Agent-Threat-Rule/agent-threat-rules

Open detection-rule standard for AI agent security threats — like Sigma, but for AI agents. Executable rules across 10 categories; merged into Microsoft AGT, Cisco AI Defense, MISP, OWASP, FINOS & SigmaHQ. MIT-licensed.

This repository also configures its own agents. See what agent-threat-rules tells them →

383Stars on the repository
35Mods indexed here, across every type
yesterdayLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Write, review, or improve SwiftUI code following best practices for state management, view composition, performance, macOS-specific APIs, and iOS 26+ Liquid Glass adoption. Use when building new SwiftUI features, refactoring existing views, reviewing code quality, or adopting modern SwiftUI patterns.

not rated 383 +1 yesterday A 67 tokens original MIT

create-auth-skill

02

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Scaffold and implement authentication in TypeScript/JavaScript apps using Better Auth. Detect frameworks, configure database adapters, set up route handlers, add OAuth providers, and create auth UI pages. Use when users want to add login, sign-up, or authentication to a new or existing project with Better Auth.

not rated 383 +1 yesterday A 66 tokens original MIT

create-skill

03

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Creates a new agent skill following best practices for structure, description writing, and progressive disclosure. Use when the user wants to author a new SKILL.md, scaffold a skill directory, or build a reusable skill. Do NOT use for improving an existing skill — use optimize-skill instead.

not rated 383 +1 yesterday A 61 tokens original MIT

optimize-skill

04

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Analyzes and optimizes an existing agent skill for conciseness, discoverability, and adherence to best practices. Use when a skill needs improvement, is too verbose, has poor activation rates, or fails to follow progressive disclosure patterns. Do NOT use for creating a new skill from scratch — use create-skill…

not rated 383 +1 yesterday A 69 tokens original MIT

adr-skill

05

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Create and maintain Architecture Decision Records (ADRs) optimized for agentic coding workflows. Use when you need to propose, write, update, accept/reject, deprecate, or supersede an ADR; bootstrap an adr folder and index; consult existing ADRs before implementing changes; or enforce ADR conventions. This skill uses…

not rated 383 +1 yesterday A 89 tokens original MIT

adr-skill

06

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Create and maintain Architecture Decision Records (ADRs) optimized for agentic coding workflows. Use when you need to propose, write, update, accept/reject, deprecate, or supersede an ADR; bootstrap an adr folder and index; consult existing ADRs before implementing changes; or enforce ADR conventions. This skill uses…

not rated 383 +1 yesterday A 89 tokens copy · 100% MIT

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Generate clinical trial protocols for medical devices or drugs. This skill should be used when users say "Create a clinical trial protocol", "Generate protocol for [device/drug]", "Help me design a clinical study", "Research similar trials for [intervention]", or when developing FDA submission documentation for…

not rated 383 +1 yesterday A 70 tokens original MIT

example-skill

09

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

This skill should be used when the user asks to "demonstrate skills", "show skill format", "create a skill template", or discusses skill development patterns. Provides a reference template for creating Claude Code plugin skills.

not rated 383 +1 yesterday A 48 tokens copy · 100% MIT

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex needs its repo

FHIR API development guide for building healthcare endpoints. Use when: (1) Creating FHIR REST endpoints (Patient, Observation, Encounter, Condition, MedicationRequest), (2) Validating FHIR resources and returning proper HTTP status codes and error responses, (3) Implementing SMART on FHIR authorization and OAuth…

not rated 383 +1 yesterday A 132 tokens original MIT

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Automate payer review of prior authorization (PA) requests. This skill should be used when users say "Review this PA request", "Process prior authorization for [procedure]", "Assess medical necessity", "Generate PA decision", or when processing clinical documentation for coverage policy validation and authorization…

not rated 383 +1 yesterday A 63 tokens original MIT

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Write, review, or improve SwiftUI code following best practices for state management, view composition, performance, macOS-specific APIs, and iOS 26+ Liquid Glass adoption. Use when building new SwiftUI features, refactoring existing views, reviewing code quality, or adopting modern SwiftUI patterns.

not rated 383 +1 yesterday A 67 tokens copy · 100% MIT

create-auth-skill

14

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Scaffold and implement authentication in TypeScript/JavaScript apps using Better Auth. Detect frameworks, configure database adapters, set up route handlers, add OAuth providers, and create auth UI pages. Use when users want to add login, sign-up, or authentication to a new or existing project with Better Auth.

not rated 383 +1 yesterday A 66 tokens copy · 100% MIT

create-skill

15

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Creates a new agent skill following best practices for structure, description writing, and progressive disclosure. Use when the user wants to author a new SKILL.md, scaffold a skill directory, or build a reusable skill. Do NOT use for improving an existing skill — use optimize-skill instead.

not rated 383 +1 yesterday A 61 tokens copy · 100% MIT

optimize-skill

16

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Analyzes and optimizes an existing agent skill for conciseness, discoverability, and adherence to best practices. Use when a skill needs improvement, is too verbose, has poor activation rates, or fails to follow progressive disclosure patterns. Do NOT use for creating a new skill from scratch — use create-skill…

not rated 383 +1 yesterday A 69 tokens copy · 100% MIT

write-a-skill

17

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Create new agent skills with proper structure, progressive disclosure, and bundled resources. Use when user wants to create, write, or build a new skill.

not rated 383 +1 yesterday A 35 tokens copy · 100% MIT

agent-manager-skill

18

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex needs its repo

Manage multiple local CLI agents via tmux sessions (start/stop/monitor/assign) with cron-friendly scheduling.

not rated 383 +1 yesterday A 28 tokens copy · 89% MIT

ffuf-claude-skill

21

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

Skill "ffuf-claude-skill" from Agent-Threat-Rule/agent-threat-rules, covering ffuf claude skill, when to use this skill and instructions.

not rated 383 +1 yesterday A 14 tokens original MIT

playwright-skill

23

Agent-Threat-Rule/agent-threat-rules

Skill Claude CodeCodex

IMPORTANT - Path Resolution: This skill can be installed in different locations (plugin system, manual installation, global, or project-specific). Before executing any commands, determine the skill directory based on where you loaded this SKILL.md file, and use that path in all commands below.

not rated 383 +1 yesterday A 60 tokens original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: