Skill Claude Code
Signals scout for Content Security Policy violations. Watches $cspviolation events for blocked-URL clusters, per-directive bursts, post-deploy regressions, and suspicious third- party domains.
24,395 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.
Skill Claude Code
Signals scout for Content Security Policy violations. Watches $cspviolation events for blocked-URL clusters, per-directive bursts, post-deploy regressions, and suspicious third- party domains.
Plugin Claude Code
Bundles 1 skill, 1 command · 268 tokens together
Audit PHP engine deserialization surface (unserialize, session decoders, WDDX, phar metadata, custom ce->unserialize handlers) for UAF, type confusion, partial-object destruct, signed-length heap overflow, and parse inconsistency.
Skill Claude CodeCodex
Expert YARA rule authoring, review, and optimization. Use when writing new YARA rules, reviewing existing rules for quality issues, optimizing rule performance, or converting detection logic to YARA syntax. Covers rule naming conventions, string selection, condition optimization, performance tuning, and automated…
Skill Claude CodeCodex
This skill should be used when the user asks to "run Preflight", "scan launch readiness", "check production readiness", "audit before deploy", "fix preflight findings", "set up preflight.yml", "wire Preflight into CI", or mentions the Preflight.sh CLI.
Skill Claude CodeCodex
ZettelForge v2.0.0 — Production CTI agentic memory system. Hybrid TypeDB (STIX 2.1 ontology) + LanceDB (vector search). Zero external AI dependencies: fastembed for embeddings, llama-cpp-python for LLM. 75% accuracy on CTI queries, 18% on LOCOMO. Use when agents need persistent memory, threat intel retrieval, entity…
Skill Claude Code
Reviews AI/ML systems for data privacy and governance risks including training data privacy, PII exposure in prompts and completions, data retention policies, model memorization risks, and regulatory compliance. Auto-invoked when reviewing systems that process personal data through LLMs, train or fine-tune models on…
Skill Claude CodeCodex
Free, local security self-audit for your own OpenClaw agent. Reads your OpenClaw config, bootstrap files, log files, agent session logs, and installed skills — read-only against your OpenClaw setup, plus a bounded host-security scan; writes only its own local report/history (removable with --purge). Scores your setup…
Skill Claude CodeCodex
Use when auditing Solana programs for security vulnerabilities, reviewing Anchor or Pinocchio/native Rust smart contracts, checking CPI safety, PDA validation, account ownership, signer verification, or Token-2022 security.
Plugin Claude Code
Bundles 2 skills, 1 agent, 1 hook, 1 MCP server · 310 tokens together
Self-audit AI agent, tool, and MCP-server code for security and reliability misconfigurations with Trustabl, the agent reliability scanner for the OpenAI Agents SDK, Claude Agent SDK, Google ADK, and MCP. Ships two skills (trustabl-scan and trustabl-enrich) and a subagent (trustabl) that together form a scan → enrich…
AgriciDaniel/claude-code-essentials-vs-code
Agent Claude Code
Security-focused code analysis.
Skill Claude CodeCodex
A web security audit system for PHP, Java, .NET, and Node.js applications. It identifies the technology used, checks code and runtime behaviour for common weaknesses, and documents fixes.
timenavigatorrage/r16-voltagent-awesome-agent-skills-security
Command Claude Code
You are a senior Security & Compliance specialist. The user needs help with dep cve in the context of security audits, vulnerability management, gdpr/soc2/iso27001 compliance and incident response.
Plugin Claude Code
Bundles 1 skill · 123 tokens together
Scan WiFi networks to detect hidden cameras and surveillance devices in rental accommodations.
Skill Claude Code needs its repo
Detects exploitable GitHub Actions workflow vulnerabilities, including pullrequesttarget pwn requests, unsafe PR checkout, expression injection in run steps and actions/github-script blocks, workflowdispatch and workflowcall input command injection, comment- and discussion-triggered commands, TOCTOU between approval…
jinyimeng01/mastermind-bug-bounty
Skill Claude CodeCodex
Methodology reference for Mastermind Bug Bounty runtime. Iron Rules, Safe-First Layering, phase techniques, value pool linkage, SRC compliance, and Hook system.
Skill Claude CodeCodex
HSM-backed secret management for AI agents — store, retrieve, rotate, and share secrets via the 1Claw vault without exposing them in context.
Plugin Claude Code
Bundles 2 skills · 240 tokens together
Create, validate, import, execute, and export CrowdStrike Falcon Fusion SOAR workflows using natural language.
Skill Claude CodeCodex needs its repo
Stand up an emem-guard verdict server, verify it against the conformance checks, and point any agent at it. Use when asked to self-host emem-guard, add a grounding gate to an agent on any model or framework, wire a checkpoint into Claude Code or Claude Enterprise or MCP, or run a signed allow/deny server for…
Skill Claude CodeCodex
Codebase discovery and architecture mapping for security analysis.
solygambas/python-openai-projects
Agent Claude Code
Use this agent when you need to audit a Next.js codebase for security vulnerabilities, performance bottlenecks, code quality issues, or opportunities to refactor code into smaller components. This agent focuses on actual implemented code and does not flag missing features or unimplemented…
Skill Claude CodeCodex
Builds an automated malware submission and analysis pipeline that collects suspicious files from endpoints and email gateways, submits them to sandbox environments and multi-engine scanners, and generates verdicts with IOCs for SIEM integration. Use when SOC teams need to scale malware analysis beyond manual sandbox…
MCP server Claude CodeCodexCursor +2
Easily find and fix security issues in your applications leveraging Snyk platform capabilities. Runs locally from the snyk npm package.
MCP server Claude CodeCodexCursor +2
MCP server "kali-pentest-mcp-server" as configured in sfz009900/kalilinuxmcp. Runs locally from the kali-pentest-mcp-server npm package.
Skill Claude CodeCodex
Generate structured CSV security audit reports from vulnerability data with proper filtering and formatting. This skill covers CSV schema design for security reports, using Python csv.DictWriter, severity-based filtering, and field mapping from JSON to tabular format.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: