Security

24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

cnnvd-format

1777

Yxuan18/yixuan_skills

Skill Claude CodeCodex

A converter for CNNVD XML files, where CNNVD is China’s national database of information-security vulnerabilities. It changes newer XML files into the older format by renaming tags and normalising their structure.

not rated 2 12d ago A 88 tokens

socket-skills

1778

SocketDev/sauce

Plugin Claude Code

Bundles 15 skills, 5 hooks · 821 tokens together

Agent Skills for dependency security including vulnerability scanning, package review, patching, setup and configuration, and secure dependency updates via Socket.dev.

not rated 2 yesterday A tokens not measured original MIT

sec-ops

1779

yorevs/ai-dev-skills

Skill Codex

Use when designing, implementing, reviewing, refactoring, or maintaining software in any programming language where security is a requirement. Apply secure-by-design principles, identify vulnerabilities, and recommend industry best practices throughout the software development lifecycle.

not rated 2 changed yesterday A 48 tokens

dstest

1780

bxrne/dstest

Skill Claude CodeCodex

Deterministic simulation testing for containerized services. Write Lua scripts to inject chaos (pause, kill, resource deprivation) into Docker containers with reproducible, seeded fault injection. Use when writing chaos experiments, testing service resilience, or debugging distributed systems.

not rated 2 changed 9d ago A 53 tokens original MIT

auth0-terraform

1782

jeff-auth0/agent-skills

Skill Claude CodeCodex

Use when you want to reverse-engineer an active Auth0 tenant into a structured, multi-environment Terraform project for replicating that tenant into new empty tenants. Runs auth0 tf generate, then restructures the flat output into a flat modules/ directory (one foreach block per resource type with typed map…

not rated 2 1mo ago C 176 tokens

redteam

1783

pr-purgatory/redteam-skill

Skill Claude CodeCodex

Perform a "red team" security and risk assessment of the codebase. Use when user says "/redteam", "red team this code", or asks for a security/vulnerability audit.

not rated 2 4mo ago A 41 tokens original Apache-2.0

rce

1784

sanjaysaini1952/BugBounty-Arsenal

Skill Claude CodeCodex

For every parameter, test: ; ls, | ls, ls , $(ls), && ls, || ls. Diff responses. Report any command execution.

not rated 2 1mo ago A 0 tokens original MIT

ivan-sincek/threat-modeling-agent-skills

Skill Claude CodeCodex

Systematically identify and classify technical and business risks using the risk-centric PASTA threat modeling framework. Use when the user says "run PASTA", "do PASTA threat modeling", or "identify risks".

not rated 2 changed 6d ago A 51 tokens original MIT

gauntlet-loop

1787

arjunkshah12345-hash/gauntlet-loop-skill

Skill Claude CodeCodex

Apply Matt Shumer's Gauntlet Loop to ambitious software, game, product-design, writing, research, and creative tasks. Establish a concrete inspectable quality bar, let a lead agent decompose the work, use separate builder and critic agents, inspect the real artifact, and iterate until the work meets the bar or the…

not rated 2 1mo ago A 75 tokens original MIT

y30k/ai-capabilities

Skill Codex

Perform a strict, fail-closed production-readiness review of the exact staged change before initial PR/MR submission or an explicit direct-to-default fast track. Use when asked to prepare changes for submission, inspect every staged file and hunk, discover and run mandatory build, test, security, and performance…

not rated 2 2mo ago A 124 tokens

mybd-cryfs

1789

bigdata2211it-web/ai-vault-skills

Cursor rule Cursor

Encrypted credentials vault with cryfs (FUSE). Cross-platform setup, migration, daily open/close, auto-lock, agent discipline, backup, troubleshooting. Triggers on "encrypt my credentials", "cryfs vault", "mybd", "protect passwords folder", "fuse encryption setup", "secrets encrypted-at-rest".

not rated 2 2mo ago D 67 tokens original MIT

sigil

1791

kayossouza/sigil-protocol

Skill Claude CodeCodex

Sigil Protocol - AI agent identity, integrity attestation, and cryptographic verification. Use when generating agent identity, signing documents, attesting soul files, verifying agent integrity, or issuing interaction receipts.

not rated 2 7mo ago A 43 tokens original MIT

fhevm-solidity

1792

zunmax/fhevm-skill

Cursor rule Cursor needs its repo

Zama FHEVM Solidity development, review, and audit. Applies to .sol files that import @fhevm/solidity (or @openzeppelin/confidential-contracts); declare encrypted types (euint, ebool, eaddress, externalEuint); call FHE. operations or ACL helpers; or inherit ZamaEthereumConfig. Triggers on FHEVM audit / security review…

not rated 2 3mo ago A 0 tokens original MIT

runtz-security-scans

1793

runtz-dev/runtz-skills

Skill Claude CodeCodex

Run runtz DevSecOps security scans (SCA, SAST, host packages, container images, Kubernetes) and read runtz documentation. Use when the user wants to find vulnerable dependencies or packages, scan source code for secrets/weak crypto, audit a container image or Linux host for CVEs, check Kubernetes posture, or asks how…

not rated 2 1mo ago A 79 tokens original MIT

security

1794

vbalaraman0406/agile-sdlc-template

Cursor rule Cursor

Cursor rule "security" from vbalaraman0406/agile-sdlc-template, covering security rules, forbidden patterns and mandatory patterns.

not rated 2 5mo ago A 0 tokens original MIT

agentguard

1795

Ethonik/agentguard

Cursor rule Cursor

AgentGuard — security review & secure-by-design for agentic AI (OWASP Agentic 2026 + LLM 2025 + CWE). Use when auditing or designing code that uses LLMs, tool-calling, memory/RAG, MCP or multi-agent.

not rated 2 1mo ago A 55 tokens original MIT

virustotal

1796

vectra-ai-research/vectra-soc-agent-starter

Skill Claude CodeCodex

Enriches Vectra findings with VirusTotal threat intelligence — IOC reputation lookup for IPs, domains, URLs, and file hashes via the VirusTotal v3 API. Ships two paths — a standalone Bash CLI (scripts/vt-lookup.sh) for one-off lookups that needs only curl/jq, and a sourced framework adapter (scripts/virustotal.sh) for…

not rated 2 5d ago A 182 tokens original MIT

code-reviewer

1797

theogravity/bun-elysiajs-starter-turbo-monorepo

Agent Claude Code

Expert code reviewer specializing in code quality, security vulnerabilities, and best practices across multiple languages. Masters static analysis, design patterns, and performance optimization with focus on maintainability and technical debt reduction.

not rated 2 16d ago A 42 tokens original MIT

codex-review

1798

dkorobtsov/codex-review-loop

Plugin Claude Code

Bundles 3 commands, 2 hooks · 49 tokens together

Parallel Codex code reviews for Claude Code. N independent agents (diff, security, tests, architecture) review your changes with project-aware context. Includes self-review, anti-pattern detection, and knowledge compounding.

not rated 2 1mo ago A tokens not measured original MIT

skills

1799

serenashenn3-art/wechat-forensic-pro

Skill Claude CodeCodex

A skill guide for wechat-forensic-pro, covering its available skills, when to call them, and legal restrictions for forensic work on WeChat data.

not rated 3 1mo ago B 0 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: