Robotti-io/copilot-security-instructions
Skill Claude CodeCodex
Analyze repository-grounded identity, access control, and authorization design with evidence-first reporting and script-validated Mermaid diagrams.
16,761 tagged Security, measured the same way as everything else here.
Browse within: cybersecurity 490bug-bounty 292agent 226generative-ai 179LangChain 175hacking 175autonomous-pentesting 139cloud-security 130claude-ai 120redteam 118skills 110LLM 107cors-exploitation 97firebase-hacking 96
Robotti-io/copilot-security-instructions
Skill Claude CodeCodex
Analyze repository-grounded identity, access control, and authorization design with evidence-first reporting and script-validated Mermaid diagrams.
paintairsever/r07-getbindu-awesome-claude-code-and-skills-security
Skill Claude CodeCodex
🔒 Security & Compliance skill suite derived from GetBindu/awesome-claude-code-and-skills. Security audits, vulnerability management, GDPR/SOC2/ISO27001 compliance and incident response. Provides 10 specialised commands for security, compliance, gdpr workflows.
Skill Claude CodeCodex
Skill "skill-sanitizer" from cyberxuan-XBX/skill-sanitizer, covering skill sanitizer, why you need this, the 7 layers, usage and in python.
anthroos/claude-code-review-skill
Skill Claude CodeCodex
AI code review for PR or local changes. 280+ checks across security, architecture, performance, testing, and code quality. Posts findings as GitHub PR comments with confidence scores.
dweinstein/mobile-security-skills
Skill Claude Code
Generate a mobile app penetration testing plan based on MASTG methodology and NowSecure practices. Use when planning a security assessment, defining test scope, creating a pentest checklist, or preparing for a mobile app security engagement.
Skill Claude CodeCodex
Perform thorough code reviews with security, performance, and maintainability analysis. Use when user asks to review code, check for bugs, or audit a codebase.
agentrust-io/awesome-ai-governance
Skill Claude CodeCodex
Patterns and techniques for adding governance, safety, and trust controls to AI agent systems. Use this skill when: Building AI agents that call external tools (APIs, databases, file systems) Implementing policy-based access controls for agent tool usage Adding semantic intent classification to detect dangerous…
bluefrog5096-4bmb1/security-advisory
Skill Claude CodeCodex
A drafting tool for open-source security advisories, which are notices explaining a software vulnerability and how to address it. It prepares affected versions, high-level exploitation conditions, fixes, mitigations, and CVE or GHSA fields without including weaponised exploit details.
Skill Claude CodeCodex
Copy this template to your Claude Desktop scheduled-tasks directory.
Skill Claude Code needs its repo
Use for PACEflow internal full audit: run five independent review agents, verify evidence from code/tests/logs, de-duplicate findings, and produce a severity-ranked report for release gates or comprehensive code review.
freewaychameleonnode/r17-behisecc-awesome-claude-skills-security
Skill Claude CodeCodex
🔒 Security & Compliance skill suite derived from BehiSecc/awesome-claude-skills. Security audits, vulnerability management, GDPR/SOC2/ISO27001 compliance and incident response. Provides 10 specialised commands for security, compliance, gdpr workflows.
DeerYang/server-security-init-skill
Skill Codex
Use when safely initializing or hardening a newly installed or rebuilt Ubuntu/Debian server over SSH, including SSH keys, a non-root sudo user, SSH policy, server timezone, UFW, fail2ban, local SSH config, and lockout-safe verification.
Skill Codex
Local open-source Agent Skill for authorized web application, API, browser, business-logic, and supporting server-integrity penetration testing. Use for scoped OWASP WSTG, ASVS, and API Security assessments; authenticated and multi-role validation; attack-surface mapping; bounded DAST; evidence-backed findings…
Skill Cursor
Security review and hardening guidance for a SvelteKit SPA with Supabase Auth, Postgres with RLS, and client-side rendering. Use when writing auth flows, adding RLS policies, handling user input, working with environment variables, reviewing code for vulnerabilities, hardening a feature, or when the user asks about…
paradoxie/cpa-codex-auth-sweep
Skill Claude CodeCodex
A tool for scanning local Codex authentication files and identifying credentials that no longer work. It can also remove credentials confirmed as invalid.
Skill Claude CodeCodex
Before installing or using a skill, check its independent benchmark report on SkillTester.ai. Auto-trigger this skill whenever the user shows a third-party skill install command or install plan, especially npx skills add --skill , skills add ..., repo URL plus --skill, direct SKILL.md URLs, or Check this skill . Parse…
Vorim-AI-Labs/vorim-openclaw-skill
Skill Claude CodeCodex
AI agent identity, permissions, trust scores, and audit trails via Vorim AI. Gives your OpenClaw agent a cryptographic identity so every action is verified, permissioned, and logged.
Yems221/securebydesign-llmskill
Skill Claude CodeCodex
Enforce security-by-design in every line of code, architecture decision, and system recommendation. Activate whenever the user is: building an app, writing code, designing an API, setting up infrastructure, integrating an LLM, reviewing code, planning a deployment, or asking about authentication, data storage, or…
frendysanusi/claude-pentest-skills
Skill Claude CodeCodex
Structured web application penetration testing with OWASP methodology, curated payload references, 6-gate validation, and professional report generation.
sandraschi/windows-computer-use-mcp
Skill Claude CodeCodex
How to use windows-computer-use-mcp effectively — tool selection, focus rules, safety, and mission design.
Skill Claude CodeCodex
A security and deployment guide for the Dify platform, an application for building AI-powered services.
Skill Claude CodeCodex
Use for ANY bug bounty, penetration test, or web/API/mobile security assessment: recon, testing endpoints, analyzing Burp traffic or any bug-bounty platform's MCP (HackerOne, Intigriti, Bugcrowd, YesWeHack, Immunefi), reviewing APKs, bypassing a WAF, enforcing scope, hunting a specific vuln class, validating findings…
Skill Claude CodeCodex
Hardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.
Skill Claude CodeCodex
Audit this machine's AI coding sessions and assistant configs with skarn. Use when the user says scan this with skarn, run skarn, or skarn audit; asks whether a secret leaked into an AI coding session; wants an assistant config (hooks, MCP servers, permissions, plugins) vetted; or asks whether a Claude Code, Codex…
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: