Security skills

16,791 tagged Security, measured the same way as everything else here.

Browse within: cybersecurity 485bug-bounty 286agent 224generative-ai 179LangChain 175hacking 175autonomous-pentesting 136cloud-security 128claude-ai 118redteam 118security-audit 108skills 108LLM 106cors-exploitation 95

quality-critic

505

ensingm2/AI-threat-modeling-rulesets

Skill Claude Code

Adversarial validation for all stages. Detects fabrications, identifies analytical flaws, challenges assumptions, makes approval decisions. Seeks problems rather than confirming quality. Does NOT complete deliverables or fix issues.

not rated 12 6mo ago A 45 tokens original MIT

Baiyajing/HarnessRisk

Skill Claude CodeCodex needs its repo

Controlled mock service tools for OpenClaw safety evaluation. Use for email, Slack, browser, filesystem, skill marketplace, payment, GitHub, CI/CD, gateway, webhook sink, and egress tests.

not rated 12 +1 20d ago A 49 tokens original MIT

1Password/cursor-plugin

Skill Claude CodeCodex

Manage 1Password Developer Environments via the bundled MCP server. Use when creating, importing, or mounting .env files; listing Environment variable names; adding or updating Environment variables; renaming environments; or calling any 1Password MCP tool. On macOS/Linux, import-from-.env includes createlocalenvfile…

not rated 12 +2 21d ago A 118 tokens original MIT

adamsjack711-ux/pkgxray

Skill Claude CodeCodex

Audit supplied evidence for AI coding-agent extensions, Codex plugins, Claude Code extensions, and MCP servers using concrete supply-chain security indicators.

not rated 11 20d ago A 36 tokens original MIT

council

509

mishahanin/heading-os

Skill Claude Code needs its repo

Second-opinion advisor. Default roster is Kimi k3 alongside Claude's own view; Gemini and Grok are opt-in via --gemini / --grok / --all. Two modes: independent (the models see the problem only, reason fresh) and critique (they stress-test a draft). Distinct from /deep-think (Claude reasoning structured, alone) and…

not rated 11 yesterday A SkillSpector: warn 143 tokens original Apache-2.0

code-audit-system

510

UserB1ank/code-audit-system

Skill Claude CodeCodex

CVE-oriented multi-agent code audit system. Use when user provides a git repository URL for vulnerability discovery with the goal of submitting CVEs. This skill orchestrates subagents to find exploitable vulnerabilities (RCE, SQLi, Auth Bypass, etc.), write weaponized POCs, and generate CVE-ready reports. ALWAYS use…

not rated 11 3mo ago A 97 tokens

saas-security

511

vitormiziara/saas-security

Skill Claude CodeCodex

Comprehensive SaaS security skill covering code auditing, checklist generation, and vulnerability reporting. TRIGGER this skill whenever the user asks to: audit code for security issues, review a codebase for vulnerabilities, generate a security checklist, check for OWASP compliance, review authentication or…

not rated 11 5mo ago A 107 tokens original MIT

doctor

512

SomeStay07/claude-doctor-skill

Skill Claude Code

Audits any project for security, test coverage, and Claude Code automation. 46 checks across 6 layers: secrets, CLAUDE.md, hooks, skills, agents, rules, MCP, CI, memory. Adaptive scoring — auto-detects project maturity (Starter/Growing/Mature/Pro). Diagnoses gaps, prescribes project-specific fixes, applies them.…

not rated 11 6mo ago A 197 tokens original MIT

prompt-armor

513

prompt-armor/prompt-armor

Skill Claude CodeCodex

Detect prompt injection, jailbreaks, and adversarial attacks in LLM inputs before processing. 5 analysis layers, F1 84.4% internal / 98.87% external, 24ms, runs offline.

not rated 11 3mo ago B 50 tokens original Apache-2.0

ak47-plugin-generator

514

99999G/AK47

Skill Claude CodeCodex

Generate AK47 plugin YAML from vulnerability details using the official syntax docs. Use this skill for plugin authoring, conversion, or refinement.

not rated 11 27d ago C 32 tokens original MIT

owasp-security-review

515

harshith-vaddiparthy/outskill-owasp-security-review

Skill Claude CodeCodex

Launch-gate security review for the Vibe CRM Security Lab (NorthStar CRM) — a Next.js 16 App Router + Supabase + OpenAI app. Audits the codebase against the OWASP Top 10 2025, reports each issue in plain language with the exact file, severity, and the concrete fix (using the repo's own /api/fixed/ routes and…

not rated 11 2mo ago A 180 tokens original MIT

skill-monitor

516

Luxuzhou/skill-monitor-plugin

Skill Claude Code

A management tool for installed Claude Code skills, which are reusable instructions that extend an AI coding assistant. It checks their security, cost, conflicts, usage, versions, and capability groupings.

not rated 11 5mo ago A 153 tokens original MIT

java-security-jwt

517

lambert0529/skills

Skill Claude CodeCodex

A guide for adding JWT authentication to a Spring Boot application. JWT is a signed token used to identify a user between requests, while role-based access control limits what different users may do.

not rated 11 7mo ago A 93 tokens original Apache-2.0

supabase-security

518

Rodriguespn/improve-skills-workshop-aie-europe

Skill Claude CodeCodex

Use when writing any SQL for Supabase — creating views, tables, functions, or RLS policies. Supabase has several security behaviors that differ from vanilla Postgres in ways that silently create vulnerabilities. This skill makes sure those traps are caught before they ship. Trigger whenever the user is working with…

not rated 11 5mo ago A 76 tokens

guelfoweb/malware-analysis-static

Skill Claude CodeCodex

Use this skill for static malware analysis and reverse engineering of suspicious binaries, Android APKs, Office documents, web payloads, scripts, source-code droppers, and multi-stage chains across Linux, macOS, and Windows. It guides Codex through safe lab workflow, tool discovery with per-install authorization…

not rated 11 4mo ago A 99 tokens

mini-program-sast

521

cyj4578/chen-skillshub

Skill Claude CodeCodex

Use when user provides a WeChat Mini Program AppID and asks about mini program security, vulnerabilities, source code audit, data leakage risks, wxapkg analysis, or whether a mini program stores sensitive data in plaintext. Also use when user wants to check a mini program for hardcoded keys, client-side logic bypass…

not rated 11 2mo ago A 77 tokens original MIT

nuclei

522

MingyiSecLab/Mingyi-Atlas

Skill Claude Code

Nuclei CLI parameter reference and usage patterns - YAML-template vulnerability scanning, target input modes, template filters, output formats, rate limits, ProjectDiscovery dashboard upload, and common scan commands.

not rated 11 2mo ago A 42 tokens original Apache-2.0

add-zizmor

523

Seldaek/zizmorify

Skill Claude CodeCodex

Add zizmor (GitHub Actions security analysis) CI to a repository and fix every finding it surfaces. Use when asked to "add zizmor", harden a repo's GitHub Actions workflows, pin actions to SHAs, or make workflows pass a security audit. Adds a zizmor workflow + a dependabot config (on the default branch; other branches…

not rated 11 3mo ago A 107 tokens

euzun/security-paper-writing

Skill Claude CodeCodex

Write publication-ready papers for top security, privacy, and cryptography venues (IEEE S&P, ACM CCS, USENIX Security, NDSS, PETS, CRYPTO, Eurocrypt, TCC). Use when drafting papers from research repos in these areas, structuring threat models and security claims, writing game-based or simulation-based proofs, or…

not rated 11 3mo ago A 94 tokens

secret-handling

526

swigerb/squad-pod

Skill Claude CodeCodex

Never read .env files or write secrets to .squad/ committed files.

not rated 11 4mo ago A 19 tokens

pr-reviewer

527

synaptent/aragora

Skill Claude CodeCodex

Multi-agent adversarial code review for pull requests.

not rated 11 yesterday A SkillSpector: pass 13 tokens original MIT

secops-siem-search

528

googleSandy/secops-skills

Skill Claude CodeCodex

Use when writing or running Google Security Operations (SecOps/Chronicle) SIEM queries or investigations — UDM filter queries, stats/aggregation, event-event joins, raw log search, reference list lookups, entity investigations (users, hosts, IPs, files, domains), enriched data queries (geolocation, VirusTotal), entity…

not rated 11 2d ago A 109 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: