cloud security skills

154 tagged cloud security, measured the same way as everything else here.

Browse within: bug-bounty 70azure 62firebase-hacking 59hermes-agent 56claude-code-skill 55ai-agents-framework 53claude-skill 53jwt-attacks 51recon 44offensive-security 41aws 18cybersecurity 13wordpress 12infrastructure 9

uphiago/recon-skills

Skill Claude CodeCodex

Use when a bounded list of authorized API endpoints needs consistent CORS triage before browser validation.

1.2k 8d ago A 24 tokens original MIT

iac-checkov

04

AgentSecOps/SecOpsAgentKit

Skill Claude CodeCodex

Infrastructure as Code (IaC) security scanning using Checkov with 750+ built-in policies for Terraform, CloudFormation, Kubernetes, Dockerfile, and ARM templates. Use when: (1) Scanning IaC files for security misconfigurations and compliance violations, (2) Validating cloud infrastructure against CIS, PCI-DSS, HIPAA…

201 4mo ago A 123 tokens

VincentChuWaiChow/vanguard-frontier-agentic

Skill Claude CodeCodex

Multi-jurisdiction fixed assets, depreciation, and impairment reference framework covering PP&E, intangibles, right-of-use assets, and goodwill under US GAAP and IFRS.

21 3d ago A 41 tokens original Apache-2.0

opencode-pentester

08

humaidhahm/opencode-pentester

Skill Claude CodeCodex

Coordinate penetration testing and AI self-code audits via schema-enforced, event-driven engine. All attack categories, domains, tools, and checklists are stored in SQLite (findings.db) and loaded JIT by engine/router.py.

21 6d ago A 52 tokens

pentest

09

humaidhahm/opencode-pentester

Skill Claude CodeCodex

Coordinate penetration testing. Deploy executors, aggregate results, generate reports.

21 6d ago A 0 tokens

cybersecurity-pro

10

pitimon/claude-cybersecurity-skill

Skill Claude CodeCodex

Use when asked to generate professional cybersecurity documents — IR playbooks, DFIR forensic reports, SOC L1–L3 triage runbooks, DevSecOps pipeline configs, threat models, compliance gap analyses, or executive cyber-risk reports. Covers 22 domains across AppSec / Cloud / OT / AI-ML / API / Identity / Web3, bilingual…

5 3mo ago A 158 tokens

ronalships/claude-devops-skill

Skill Claude CodeCodex

Opinionated production-grade DevOps defaults for Terraform, Kubernetes, CI/CD, Docker, cloud security, observability, cost, and disaster recovery. ALWAYS use when generating, reviewing, or modifying any infrastructure code, Kubernetes manifests (Deployment, Service, StatefulSet, Helm, Kustomize), Terraform (.tf…

2 2mo ago B 209 tokens original MIT

iac-security-review

12

uttej-badwane/secure-cloud-prompt-engineering

Skill Claude CodeCodex

Performs comprehensive security reviews of Infrastructure as Code (IaC) files including Terraform, Kubernetes manifests, Dockerfiles, CloudFormation, Ansible playbooks, Helm charts, and CI/CD pipelines. Checks against CIS benchmarks, NIST 800-53, PCI-DSS, SOC2, HIPAA, and GDPR controls. Use this skill whenever the…

2 5mo ago A 193 tokens original MIT

Cognisn/cloudledger

Skill Claude CodeCodex

Analyse plausible attack paths to compromise a scanned AWS account and explain them against the MITRE ATT&CK framework, using the CloudLedger server. Use when the user wants an attack-path analysis, threat modelling, MITRE ATT&CK mapping, adversary/red-team perspective, "how could this account be compromised", or the…

0 12d ago A 88 tokens original MIT

cost-analysis

14

Cognisn/cloudledger

Skill Claude CodeCodex

Analyse AWS spend for scanned accounts — cost breakdown by service and account, trends over time, and a forward forecast — using the CloudLedger server. Use when the user asks what an account costs, which services or accounts drive spend, how costs are trending, or wants a cost breakdown, cost report, or spend…

0 12d ago A 83 tokens original MIT

Cognisn/cloudledger

Skill Claude CodeCodex

Perform a complete review of every security group in a scanned AWS account and explain each group's exposure and implications, using the CloudLedger server. Use when the user wants a security group audit, a firewall review, to understand what a security group allows or exposes, which groups are overly permissive, or…

0 12d ago A 88 tokens original MIT