 128 | Audit source code for exploitable vulnerabilities using threat-model-driven review, taint tracing, invariant checking, and variant analysis. | trilwu/ | 156 | — | ~3.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 129 | Audits the Safe multisig wallets of DeFi protocols for governance misconfigurations, scoring each against a finding library and producing a severity-ranked report. | forefy/ | 152 | — | ~1.4k | Automated safety check: Pass | MIT | 4 days ago |
| 130 | Perform post-implementation security review on recent code changes and produce prioritized hardening recommendations with file evidence and fix guidance. | Bald0Wang/ | 187 | — | ~694 | Automated safety check: Pass | No licence | 7 mo ago |
| 131 | Reviews APIs, configuration schemas and library interfaces for footguns, the designs where the easy path leads to insecure use, using a four-phase analysis. | trailofbits/ | 7.4k | 3 repos | ~3k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 132 | Plan, execute, document, and retest authorized security assessments of AI agents and multi-agent workflows using safe adversarial cases, synthetic identities, canaries, and evidence-based findings. | seb1n/ | 206 | — | ~2.8k | Automated safety check: Pass | MIT | 1 mo ago |
| 133 | Finds sensitive data that C, C++ or Rust code never wipes from memory, including wipes the compiler optimizes away, using source, assembly and control-flow analysis. | trailofbits/ | 7.4k | 4 repos | ~5.9k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 134 | A skill your agent uses when 用户需要对代码进行安全审计、发现安全漏洞、上线前安全评估、检查代码是否存在安全风险时。触发场景:代码安全审计、安全审计、白盒审计、安全扫描、漏洞检测、漏洞挖掘、SQL注入、命令注入、XSS、SSRF、反序列化、认证绕过、越权、代码安全检查、security audit、code… | ProgrammerAnthony/ | 235 | — | ~1.6k | Automated safety check: Pass | MIT | 5 mo ago |
| 135 | Scans a repository's source for security vulnerabilities with the supercov CLI, pointing to the line of each finding and mapping it to CWE classes. | supercorp-ai/ | 150 | 1 repo | ~236 | Automated safety check: Pass | MIT | yesterday |
| 136 | Perform a requested security review of a NemoClaw PR or a PR linked to an issue. | NVIDIA/ | 23k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | today |
| 137 | 137.Review Swarm Parallel read-only multi-agent review of a current git diff or explicit file scope to find behavioral regressions, security or privacy risks, performance or reliability issues, and contract or test… | Dimillian/ | 4k | 1 repo | ~1.6k | Automated safety check: Pass | MIT | 6 mo ago |
| 138 | 138.Absolute Audit Vulnerability and security scan (defensive, your own repo): dependency CVEs plus risky code patterns (secrets, injection, weak authz), severity x reachability triaged and remediated without… | maddhruv/ | 218 | 1 repo | ~1.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 139 | 139.Gstack Cso Security audit workflow for OPC code, providers, plugins, Electron surfaces, local HTTP bridges, filesystem access, and command execution. | LING71671/ | 961 | — | ~321 | Automated safety check: Notes | Unknown | 2 mo ago |
| 140 | 140.Fix Scan Finding Fix a CRITICAL Trivy finding that is failing CI in this repo (a vulnerability, misconfiguration, or secret from security-scan.yml or image-scan.yml), or add, review, or retire an entry in… | malloydata/ | 116 | — | ~5.1k | Automated safety check: Pass | MIT | today |
| 141 | 141.Xray Pre Audit A skill your agent uses when preparing for a security audit, performing reconnaissance on a new codebase, or creating a protocol overview. | ccashwell/ | 131 | — | ~25k | Automated safety check: Pass | MIT | 8 days ago |
| 142 | 142.EdgeOne ClawScan Runs a security health check on an OpenClaw environment and audits skills before or after installation for supply-chain and data-leak risks. | Tencent/ | 6.8k | — | ~9.5k | Automated safety check: Pass | MIT | today |
| 143 | 143.Rank Audit Full SEO/GEO/AEO/Citability/Content/Performance/Vertical/Security audit with auto-fix. | Houseofmvps/ | 147 | — | ~2k | Automated safety check: Pass | MIT | 3 mo ago |
| 144 | A skill your agent uses when the user asks for a deep, exhaustive, multi-pass, or variance-reducing repository-wide or scoped-path Codex Security scan. | vlinx-io/ | 270 | — | ~3.3k | Automated safety check: Pass | MIT | yesterday |
Explore related skills
Category
More topics in Security
- Web application vulnerabilities467
- Vulnerability scanning304
- Static analysis and SAST283
- Security operations246
- Supply chain security233
- Threat modeling228
- Penetration testing182
- Cryptography159
- Prompt injection and agent security157
- Red teaming and adversary simulation148
- Reverse engineering and malware130
- OSINT119
- Secure coding113
- Cloud security95
- Digital forensics88
- Smart contract auditing79
- Fuzzing76
- Bug bounty75
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails38