Security

29,964 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

dependency-upgrade

169

secondsky/sap-skills

Skill Claude CodeCodex

Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout. Use when upgrading deps, configuring security policies, or preventing supply chain attacks.

not rated 433 +5 yesterday A 34 tokens GPL-3.0

codeguard-security

170

project-codeguard/rules

Plugin Claude Code

Bundles 1 skill · 46 tokens together

Security code review skill based on Project CodeGuard's comprehensive security rules. Helps AI coding agents write secure code and prevent common vulnerabilities.

not rated 422 +1 7mo ago A tokens not measured

bountyforge

171

Gabson0x/bountyforge

Skill Claude CodeCodex

All-round bug bounty skill covering smart contract audits (EVM/Solidity, Move/Aptos, Solana, TRON), web/API security, CI/CD pipeline attacks, LLM/AI security, and professional report generation for HackerOne, Bugcrowd, Intigriti, and Immunefi. Full pipeline — recon, pre-hunt learning from disclosed reports…

not rated 408 +4 6d ago D 351 tokens

ghost

172

ghostsecurity/skills

Plugin Claude Code

Bundles 8 skills · 708 tokens together

Enterprise grade AI-native application security scanning, validation, and remediation.

not rated 405 +2 yesterday A tokens not measured original Apache-2.0

aspectrr/deer

Skill Claude CodeCodex

Diagnose and resolve Elasticsearch security errors: 401/403 failures, TLS problems, expired API keys, role mapping mismatches, and Kibana login issues. Use when the user reports a security error.

not rated 404 4mo ago A 48 tokens original MIT

secknowledge-skill

174

Pa55w0rd/secknowledge-skill

Skill Claude CodeCodex

A Chinese-language knowledge base for practical security testing, including penetration testing, vulnerability research, security audits, CTFs, and AI or LLM security. It combines recorded vulnerability cases with security methods and risk frameworks.

not rated 404 +1 2mo ago A 426 tokens

php-audit-pipeline

175

0xShe/PHP-Code-Audit-Skill

Skill Claude CodeCodex

A multi-file workflow for auditing PHP web applications for security issues. The description does not specify enough detail about its exact checks beyond coordinating other PHP audit tools.

not rated 399 +1 5mo ago A 71 tokens

OpenHack AGENTS.md

176

openhackai/OpenHack

Instructions file CodexOpenCode

Instructions for openhackai/OpenHack, covering openhack scanner guidance, repository scope and cli contract.

not rated 400 +2 14d ago A 218 tokens original MIT

wxmini-security-audit

177

sssmmmwww/wxmini-security-audit

Skill Claude CodeCodex

A complete static security-audit workflow for WeChat Mini Programs, using several specialised agents and preliminary scripts.

not rated 395 +5 5mo ago A 95 tokens

ergrelet/windiff

Skill Claude CodeCodex

Generate and interpret security-research diffs between Windows versions or patch levels using this repo's WinDiff CLI and databases. Use when comparing Windows builds or binaries such as ntoskrnl.exe, ntdll.dll, win32k.sys, ci.dll, or cng.sys to find changed syscalls, symbols, types, mitigation flags, callbacks…

not rated 391 3d ago A 140 tokens GPL-3.0

kubernetes-skill

179

LukasNiessen/kubernetes-skill

Skill Claude CodeCodex

Prevent Kubernetes hallucinations by diagnosing and fixing failure modes: insecure workload defaults, resource starvation, network exposure, privilege sprawl, fragile rollouts, and API drift. Use when generating, reviewing, refactoring, or migrating manifests, Helm charts, Kustomize overlays, cluster policies, and…

not rated 391 +3 19d ago A 89 tokens original MIT

cybersecurity

180

Masriyan/Claude-Code-CyberSecurity-Skill

Plugin Claude Code

Bundles 19 skills · 676 tokens together

A complete cybersecurity toolkit: 20 skills spanning reconnaissance, vulnerability assessment, exploit development, reverse engineering, malware analysis, threat hunting, incident response, network/web/cloud security, SOC automation, log analysis, cryptography, red and blue team operations, AI/LLM, mobile, OT/ICS, and.

not rated 395 +13 changed today A tokens not measured original MIT

ctf-web

181

Unclecheng-li/DeepSec

Skill Claude CodeCodex

A reference library for web-security challenges in CTFs, or capture-the-flag security competitions. It focuses on common PHP weaknesses, injection bypasses, source-code discovery, file inclusion, and finding hidden challenge data.

not rated 392 +21 11d ago A 56 tokens copy · 100% MIT

break

182

JDArmy/BREAK

Skill Claude CodeCodex

A Chinese-language business-security knowledge base covering risks, defenses, attack tools, threat actors, terms, business areas, and documented cases.

not rated 383 changed today A 50 tokens original Apache-2.0

dogwood AGENTS.md

183

dogwood-policy/dogwood

Instructions file CodexOpenCode

Instructions for dogwood-policy/dogwood, covering agents.md, working with dogwood authorization and building this package.

not rated 383 +7 23d ago A 726 tokens original Apache-2.0

matty69v/Bug-Bounty-Agents

Instructions file CodexOpenCode

Instructions for matty69v/Bug-Bounty-Agents, covering agents index, controlled vocabulary and index.

not rated 384 +4 4mo ago A 1,166 tokens original MIT

matank001/cursor-security-rules

Cursor rule

Path traversal attacks occur when user-controlled input is used to construct file paths, allowing attackers to access files outside the intended directory. This can lead to unauthorized file access, data leakage, or system compromise.

not rated 378 +1 1y ago A 2,694 tokens original MIT

hipaa-audit

186

briiirussell/cybersecurity-skills

Cursor rule

Audit applications and infrastructure handling Protected Health Information against HIPAA — Security Rule (administrative, physical, technical safeguards), Privacy Rule, Breach Notification Rule, plus HITECH. Covers ePHI scoping, the 18 HIPAA identifiers, Business Associate Agreement (BAA) chain-of-liability…

not rated 380 +6 3mo ago A 167 tokens original MIT

llm-testing

187

Eyadkelleh/awesome-skills-security

Skill Claude CodeCodex

Comprehensive LLM security testing prompts for bias detection, data leakage, alignment testing, and adversarial prompt resistance.

not rated 376 +9 2mo ago A 27 tokens

humble-header-analyst

188

rfc-st/humble

Skill Claude CodeCodex

Expert-level parsing and remediation of 'humble' HTTP security header reports. Use this skill whenever the user provides a report generated by 'humble' (https://github.com/rfc-st/humble), mentions analyzing HTTP response headers, security header grades (A-E), or asks for remediation of findings such as missing…

not rated 373 today A 84 tokens original MIT

ahmadvh/octochains

Skill Claude CodeCodex

Analyzes authentication and authorization events for failed-login clustering, privilege-escalation chains, credential-stuffing patterns, and MFA-bypass indicators.

not rated 372 +4 15d ago A 35 tokens

vulnersCom/api

Skill Claude CodeCodex

Use when modifying, testing, documenting, or reviewing the Vulners Python SDK. Covers the v4 architecture (typed sync/async clients, resource namespaces, bulletin model hierarchy, unasync codegen), the preserved legacy v3 surface, uv-based tooling, the 100% branch-coverage gate, safe API-key handling, and defensive…

not rated 372 today A 79 tokens original MIT

mengjian-github/xiaomo-starter-kit

Instructions file CodexOpenCode

A repository-specific instruction file for the Xiaomo Starter Kit, a software project template. It tells coding agents how to handle sessions, memory, security, and internal versus external information.

not rated 367 +1 7mo ago A 261 tokens

Nebulock-Inc/agentic-threat-hunting-framework

Instructions file CodexOpenCode

AGENTS.md instructions for Nebulock-Inc/agentic-threat-hunting-framework, covering agents.md - context for ai assistants using athf, repository overview, 🚨 mandatory: use athf cli commands & agents, ✅ always use cli for and 🎯 cli-first policy.

not rated 368 +3 yesterday A 7,721 tokens original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: