Security skills

16,964 tagged Security, measured the same way as everything else here.

Browse within: cybersecurity 484bug-bounty 276agent 229generative-ai 179LangChain 176hacking 175autonomous-pentesting 134cloud-security 121skills 121claude-ai 118redteam 113LLM 108security-audit 105cors-exploitation 88

6jeffr3y/burpsuite-mcp-bridge

Skill Codex

Operate BurpSuite MCP Bridge for professional, authorized web testing. Use when Codex needs to inspect Burp live/history/logger/selection traffic, prioritize one target, retrieve a decisive request/response, intercept and edit a request or response before forwarding, replay one controlled mutation, manage temporary…

not rated 4 4d ago A 92 tokens

enigmagent-vault

770

Agnuxo1/EnigmAgent

Skill Claude CodeCodex

Use the EnigmAgent encrypted vault to handle credentials, API keys, and private documents without those values ever appearing in your reasoning or output. Placeholders are resolved at execution time.

not rated 4 3mo ago A 42 tokens original MIT

skillsync-mcp

771

adityasugandhi/skillsync-mcp

Skill Claude CodeCodex

Search, scan, install, and manage Claude Code skills with built-in security scanning. Every installation is gated behind a 60+ pattern threat scan.

not rated 4 6mo ago A 0 tokens original MIT

toolpermit

772

sunhao123456sun-svg/toolpermit

Skill Codex

Install, configure, operate, and troubleshoot ToolPermit, the local-first permission policy, one-time approval, and redacted audit layer for MCP stdio tool calls. Use when Codex needs to protect or inspect an MCP server, wrap an MCP stdio command, create or review allow/ask/deny policies, manage approvals, replay…

not rated 4 2d ago A 100 tokens original Apache-2.0

marq

773

rhaist/marq

Skill Claude CodeCodex

Skill "marq" from rhaist/marq, covering marq — cyber assistant, start here — scope and domains, how to call a tool, discover tools and long-running scans.

not rated 4 1mo ago A 69 tokens AGPL-3.0

break-risk-intel

774

c0urag1/break-risk-intel-skill

Skill Claude CodeCodex

An assistant for analysing intelligence about black- and grey-market abuse, such as fraud, account attacks, and dishonest automation.

not rated 4 3mo ago A 154 tokens

secret-shuttle

775

pdumicz/secret-shuttle

Skill Claude CodeCodex

Use when an AI coding agent must provision, inject, run, or rotate secrets without ever seeing their plaintext — you work with ss:// refs (like ss://stripe/prod/STRIPEWEBHOOKSECRET) while a local daemon resolves the real value at the last possible moment.

not rated 4 2mo ago A 60 tokens original MIT

breachproof

776

Mikaru0Mystic/breachproof

Skill Claude CodeCodex

Autonomous security audit and hardening that scans, exploits, fixes, and re-scans a codebase to zero findings, mapped to SOC 2.

not rated 4 1mo ago A 35 tokens original Apache-2.0

HermeticOrmus/LibreSecOps-Claude-Code

Skill Claude CodeCodex

Threat hunting is the proactive, analyst-driven search for threats that have evaded automated detection. Unlike detection engineering (which builds rules that fire automatically), hunting is a human-led investigation that uses hypotheses, data analysis, and domain expertise to find adversary activity that does not…

not rated 4 3mo ago A 0 tokens original MIT

git-gud-security

778

kidsmeal/git-gud-security

Skill Claude Code

Audit any repo for security holes — a web/app project, a Claude skill, a Claude Code plugin, an MCP server, or an agent. Catches the glaring stuff (exposed servicerole keys, RLS off, committed .env, secrets in the client bundle, allow read,write: if true) and the subtle stuff (IDOR, SSRF, prompt injection in a…

not rated 4 changed 4d ago A 281 tokens original MIT

wp-review

779

barbareshet/wp-review-claude

Skill Claude Code

WordPress theme and plugin review skill. Detects whether a target path is a theme or plugin, runs security and standards checks, scores the findings, and writes a markdown report. Use when the user wants to review a WordPress theme or plugin directory, generate a code review report, inspect WordPress security posture…

not rated 4 6mo ago A 76 tokens original MIT

skillguard

780

Echoxiawan/skillguard

Skill Claude CodeCodex

A security-auditing skill for inspecting AI skills and plugins with static code analysis. Static analysis examines code without running it, while an abstract syntax tree represents its structure.

not rated 4 6mo ago A 44 tokens

skillguard

781

Muhammad-Qasim-Munir/skillguard

Skill Claude CodeCodex

Review Claude/Cursor Skills for security issues (prompt injection, agentic/tool injection, data exfiltration, unsafe automation). Use when evaluating a Skill package/folder or SKILL.md + bundled scripts for risks like hidden instructions, tool misuse, credential theft, network exfil, destructive commands, and policy…

not rated 4 7mo ago C 90 tokens

assay

782

chawdamrunal/assay

Skill Claude CodeCodex

Pre-install security advisor. Activate when the user mentions installing a Claude Code plugin, MCP server, or any third-party agent tool. Offer to run an Assay scan against the target before they install.

not rated 4 1mo ago A 43 tokens original Apache-2.0

safelink

783

charliebot8888/SafeLink

Skill Claude CodeCodex

Secure agent-to-agent hiring and execution skill for OpenClaw MCP with escrowed settlement, x402 facilitator payments, ERC-8004 identity/reputation checks, strict replay protection, DNS-safe endpoint validation, and MPC wallet signing. Use when building or operating production A2A workflows that require…

not rated 4 6mo ago B 81 tokens original MIT

aws-security-analysis

784

cyntrisec/cyntrisec-cli

Skill Claude CodeCodex

Analyze AWS infrastructure security using Cyntrisec MCP tools. Use when asked about AWS attack paths, security findings, IAM permissions, compliance status, or remediation recommendations. Guides tool selection and workflow patterns for comprehensive security assessments.

not rated 4 4mo ago A 47 tokens original Apache-2.0

openfga

785

openfga/agent-skills

Skill Claude CodeCodex

OpenFGA authorization modeling best practices for defining types and relations, writing relationship tuples, deriving can permissions, applying type restrictions and usersets, and authoring .fga.yaml check/listobjects/listusers tests. Use when authoring, reviewing, or refactoring OpenFGA models, tuples, permissions…

not rated 4 17d ago A 101 tokens original Apache-2.0

access

786

piiiico/agentlair

Skill Claude Code

Manage AgentLair email channel access — edit sender allowlists and set policy. Use when the user asks to allow or block email senders, check who can reach them, or change access policy.

not rated 4 +1 21d ago A 42 tokens original MIT

plimsoll

787

lumiboi/plimsoll

Skill Claude CodeCodex

Security review of LLM applications and agents. Use when asked to review, red-team, threat-model or test an LLM feature, chatbot, RAG pipeline, MCP server or autonomous agent for prompt injection (direct or indirect), jailbreaks, system prompt or secret leakage, tool abuse, excessive agency, confused-deputy behavior…

not rated 4 24d ago A 122 tokens original MIT

solana-audit

788

beriktassuly/solana-audit-skill

Skill Claude Code

Use when the user asks to audit a Solana or Anchor codebase, explain report-backed Solana vulnerability classes, review signer or PDA bugs, analyze CPI trust boundaries, assess Token-2022 or payment integrations, digest a public Solana audit report, investigate an exploit path, plan formal verification or invariant…

not rated 4 2mo ago A 85 tokens original MIT

crtvrffnrt/skills

Skill Claude CodeCodex

Static malware reverse-engineering and threat-intelligence triage for unknown files, Windows EXE/PE binaries, scripts, archives, ISOs, JavaScript, PowerShell, documents, and unpacked payloads. Use when a user provides a sample path, hash, filename, or file and asks whether it is malicious, benign, suspicious, contains…

not rated 4 +1 2d ago A 104 tokens

ai-security-review

790

karthikrshet/aiskills

Skill Claude CodeCodex

Use this skill to audit an AI system for security vulnerabilities including prompt injection, sensitive data exposure, excessive agent permissions, unsafe tool calls, and insecure output handling. Grounded in OWASP GenAI LLM Top 10 (2026). Activates before production deployment of any LLM-based application, agent, or…

not rated 4 22d ago A 74 tokens

fable-audit

791

rhein1/fable5-codex

Skill Claude CodeCodex

Evidence-first codebase audit for correctness, security, privacy, data, integration, operational, test, and docs-vs-reality risks. Use when the user asks for a Fable-5 audit, exhaustive audit, bug hunt, risk review, codebase audit, security/integration audit, or asks Codex to find issues before changing code.

not rated 4 22d ago A 75 tokens original MIT

threat-model-analyze

792

RedHatProductSecurity/agentic-threat-modeling

Skill Claude Code

Core threat analysis engine. Takes a system context profile and applies one or more threat modeling frameworks (STRIDE, PASTA, LINDDUN, VAST, Attack Trees, OCTAVE) with automatic threat actor profiling.

not rated 4 1mo ago A 52 tokens original Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: