Skill Claude CodeCodex
Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout. Use when upgrading deps, configuring security policies, or preventing supply chain attacks.
29,964 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.
Skill Claude CodeCodex
Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout. Use when upgrading deps, configuring security policies, or preventing supply chain attacks.
Plugin Claude Code
Bundles 1 skill · 46 tokens together
Security code review skill based on Project CodeGuard's comprehensive security rules. Helps AI coding agents write secure code and prevent common vulnerabilities.
Skill Claude CodeCodex
All-round bug bounty skill covering smart contract audits (EVM/Solidity, Move/Aptos, Solana, TRON), web/API security, CI/CD pipeline attacks, LLM/AI security, and professional report generation for HackerOne, Bugcrowd, Intigriti, and Immunefi. Full pipeline — recon, pre-hunt learning from disclosed reports…
Plugin Claude Code
Bundles 8 skills · 708 tokens together
Enterprise grade AI-native application security scanning, validation, and remediation.
Skill Claude CodeCodex
Diagnose and resolve Elasticsearch security errors: 401/403 failures, TLS problems, expired API keys, role mapping mismatches, and Kibana login issues. Use when the user reports a security error.
Skill Claude CodeCodex
A Chinese-language knowledge base for practical security testing, including penetration testing, vulnerability research, security audits, CTFs, and AI or LLM security. It combines recorded vulnerability cases with security methods and risk frameworks.
Skill Claude CodeCodex
A multi-file workflow for auditing PHP web applications for security issues. The description does not specify enough detail about its exact checks beyond coordinating other PHP audit tools.
Instructions file CodexOpenCode
Instructions for openhackai/OpenHack, covering openhack scanner guidance, repository scope and cli contract.
sssmmmwww/wxmini-security-audit
Skill Claude CodeCodex
A complete static security-audit workflow for WeChat Mini Programs, using several specialised agents and preliminary scripts.
Skill Claude CodeCodex
Generate and interpret security-research diffs between Windows versions or patch levels using this repo's WinDiff CLI and databases. Use when comparing Windows builds or binaries such as ntoskrnl.exe, ntdll.dll, win32k.sys, ci.dll, or cng.sys to find changed syscalls, symbols, types, mitigation flags, callbacks…
Skill Claude CodeCodex
Prevent Kubernetes hallucinations by diagnosing and fixing failure modes: insecure workload defaults, resource starvation, network exposure, privilege sprawl, fragile rollouts, and API drift. Use when generating, reviewing, refactoring, or migrating manifests, Helm charts, Kustomize overlays, cluster policies, and…
Masriyan/Claude-Code-CyberSecurity-Skill
Plugin Claude Code
Bundles 19 skills · 676 tokens together
A complete cybersecurity toolkit: 20 skills spanning reconnaissance, vulnerability assessment, exploit development, reverse engineering, malware analysis, threat hunting, incident response, network/web/cloud security, SOC automation, log analysis, cryptography, red and blue team operations, AI/LLM, mobile, OT/ICS, and.
Skill Claude CodeCodex
A reference library for web-security challenges in CTFs, or capture-the-flag security competitions. It focuses on common PHP weaknesses, injection bypasses, source-code discovery, file inclusion, and finding hidden challenge data.
Skill Claude CodeCodex
A Chinese-language business-security knowledge base covering risks, defenses, attack tools, threat actors, terms, business areas, and documented cases.
Instructions file CodexOpenCode
Instructions for dogwood-policy/dogwood, covering agents.md, working with dogwood authorization and building this package.
Instructions file CodexOpenCode
Instructions for matty69v/Bug-Bounty-Agents, covering agents index, controlled vocabulary and index.
matank001/cursor-security-rules
Cursor rule
Path traversal attacks occur when user-controlled input is used to construct file paths, allowing attackers to access files outside the intended directory. This can lead to unauthorized file access, data leakage, or system compromise.
briiirussell/cybersecurity-skills
Cursor rule
Audit applications and infrastructure handling Protected Health Information against HIPAA — Security Rule (administrative, physical, technical safeguards), Privacy Rule, Breach Notification Rule, plus HITECH. Covers ePHI scoping, the 18 HIPAA identifiers, Business Associate Agreement (BAA) chain-of-liability…
Eyadkelleh/awesome-skills-security
Skill Claude CodeCodex
Comprehensive LLM security testing prompts for bias detection, data leakage, alignment testing, and adversarial prompt resistance.
Skill Claude CodeCodex
Expert-level parsing and remediation of 'humble' HTTP security header reports. Use this skill whenever the user provides a report generated by 'humble' (https://github.com/rfc-st/humble), mentions analyzing HTTP response headers, security header grades (A-E), or asks for remediation of findings such as missing…
Skill Claude CodeCodex
Analyzes authentication and authorization events for failed-login clustering, privilege-escalation chains, credential-stuffing patterns, and MFA-bypass indicators.
Skill Claude CodeCodex
Use when modifying, testing, documenting, or reviewing the Vulners Python SDK. Covers the v4 architecture (typed sync/async clients, resource namespaces, bulletin model hierarchy, unasync codegen), the preserved legacy v3 surface, uv-based tooling, the 100% branch-coverage gate, safe API-key handling, and defensive…
mengjian-github/xiaomo-starter-kit
Instructions file CodexOpenCode
A repository-specific instruction file for the Xiaomo Starter Kit, a software project template. It tells coding agents how to handle sessions, memory, security, and internal versus external information.
Nebulock-Inc/agentic-threat-hunting-framework
Instructions file CodexOpenCode
AGENTS.md instructions for Nebulock-Inc/agentic-threat-hunting-framework, covering agents.md - context for ai assistants using athf, repository overview, 🚨 mandatory: use athf cli commands & agents, ✅ always use cli for and 🎯 cli-first policy.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: