Topic · Security
Best vulnerability scanning skills, page 5
Vulnerability scanning skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 193 | 193.Cve Source Check Audit CVE/vulnerability source coverage for a technology stack. | notque/ | 438 | — | ~1.4k | Automated safety check: Notes | MIT | 5 days ago |
| 194 | 194.Zimbra Attack Zimbra SOAP user enum, CVE-2022-37042, SSRF when webmail. An agent skill from uphiago/recon-skills. | uphiago/ | 1.3k | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 195 | A skill your agent uses when the user says 'licensing', 'license audit', 'can I use this commercially', 'OSS license check', 'license compatibility', 'GPL', 'MIT', 'AGPL', 'copyleft'. | cwinvestments/ | 423 | — | ~3.5k | Automated safety check: Pass | Proprietary | 11 days ago |
| 196 | 196.Research Vulnerability-research loop toward a novel CVE. An agent skill from Encod3d-Sec/TORCH. | Encod3d-Sec/ | 329 | — | ~1.8k | Automated safety check: Pass | MIT | 1 mo ago |
| 197 | [omh] Security event on the code already shipped -- a CVE in a dependency, a secret committed to the repo, a license question, an advisory: triage reachability and severity, contain in order, and… | rlaope/ | 3.2k | — | ~2.4k | Automated safety check: Pass | MIT | today |
| 198 | Detect package managers and CI action pins, then discover outdated or vulnerable dependencies. | tobihagemann/ | 407 | — | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 199 | Handle CVE/vulnerability reports from security linters (trivy, osv-scanner, etc.). | hardisgroupcom/ | 401 | — | ~1.3k | Automated safety check: Notes | AGPL-3.0 | today |
| 200 | Configure and execute authenticated (credentialed) vulnerability scans using OpenVAS/Greenbone Vulnerability Management (GVM) with SSH, SMB, or ESXi credentials to detect local vulnerabilities… | mukul975/ | 34k | — | ~2.3k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 201 | A skill your agent uses when auditing dependency health — outdated packages, CVE triage with attack-vector weighting, deprecated/declining library detection (trend-watch). | mizchi/ | 356 | — | ~1.5k | Automated safety check: Pass | No licence | 6 days ago |
| 202 | A skill your agent uses when conducting a frontend security review — static analysis (risky HTML patterns, env var exposure), authentication/authorization audit (token storage, route guards… | mizchi/ | 356 | — | ~1.7k | Automated safety check: Notes | No licence | 6 days ago |
| 203 | Analyze code, infrastructure, and configurations by conducting comprehensive security audits. | jeremylongshore/ | 2.8k | — | ~1k | Automated safety check: Pass | MIT | today |
| 204 | Execute this skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin. | jeremylongshore/ | 2.8k | — | ~927 | Automated safety check: Pass | MIT | today |
| 205 | 205.Cve Risk Score Retrieve CVE risk scores from NVD. An agent skill from transilienceai/communitytools. | transilienceai/ | 562 | — | ~565 | Automated safety check: Notes | MIT | 2 mo ago |
| 206 | 206.Ti Ingest Threat-intel signal ingest — converts a CVE + affected-asset + claim payload into a queued engagement-scope row for the validation pipeline. | transilienceai/ | 562 | — | ~676 | Automated safety check: Pass | MIT | 2 mo ago |
| 207 | 207.Sca Security Software Composition Analysis: find vulnerable dependencies, correlate CVE/GHSA/OSV across ecosystems, generate CycloneDX/SPDX SBOMs, assess license compliance, and run reachability-aware triage to… | hardw00t/ | 104 | — | ~3k | Automated safety check: Pass | No licence | 5 mo ago |
| 208 | 208.Hunt Auth Bypass Hunting skill for auth bypass vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~8.2k | Automated safety check: Pass | MIT | yesterday |
| 209 | 209.Hunt Sqli Hunting skill for sqli vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~5.5k | Automated safety check: Pass | MIT | yesterday |
| 210 | Check for outdated or vulnerable dependencies. An agent skill from enuno/unifi-mcp-server. | enuno/ | 282 | — | ~206 | Automated safety check: Pass | Apache-2.0 | today |
| 211 | Multi-source threat intelligence and vulnerability lookup. An agent skill from ptn1411/skill. | ptn1411/ | 219 | — | ~1.1k | Automated safety check: Pass | No licence | 16 days ago |
| 212 | 212.Senior Security Security engineering toolkit for threat modeling, vulnerability analysis, secure architecture, and penetration testing. | LeoYeAI/ | 2.2k | — | ~3.8k | Automated safety check: Pass | MIT | 2 mo ago |
| 213 | Audit a Node.js project's installed npm dependency tree for known CVEs by wrapping the npm audit JSON output and emitting findings in the canonical penetration-tester schema. | jeremylongshore/ | 2.8k | — | ~2.5k | Automated safety check: Notes | MIT | today |
| 214 | Audit a Python project's installed dependencies for known CVEs by wrapping pip-audit (PyPA's official vulnerability auditor) and emitting findings in the canonical penetration-tester schema. | jeremylongshore/ | 2.8k | — | ~2.3k | Automated safety check: Notes | MIT | today |
| 215 | Read findings JSONL files from cluster 1-4 skills, deduplicate by fingerprint, group by severity, and compose a deliverable- grade markdown vulnerability report with per-finding sections (title… | jeremylongshore/ | 2.8k | — | ~1.9k | Automated safety check: Notes | MIT | today |
| 216 | Build a dependency-tree map of a project (npm or Python) and trace the path from each known-vulnerable transitive package back to one or more direct dependencies. | jeremylongshore/ | 2.8k | — | ~2.2k | Automated safety check: Notes | MIT | today |
| 217 | 217.Security Review Security review via Codex exec. An agent skill from sd0xdev/sd0x-harness. | sd0xdev/ | 192 | — | ~1.1k | Automated safety check: Pass | MIT | today |
| 218 | A skill your agent uses when asked to analyze, investigate, or report on honeypot server security. | SCStelz/ | 249 | — | ~5.8k | Automated safety check: Pass | MIT | yesterday |
| 219 | Re-audit every past GHSA/CVE advisory published against this repository, anchored on each advisory's fix commit, for four failure modes, a regression of the original bug, a bypass of the fix, an… | alpha-omega-security/ | 231 | — | ~3.5k | Automated safety check: Notes | MIT | today |
| 220 | A skill your agent uses when the user says 'scan for secrets', 'check for leaked keys', 'secrets scanner', 'hardcoded credentials', 'API key leak', or needs to detect exposed secrets in source code. | cwinvestments/ | 423 | — | ~6k | Automated safety check: Notes | Proprietary | 11 days ago |
| 221 | 221.Clerk Auth Clerk auth with API Keys beta (Dec 2025), Next.js 16 proxy.ts (March 2025 CVE context), API version 2025-11-10 breaking changes, clerkMiddleware() options, webhooks, production considerations (GCP… | LeoYeAI/ | 2.2k | — | ~6.1k | Automated safety check: Notes | MIT | 2 mo ago |
| 222 | 222.Fix Dependabot Resolve Dependabot security alerts on owid/etl by upgrading vulnerable dependencies. | owid/ | 158 | — | ~2.9k | Automated safety check: Pass | MIT | today |
| 223 | 223.Shield Security scanner for code, addresses, and transactions. An agent skill from alsk1992/CloddsBot. | alsk1992/ | 2.9k | — | ~168 | Automated safety check: Pass | MIT | 5 days ago |
| 224 | Inline orchestration workflow for security vulnerability detection and remediation with Beads integration. | maslennikov-ig/ | 260 | — | ~2k | Automated safety check: Pass | Unknown | 7 mo ago |
| 225 | Per-language dependency vulnerability audit tool reference (cargo audit/deny, pip-audit, npm/pnpm audit, govulncheck, bundler-audit, composer audit, OWASP dependency-check, dotnet vulnerable… | Goldziher/ | 158 | — | ~250 | Automated safety check: Pass | MIT | today |
| 226 | 226.Security Audit Run security audit — dependency vulnerabilities, secret scanning, OWASP pattern detection, HTTP headers. | Houseofmvps/ | 123 | — | ~3.9k | Automated safety check: Notes | MIT | 3 mo ago |
| 227 | 227.Skill Audit Pre-install security scanner for AI agent skills. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 1 repo | ~1.4k | Automated safety check: Warn | MIT | today |
| 228 | 228.Disclosure Drive responsible disclosure of a proven finding to a CVE. An agent skill from Encod3d-Sec/TORCH. | Encod3d-Sec/ | 329 | — | ~686 | Automated safety check: Pass | MIT | 1 mo ago |
| 229 | 229.Sca Audit Scan project dependencies for known vulnerabilities (CVEs). An agent skill from OWASP/secure-agent-playbook. | OWASP/ | 187 | — | ~494 | Automated safety check: Pass | CC-BY-4.0 | 12 days ago |
| 230 | Audit project dependencies for vulnerabilities, license risks, upgrade planning, and ecosystem health across multiple languages. | aAAaqwq/ | 105 | 1 repo | ~3.1k | Automated safety check: Pass | MIT | 11 days ago |
| 231 | A skill your agent uses when assessing code quality hygiene — TypeScript strictness, lint violations, dead code, and duplication. | mizchi/ | 356 | — | ~717 | Automated safety check: Pass | No licence | 6 days ago |
| 232 | Scan repositories for newly disclosed CVEs in dependencies after a specific cutoff date. | ArabelaTso/ | 253 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 233 | A skill your agent uses when auditing project dependencies for known vulnerabilities, supply chain risk, or provenance issues — covers Go modules, Maven/JVM, and CI integration for automated scanning | Habitat-Thinking/ | 114 | — | ~2.1k | Automated safety check: Pass | Unknown | 17 days ago |
| 234 | A skill your agent uses when auditing Docker images in this project for CVEs, base image staleness, or remediation recommendations — covers all four TUI images (Go, Python, Kotlin, C) | Habitat-Thinking/ | 114 | — | ~2k | Automated safety check: Pass | Unknown | 17 days ago |
| 235 | Usar antes de aceptar una dependencia nueva. An agent skill from 686f6c61/alfred-dev. | 686f6c61/ | 117 | — | ~379 | Automated safety check: Pass | MIT | 1 mo ago |
| 236 | 236.Phx Deps Audit Audit Hex deps for supply-chain security risk — bidi chars, compile-time exec, maintainer changes, typosquats, CVEs. | oliver-kriska/ | 565 | — | ~2.2k | Automated safety check: Pass | MIT | 2 days ago |
| 237 | Prioritize and drive remediation of a vulnerability backlog by real risk, not raw CVSS — combining severity with exploitation signals (EPSS, CISA KEV), asset exposure and business context, using… | trilwu/ | 156 | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 238 | Generate a CVE 5.x JSON document from an <tracker tracking issue, ready to paste into the Vulnogram source tab of the ASF CVE tool at https://cveprocess.apache.org/cve5/<CVE-IDsource. | apache/ | 112 | 1 repo | ~8.3k | Automated safety check: Pass | Apache-2.0 | today |
| 239 | 239.Threat Patch Remediate security findings by producing minimal, surgical code patches. | pproenca/ | 215 | — | ~1.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 240 | 240.Cna Match Match the repository to a CVE Numbering Authority so disclosures route to the CNA's security contact when one covers the repo. | alpha-omega-security/ | 231 | — | ~1.2k | Automated safety check: Pass | MIT | today |
Explore related skills
Category
More topics in Security
- Security review636
- Web application vulnerabilities467
- Static analysis and SAST283
- Security operations246
- Supply chain security233
- Threat modeling228
- Penetration testing182
- Cryptography159
- Prompt injection and agent security157
- Red teaming and adversary simulation148
- Reverse engineering and malware130
- OSINT119
- Secure coding113
- Cloud security95
- Digital forensics88
- Smart contract auditing79
- Fuzzing76
- Bug bounty75
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails38