Topic · Security
Best vulnerability scanning skills, page 6
Vulnerability scanning skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 241 | 241.Dependency Scan Detect CVEs and security issues in project dependencies. An agent skill from jwynia/agent-skills. | jwynia/ | 166 | — | ~1.7k | Automated safety check: Pass | MIT | 7 mo ago |
| 242 | Runs the loop from discovering a weakness to confirming it is fixed — scanning, triage, prioritization by real exploitability, remediation tracking, and patch policy. | cbrock84/ | 2k | — | ~1.1k | Automated safety check: Pass | MIT | 20 days ago |
| 243 | Audit trending repos for real exploitable vulnerabilities and disclose responsibly — Private Vulnerability Reporting for code flaws and verified secrets, public PRs only for already-disclosed… | BankrBot/ | 1.2k | — | ~858 | Automated safety check: Pass | No licence | 3 days ago |
| 244 | 244.Senior Secops SecOps for application security, vulnerability management, compliance, and secure development. | borghei/ | 881 | — | ~1.7k | Automated safety check: Pass | MIT | yesterday |
| 245 | 245.Pp Nvd Search the U.S. An agent skill from mvanhorn/printing-press-library. | mvanhorn/ | 2.1k | — | ~1.9k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 246 | 246.Dt Sec Insights Query and analyze Dynatrace security data in security.events with DQL: vulnerabilities, threat detections, compliance posture, and scan coverage. | Dynatrace/ | 161 | — | ~7.2k | Automated safety check: Pass | Apache-2.0 | 6 days ago |
| 247 | Open source governance, security posture badges, license compliance, SBOM generation, and vulnerability management for transparency-driven development | Hack23/ | 239 | — | ~4.6k | Automated safety check: Pass | Apache-2.0 | today |
| 248 | 248.Dependency Audit Audits direct and transitive dependencies for license compliance, maintenance health, CVEs, abandoned packages, and bloat. | Mathews-Tom/ | 328 | — | ~2.7k | Automated safety check: Pass | MIT | 2 days ago |
| 249 | 249.Security Audit Deep security audit covering OWASP Top 10, authentication, authorization, data protection, dependency vulnerabilities, and secrets scanning. | davepoon/ | 3.6k | — | ~442 | Automated safety check: Pass | MIT | yesterday |
| 250 | Conducts HIPAA risk analysis per 45 CFR §164.308(a)(1) following OCR guidance methodology. | mukul975/ | 295 | — | ~4.1k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 251 | 251.Research Ingest Ingest a CVE writeup, blog post, advisory, or GitHub repo into the wiki - fetch, dedup via sources:, update the right technique/tool page(s), re-index. | Encod3d-Sec/ | 329 | — | ~572 | Automated safety check: Pass | MIT | 1 mo ago |
| 252 | Comprehensive security vulnerability analysis for codebases and infrastructure. | aiskillstore/ | 430 | — | ~1.2k | Automated safety check: Notes | No licence | today |
| 253 | 253.Fix Cve Patch a Go dependency to fix a CVE using the appropriate strategy based on Go version compatibility. | openshift-eng/ | 120 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 254 | A skill your agent uses when resolving which GitHub repository to clone for CVE analysis from a container image name in a Jira ticket summary, pscomponent label, or Downstream Component Name field. | openshift-eng/ | 120 | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 255 | A skill your agent uses when /compliance:analyze-cve is invoked with --jira= or --jql= and needs the CVE ID, image name, branch, and enriched ticket context from a Jira issue. | openshift-eng/ | 120 | — | ~3.3k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 256 | 256.Report To Jira A skill your agent uses when posting a completed CVE analysis report or PR follow-up as a Jira comment on the source ticket from /compliance:analyze-cve. | openshift-eng/ | 120 | — | ~4.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 257 | Triage Go stdlib CVEs against an OpenShift release image to determine which CVEs are fixed by the Go version each component was built with. | openshift-eng/ | 120 | — | ~3.5k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 258 | 258.Agent Bom Open security platform for agentic infrastructure — broad scanning plus MCP discovery, CVEs, blast radius, SBOMs, CIS benchmarks (AWS, Azure, GCP, Snowflake), OWASP/NIST/MITRE compliance, AISVS… | LeoYeAI/ | 2.2k | — | ~4.4k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 259 | 259.Agent Bom Scan Open security platform for agentic infrastructure — checks packages for CVEs (OSV, NVD, EPSS, KEV), scans container images, verifies provenance, scans filesystems, and generates SBOMs. | LeoYeAI/ | 2.2k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 260 | 260.Clawsec Scanner Automated vulnerability scanner for agent platforms. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~4.1k | Automated safety check: Pass | MIT | 2 mo ago |
| 261 | 261.Phy Regex Audit Static ReDoS (Regular Expression Denial of Service) vulnerability scanner and regex quality auditor for codebases. | LeoYeAI/ | 2.2k | — | ~5.1k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 262 | 262.Nuclei Suggest Browse the nuclei-templates library, recommend a scoped template set for a given stack, target, or CVE, then run it against an authorized target and report findings. | forefy/ | 152 | — | ~625 | Automated safety check: Pass | MIT | 3 days ago |
| 263 | CI/CD pipeline security gate design guide. An agent skill from revfactory/harness-100. | revfactory/ | 1.3k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 264 | 264.Security Expert Security specialist perspective for the weekly review. An agent skill from mizchi/skills. | mizchi/ | 356 | — | ~455 | Automated safety check: Pass | No licence | 6 days ago |
| 265 | Validate dependency vulnerability checker operations. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~619 | Automated safety check: Pass | MIT | today |
| 266 | A skill your agent uses whenever the user wants to find, shortlist, vet, or enrich US cybersecurity firms — pen-testing/red team, security audits, vCISO, SOC 2 readiness, incident response, managed… | jeremylongshore/ | 2.8k | — | ~3.7k | Automated safety check: Notes | MIT | today |
| 267 | 267.Warden Scan Automated SAST + dependency vulnerability scan. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~750 | Automated safety check: Notes | MIT | today |
| 268 | Scan xss vulnerability scanner operations. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~593 | Automated safety check: Pass | MIT | today |
| 269 | Check whether a running Cisco software version is affected by a published PSIRT security advisory - by OS version, CVE, or advisory ID, with severity and CVSS. | automateyournetwork/ | 675 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 270 | Service fingerprinting, OS detection, NSE script execution, and vulnerability scanning using nmap MCP. | automateyournetwork/ | 675 | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 271 | 271.Nvd Cve Search the National Vulnerability Database for CVEs - find vulnerabilities by keyword or ID, get CVSS scores, weaknesses, affected configurations, and remediation references. | automateyournetwork/ | 675 | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 272 | Analyze CVE reachability in software repositories by examining how vulnerable dependencies are imported and used. | ArabelaTso/ | 253 | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 273 | Detects security vulnerabilities by matching code against known vulnerability patterns, insecure coding idioms, and CVE-style patterns. | ArabelaTso/ | 253 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 274 | Use Trivy vulnerability scanner in offline mode to discover security vulnerabilities in dependency files. | benchflow-ai/ | 1.8k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 275 | 275.Security Auditor Security vulnerability scanner and OWASP compliance auditor for codebases. | curiositech/ | 243 | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 276 | Systematic vulnerability lifecycle management with SLAs: Critical 7d, High 30d, Medium 90d, Low 180d aligned with OWASP, NIST, CIS Controls | Hack23/ | 239 | — | ~6.2k | Automated safety check: Pass | Apache-2.0 | today |
| 277 | Implement static code analysis with linters, formatters, and security scanners to catch bugs early. | aAAaqwq/ | 105 | — | ~664 | Automated safety check: Pass | MIT | 11 days ago |
| 278 | 278.Nuclei Scan Nuclei 漏洞扫描工具使用方法论。当需要对目标进行已知漏洞扫描、CVE 验证、批量 PoC 检测时使用。Nuclei 拥有社区维护的 9000+ 模板,覆盖 CVE、默认口令、配置错误、信息泄露等。任何涉及 nuclei 扫描、CVE 批量验证、PoC 检测、漏洞模板搜索的场景都应使用此技能。也适用于需要从 nuclei 模板中提取 payload 用于手动利用的场景 | wgpsec/ | 1.8k | — | ~1.1k | Automated safety check: Pass | No licence | 4 days ago |
| 279 | 279.Advisories Fetch published GHSA and CVE advisories affecting any package this repository produces, via advisories.ecosyste.ms. | alpha-omega-security/ | 231 | — | ~696 | Automated safety check: Pass | MIT | today |
| 280 | Audit codebase for security vulnerabilities, insecure patterns, and compliance gaps. | EmeaAppGbb/ | 100 | — | ~2.2k | Automated safety check: Notes | MIT | 5 mo ago |
| 281 | 主机安全CVE漏洞修复验证引擎。从主机漏扫报告(Excel)或CVE编号自动提取漏洞,查询威胁情报(NVD/EPSS/MSRC/OVAL),生成修复脚本(fix.sh/fix.ps1),SSH验证脚本可执行性,产出修复验证报告。覆盖 Linux(centos/ubuntu/debian/suse/amazon/fedora/alpine/arch) + Windows + Web-CMS… | infometa/ | 344 | — | ~1.8k | Automated safety check: Notes | Proprietary | today |
| 282 | 282.Vul Analyse 漏扫报告分析 Skill。输入主流厂商漏扫报告(绿盟/深信服/悬镜/明鉴/等保/奇安信/启明/华云安/长亭/Nessus/Trivy/Grype/Snyk/OpenVAS 等 Excel/HTML/JSON/XML/.nessus 格式),自动提取漏洞并去重,可选对接知识库 Provider(修复历史)和威胁情报 Provider(CVE 情报),生成 7… | infometa/ | 344 | — | ~3.9k | Automated safety check: Pass | No licence | today |
| 283 | 283.Security Audit Security auditing and vulnerability assessment specialist. An agent skill from aiskillstore/marketplace. | aiskillstore/ | 430 | 1 repo | ~383 | Automated safety check: Pass | No licence | today |
| 284 | 284.Create Fix PR A skill your agent uses when opening or updating a GitHub pull request after Phase 5 of /compliance:analyze-cve has applied and verified a CVE fix locally. | openshift-eng/ | 120 | — | ~6.2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 285 | 285.Ccs Related Work A skill your agent uses when positioning an ACM CCS submission against the security big-four and specialist literature, including arXiv preprints, prior CCS/S&P/USENIX/NDSS papers, concurrent… | brycewang-stanford/ | 1.2k | — | ~876 | Automated safety check: Pass | MIT | 11 days ago |
| 286 | AI runtime security monitoring — context graph analysis, runtime audit log correlation with CVE findings, and vulnerability analytics queries. | LeoYeAI/ | 2.2k | — | ~748 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 287 | Help an adopter or framework developer file a clean, redacted GitHub issue against the Apache Magpie framework repo when a skill, tool, or doc misbehaves. | apache/ | 112 | — | ~4.7k | Automated safety check: Pass | Apache-2.0 | today |
| 288 | 288.Kernel Security Linux kernel security skill for LSM, hardening, and exploit mitigations. | mohitmishra786/ | 253 | — | ~1.6k | Automated safety check: Pass | MIT | 3 mo ago |
Explore related skills
Category
More topics in Security
- Security review636
- Web application vulnerabilities467
- Static analysis and SAST283
- Security operations246
- Supply chain security233
- Threat modeling228
- Penetration testing182
- Cryptography159
- Prompt injection and agent security157
- Red teaming and adversary simulation148
- Reverse engineering and malware130
- OSINT119
- Secure coding113
- Cloud security95
- Digital forensics88
- Smart contract auditing79
- Fuzzing76
- Bug bounty75
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails38