Security skills

18,405 tagged Security, measured the same way as everything else here.

Browse within: cybersecurity 192openclaw 129bug-bounty 95ctf 55security-tools 55antigravity 54claude-ai 53ai-security 52aws 49incident-response 48penetration-testing 47security-audit 47redteam 45vulnerability detection 43

Ed1s0nZ/CyberStrikeAI

Skill Claude CodeCodex

A skill for examining Android packages, Windows executables, native libraries, and some cross-platform app binaries to understand how they work.

not rated 6.3k +151 9d ago A 70 tokens original Apache-2.0

Ed1s0nZ/CyberStrikeAI

Skill Claude CodeCodex

A method for finding attack chains by combining smaller capabilities such as reading files, writing files, making server requests, or using credentials. It treats a serious outcome as a sequence of separately gained abilities.

not rated 6.3k +151 9d ago A 67 tokens original Apache-2.0

Ed1s0nZ/CyberStrikeAI

Skill Claude CodeCodex

A collection of cybersecurity playbooks for investigating and exploiting specific systems, including GoEdge CDN, ARP man-in-the-middle attacks, BT Panel, OCS, MinIO, and CDN-to-S3 access chains.

not rated 6.3k +151 9d ago A 91 tokens original Apache-2.0

aig-agent-redteam

52

Tencent/AI-Infra-Guard

Skill Claude CodeCodex ✓ vendor

A guide for authorized security testing of AI products, agents, connectors, skills, plugins, code repositories, and related infrastructure. It uses harmless checks and collected evidence to identify and describe security risks.

not rated 6.1k +24 yesterday A 164 tokens original Apache-2.0

edgeone-clawscan

53

Tencent/AI-Infra-Guard

Skill Claude CodeCodex ✓ vendor

The first security skill to install after setting up OpenClaw — powered by Tencent Zhuque Lab. Works like an antivirus for your AI environment: audits installed skills, scans skills before installation, and performs a full OpenClaw security health check to prevent data leaks and privacy risks. Backed by Tencent Zhuque…

not rated 6.1k +24 yesterday A 236 tokens original Apache-2.0

Tencent/AI-Infra-Guard

Skill Claude CodeCodex ✓ vendor

A local static scanner that checks agent-skill files for security risks before they are installed or used. Static analysis examines files without running them.

not rated 6.1k +24 yesterday A 148 tokens original Apache-2.0

bt6-issue-steward

55

elder-plinius/T3MP3ST

Skill Claude CodeCodex

Triage and steward issues in BT6 research and support repositories, deciding whether to answer, reproduce, correct evidence, link work, design a feature, route security, implement, or close.

not rated 6.0k +98 today A 46 tokens AGPL-3.0

interface-review

56

talebook/talebook

Skill Claude CodeCodex

Interface review of a change rather than a screen: uncommitted work, the current branch, or a pull request. Covers interface quality, not correctness, tests, or security.

not rated 5.7k +3 yesterday A 39 tokens original BSD-2-Clause

superplanehq/superplane

Skill Claude CodeCodexCursor

When generating a SuperPlane changelog from merged commits. Use for "what's new" summaries with new integrations, new components/triggers, improvements, security updates, and bug fixes. Output is user-focused markdown in tmp/.

not rated 5.7k +67 today A 50 tokens original Apache-2.0

streamdown

58

vercel/streamdown

Skill Claude CodeCodex ✓ vendor

Implement, configure, and customize Streamdown — a streaming-optimized React Markdown renderer with syntax highlighting, Mermaid diagrams, math rendering, and CJK support. Use when working with Streamdown setup, configuration, plugins, styling, security, or integration with AI streaming (e.g., Vercel AI SDK). Triggers…

not rated 5.6k +5 yesterday A 164 tokens

review-pr

59

dograh-hq/dograh

Skill Claude CodeCodex

Review a Dograh pull request, branch diff, or pasted patch for repo-specific security and correctness risks that are not obvious from generic FastAPI, Next.js, or Python conventions. Use when the user asks to review a PR, audit a diff, check whether changes are safe to merge, review their own changes, or asks what to…

not rated 5.6k +22 today A 109 tokens original BSD-2-Clause

defense-evasion

60

PurpleAILAB/Decepticon

Skill Claude CodeCodex

Endpoint defense bypass — AMSI/ETW patching, ScareCrow framework, custom loaders, direct/indirect syscalls, LOLBAS execution, process injection.

not rated 5.4k +48 5d ago A 40 tokens original Apache-2.0

opsec

61

PurpleAILAB/Decepticon

Skill Claude CodeCodex

Operational security management — traffic shaping, scan rate limiting, source IP management, tool signature avoidance, evidence handling, anti-detection patterns.

not rated 5.4k +48 5d ago A 30 tokens original Apache-2.0

cloudflare/vibesdk

Skill Claude CodeCodex ✓ vendor

S-tier SaaS dashboard and product UI reference. Use this skill when building application shells, data tables, settings panels, billing pages, dashboards, auth flows, admin tools, or any internal/customer-facing SaaS product UI. Inspired by Stripe, Linear, Vercel, Airbnb, Notion. Covers neutral-led design tokens…

not rated 5.3k +5 2d ago A 105 tokens original MIT

mock-server/mockserver-monorepo

Skill Claude CodeCodex

Interact with Dependabot and Snyk pull requests for dependency upgrades and security fixes. Documents Dependabot commands, javax/jakarta compatibility checks, safe merge workflows, and troubleshooting. Use when managing dependency upgrade PRs or security fix PRs.

not rated 5.0k +4 today A 56 tokens original Apache-2.0

credential-attack

64

Awarexone/Agentic-Bug-Hunter

Skill Claude CodeCodex

Password spray methodology for bug bounty — when to do it vs web-vuln hunting, the wordlist-gen + breach-check + osint-employees + spray pipeline, mode selection (http-form / oauth / o365 / okta), rate-limit + lockout tactics, BBP legal guardrails, success detection, and the spray → authenticated /hunt chain pattern.…

not rated 4.7k +30 3d ago A 102 tokens original MIT

graphql-audit

65

Awarexone/Agentic-Bug-Hunter

Skill Claude CodeCodex

GraphQL security hunting — introspection abuse, field suggestion enumeration (clairvoyance), batching DoS, IDOR via aliasing, auth bypass, injection via arguments, subscription abuse, depth/complexity bombs, and WAF bypass. Covers graphw00f fingerprinting, gqlmap, graphql-cop, and inql. Use when a target exposes a…

not rated 4.7k +30 3d ago A 92 tokens original MIT

mobile-pentest

66

Awarexone/Agentic-Bug-Hunter

Skill Claude CodeCodex

Mobile app pentest for bug bounty (Android APK + iOS IPA) — runtime-first workflow: install app, proxy through Burp/mitmproxy, drive the UI, capture packets, then test the API exactly like a web target; escalate to decompile (apktool/jadx) and Frida/objection only when traffic is SSL-pinned, encrypted, or absent.…

not rated 4.7k +30 3d ago A 205 tokens original MIT

audit-flow

67

zebbern/claude-code-guide

Skill Claude CodeCodex

Interactive system flow tracing across CODE, API, AUTH, DATA, NETWORK layers with SQLite persistence and Mermaid export. Use for security audits, compliance documentation, flow tracing, feature ideation, brainstorming, debugging, architecture reviews, or incident post-mortems. Triggers on audit, trace flow, document…

not rated 4.6k +1 yesterday A 84 tokens original MIT

contrib-pr-review

68

homeassistant-ai/ha-mcp

Skill Claude CodeCodex

Review a contribution PR for safety, quality, and readiness. Checks for security concerns, test coverage, size appropriateness, and intent alignment. Use when reviewing external contributions.

not rated 4.6k +29 today A 39 tokens original MIT

intuitem/ciso-assistant-community

Skill Claude CodeCodex

Guide users through a basic risk assessment workflow in CISO Assistant, from asset identification to scenario creation. Use when: (1) User wants to start a risk assessment from scratch (2) User mentions "risk assessment", "identify risks", "threat scenarios", or "risk register" (3) User asks about qualitative vs…

not rated 4.4k +14 2d ago A 138 tokens

mapping-builder

70

intuitem/ciso-assistant-community

Skill Claude CodeCodex

Build a reviewed crosswalk (RequirementMappingSet YAML library + review xlsx/csv) between two CISO Assistant framework YAML files using Claude itself as the reasoning engine. Zero infrastructure — stdlib + pyyaml only, no embedders, no LM Studio, no Qdrant. Use when the user asks to map / crosswalk / generate a…

not rated 4.4k +14 2d ago A 164 tokens

intuitem/ciso-assistant-community

Skill Claude CodeCodex

Enrich a CISO Assistant framework YAML by linking each assessable requirement to reference control URNs from the central doc-pol library (CISO Assistant Key Reference Controls). Produces a reviewable xlsx and patches the framework YAML in place. Use when the user asks to "add reference controls to framework X", "link…

not rated 4.4k +14 2d ago A 102 tokens

paulirish/dotfiles

Skill Claude CodeCodex

Set up or debug npm Trusted Publishing (OIDC) from GitHub Actions. Handles permissions, metadata validation, and provenance.

not rated 4.4k 5d ago A 31 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: