Security

29,896 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

pm-ai-shipping

49

phuryn/pm-skills

Plugin Claude Code

Bundles 2 skills, 5 commands · 410 tokens together

AI Shipping Kit — for PMs and founders accountable for AI-built code. Document a vibe-coded app, audit it for intended-vs-implemented security gaps and performance issues, and produce a reviewer-ready shipping packet.

not rated 26k +84 2mo ago A tokens not measured original MIT

JimLiu/baoyu-skills

Instructions file

Claude Code instructions for JimLiu/baoyu-skills, covering claude.md, architecture, running skills, key dependencies and security.

not rated 26k +70 2mo ago B 1,744 tokens original MIT

database-security

51

promptfoo/promptfoo

Agent

This codebase uses Drizzle ORM with SQLite. All database queries must use parameterized SQL so user-controlled input never changes query structure.

not rated 25k +57 today A 0 tokens original MIT

czlonkowski/n8n-mcp

Agent Claude Code

Use this agent when you need to conduct in-depth technical research on complex topics, technologies, or architectural decisions. This includes investigating new frameworks, analyzing security vulnerabilities, evaluating third-party APIs, researching performance optimization strategies, or generating technical…

not rated 23k today A 0 tokens original MIT

czlonkowski/n8n-mcp

Skill Claude CodeCodex

Expert guide for using n8n-mcp MCP tools effectively. Use when searching for nodes, validating configurations, accessing templates, managing workflows, organizing workflows into folders, managing credentials, auditing instance security, or using any n8n-mcp tool. Provides tool selection guidance, parameter formats…

not rated 23k today A 135 tokens original MIT

code-reviewer

54

comet-ml/opik

Agent Codex

Use this agent when the user wants code reviewed, asks for feedback on changes, or before creating a PR. Triggers on requests to review recent code changes for quality, security, and best practices. Context: User finished implementing a feature user: "Review my changes" assistant: "I'll use the code-reviewer agent to…

not rated 22k today A 238 tokens original Apache-2.0

ipc

55

dyad-sh/dyad

Cursor rule Cursor

You're building an Electron app following good security practices.

not rated 21k 4d ago A 1,412 tokens

Max

56

danielmiessler/LifeOS

Agent

Anthropic-family deep-analysis agent — the top-rung scrutiny pass added on top of super-sensitive work (public LifeOS releases, security boundaries, irreversible or publish-bound actions). Pinned to the fable alias, which always resolves to Anthropic's latest top model. Read-only: Edit/Write/NotebookEdit are denied at…

not rated 19k 20d ago A 0 tokens original MIT

wasp CLAUDE.md

57

wasp-lang/wasp

Instructions file

Claude Code instructions for wasp-lang/wasp, a project described as: The batteries-included full-stack framework for the AI era. Develop JS/TS web apps (React, Node.js, and Prisma) using declarative code that abstracts away complex full-stack features like auth, background jobs, RPC, email sending, end-to-end type…

not rated 19k today A 3 tokens copy · 100% MIT

iii-sandbox

58

iii-hq/iii

Skill Claude CodeCodex

Ephemeral microVM sandboxes for running untrusted or agent-generated code in isolation — a one-call run path, a create/exec/stop lifecycle, and a set of filesystem operations.

not rated 19k 4d ago A 42 tokens

langbot-dev

59

langbot-app/LangBot

Skill Claude CodeCodex

Develop, build, and debug the LangBot core backend and web frontend. Use when working inside the LangBot repository — backend (Python/Quart, src/langbot/pkg), the Vite/React web UI, HTTP API controllers/services, Alembic migrations, or the MCP server. Covers the dev environment (uv, pnpm), repo layout, the API auth…

not rated 18k today A 136 tokens original Apache-2.0

browser-use/browser-harness

Instructions file CodexOpenCode

AGENTS.md instructions for browser-use/browser-harness, covering code priorities, commands, doctor — install/daemon/browser state, unit tests (no live browser) and security.

not rated 17k changed today A 506 tokens original MIT

apisix AGENTS.md

61

apache/apisix

Instructions file CodexOpenCode ✓ vendor

AGENTS.md instructions for apache/apisix, covering apache apisix — agent instructions and security model.

not rated 17k today A 354 tokens original Apache-2.0

path-safety

63

microsoft/data-formulator

Skill Claude CodeCodexCursor ✓ vendor

A set of rules for safely handling server-side file paths and file access.

not rated 17k 5d ago A 50 tokens original MIT

HKUDS/DeepCode

Skill Claude CodeCodex

Analyze git repositories to build a security ownership topology (people-to-file), compute bus factor and sensitive-code ownership, and export CSV/JSON for graph databases and visualization. Trigger only when the user explicitly wants a security-oriented ownership or bus-factor analysis grounded in git history (for…

not rated 16k +14 today A 99 tokens original MIT

review-prs

65

googleapis/mcp-toolbox

Skill Claude CodeCodex ✓ vendor

Review a GitHub pull request in the googleapis/mcp-toolbox repo against the team's reviewer checklist: PR title/description conventions, linked issue, logic errors and unhandled edge cases, breaking changes, test coverage, docs updates, security (input handling), and new dependencies. Use whenever a maintainer asks…

not rated 16k +14 today A 162 tokens original Apache-2.0

skill-inspector

66

NVIDIA/SkillSpector

Skill Claude CodeCodex ✓ vendor

Review AI agent skills before installation using NVIDIA SkillSpector and source-aware semantic review. Use when asked whether a skill or downloaded skill folder is safe, trustworthy, installable, over-permissioned, or malicious.

not rated 16k +295 2d ago A 47 tokens original Apache-2.0

GreyDGL/PentestGPT

Instructions file

Instructions for GreyDGL/PentestGPT, covering claude guide, active project map, runtime contract, commands and documentation map.

not rated 15k +36 1mo ago A 780 tokens original MIT

eigent-ai/eigent

Skill Claude CodeCodex

Security auditing for code, configs, and infrastructure. Use when the user wants to audit or improve security: scan for vulnerabilities (SQL injection, XSS, command injection, path traversal), detect hardcoded secrets and credentials, review auth and authorization, check dependencies for known CVEs, audit config files…

not rated 15k +11 today A 114 tokens original Apache-2.0

analysis-tools-dev/static-analysis

Instructions file GitHub Copilot

Instructions for analysis-tools-dev/static-analysis, a project described as: ⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.

not rated 15k +3 4d ago A 4 tokens copy · 100% MIT

prowler-cloud/prowler

Agent

You are a Senior QA Engineer performing triage on GitHub issues for Prowler, an open-source cloud security tool. Read AGENTS.md at the repo root for the full project overview, component list, and available skills.

not rated 15k +18 today A 27 tokens original Apache-2.0

prowler AGENTS.md

71

prowler-cloud/prowler

Instructions file CodexOpenCode

AGENTS.md instructions for prowler-cloud/prowler, covering repository guidelines, how to use this guide, available skills, generic skills (any project) and prowler-specific skills.

not rated 15k +18 today A 2,928 tokens original Apache-2.0

prowler

72

prowler-cloud/prowler

Plugin Claude Code

Bundles 1 skill · 24 tokens together

Prowler for Claude Code — cloud security and compliance skills powered by the Prowler MCP server. Bundles compliance triage and remediation; more skills coming.

not rated 15k +18 today A tokens not measured original Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: