Security AI Skills

1,735 open-source Security AI skills that teach any AI model a new workflow.

Search and filter AI skills

Showing 919-969 of 1,735 AI skills

AI skills directory results

HoangNguyen0403 logo

Android Security

HoangNguyen0403
Community

Secure Android data at rest and authentication secrets. Use for auth tokens, encrypted storage, and app-data isolation; defer WebView/Intent/FileProvider to android-legacy-security and TLS/certificate…

164
569
2 files
View
blacklanternsecurity logo

Database Enumeration

blacklanternsecurity
Organization

Database service enumeration and quick-win access checks for MSSQL, MySQL, PostgreSQL, Oracle, MongoDB, and Redis. Checks default/empty passwords, unauthenticated access, and command execution…

39
276
Instructions
View
Dynatrace logo

Dt Obs Problems

Dynatrace
Organization

DAVIS problem analysis including root cause identification, impact assessment, and correlation with other telemetry. Use when querying or investigating detected problems. Trigger: "active problems",…

30
156
4 files
View
trilwu logo

Reversing Obfuscated Javascript

trilwu
Community

Reverse engineer minified, bundled, and obfuscated browser/Node JavaScript — unpacking webpack chunks, recovering source from sourcemaps, undoing obfuscator.io string-array and control-flow…

15
144
Instructions
View
zhaono1 logo

Skill Router

zhaono1
Community

Routes an agent request to the narrowest matching portable skill when the user asks which skill to use or needs help selecting one across supported hosts.

12
79
Instructions
View
GadaaLabs logo

Tribunal

GadaaLabs
Community

Use when completing tasks, implementing major features, or before merging to verify work meets requirements

10
67
1 files
View
anthropics logo

Command Development

anthropics
OrganizationPopular

This skill should be used when the user asks to "create a slash command", "add a command", "write a custom command", "define command arguments", "use command frontmatter", "organize commands", "create…

23.8K
146.3K
9 files
View
thedotmack logo

Version Bump

thedotmack
CommunityPopular

Automated semantic versioning and release workflow for Claude Code plugins. Handles version increments across package.json, marketplace.json, plugin.json manifests, build verification, git tagging,…

8.3K
94.1K
1 files
View
mukul975 logo

Analyzing Ethereum Smart Contract Vulnerabilities

mukul975
CommunityPopular

Perform static and symbolic analysis of Solidity smart contracts using Slither and Mythril to detect reentrancy, integer overflow, access control, and other vulnerability classes before deployment to…

4K
32.9K
2 files
View
googleworkspace logo

Gws Keep

googleworkspace
OrganizationPopular

Manage Google Keep notes.

1.8K
31K
Instructions
View
prowler-cloud logo

Prowler Test Api

prowler-cloud
OrganizationPopular

Testing patterns for Prowler API: JSON:API, Celery tasks, RLS isolation, RBAC. Trigger: When writing tests for api/ (JSON:API requests/assertions, cross-tenant isolation, RBAC, Celery tasks,…

2.4K
14.8K
2 files
View
trailofbits logo

Differential Review

trailofbits
OrganizationPopular

Performs security-focused differential review of code changes. Adapts analysis depth to codebase size, uses git blame for context, calculates blast radius by counting callers, checks test coverage of…

611
7.1K
6 files
View
tech-leads-club logo

Cursor Subagent Creator

tech-leads-club
OrganizationPopular

Creates Cursor-specific AI subagents with isolated context for complex multi-step workflows. Use when creating subagents for Cursor editor specifically, following Cursor's patterns and directories…

530
6.3K
Instructions
View
SnailSploit logo

Offensive Persistence

SnailSploit
CommunityPopular

Comprehensive persistence tradecraft for authorized red team engagements covering Windows and Linux mechanisms. Windows techniques include registry Run/RunOnce keys, scheduled tasks, WMI event…

775
6K
Instructions
View
fengshao1227 logo

Security

fengshao1227
CommunityPopular

攻防秘典索引。渗透测试、代码审计、红队攻击、蓝队防御、威胁情报、漏洞研究。安全研究全授权,零废话直出技术细节+PoC。当魔尊提到安全、渗透、攻防、红队、蓝队、漏洞时路由到此。

446
5.9K
6 files
View
gotalab logo

Kiro Steering Custom

gotalab
CommunityPopular

Create custom steering documents for specialized project contexts. Use when creating domain-specific steering files.

283
3.7K
Instructions
View
davepoon logo

Bamboohr Automation

davepoon
CommunityPopular

Automate BambooHR tasks via Rube MCP (Composio): employees, time-off, benefits, dependents, employee updates. Always search tools first for current schemas.

509
3.5K
Instructions
View
cisco-ai-defense logo

Simple Formatter

cisco-ai-defense
OrganizationPopular

Formats text according to specified style guidelines. A clean example skill with no security issues.

321
2.5K
2 files
View
xu-xiang logo

Security Scan

xu-xiang
CommunityPopular

使用 AgentShield 扫描 Claude Code 配置(.claude/ 目录)中的安全漏洞、配置错误和注入风险。检查 CLAUDE.md、settings.json、MCP 服务端、钩子(Hooks)和智能体(Agents)定义。

318
1.9K
Instructions
View
wgpsec logo

Gcp Exploit

wgpsec
OrganizationPopular

GCP 云环境攻击方法论。当目标使用 Google Cloud Platform、发现 GCP Service Account/Metadata/Storage Bucket 时使用。覆盖 Metadata 服务利用、Service Account 密钥窃取、IAM 提权、GKE 逃逸、Storage Bucket 枚举

242
1.7K
2 files
View
huang-sir1 logo

Radiology Research Agent

huang-sir1
CommunityPopular

Use when designing or auditing an LLM Agent that automates medical-imaging research tasks such as literature and dataset discovery, protocol planning, evidence-grounded RAG, analysis orchestration,…

17
1.7K
2 files
View
NeoLabHQ logo

Decay

NeoLabHQ
OrganizationPopular

Manage evidence freshness by identifying stale decisions and providing governance actions

159
1.7K
Instructions
View
rmyndharis logo

Blockchain Developer

rmyndharis
CommunityPopular

Build production-ready Web3 applications, smart contracts, and decentralized systems. Implements DeFi protocols, NFT platforms, DAOs, and enterprise blockchain integrations. Use PROACTIVELY for smart…

264
1.6K
Instructions
View
amElnagdy logo

Wp Guard

amElnagdy
CommunityPopular

Review generated or changed WordPress code — plugins, themes, and blocks — before it ships. Best used reactively after an agent writes, edits, or reviews code touching WordPress APIs:…

141
1.2K
6 files
View
huytieu logo

Retro

huytieu
CommunityPopular

CP-7 retrospective: audit checkpoints, evidence quality, action items, and harvest candidates. Closes the V-model cycle and feeds the next run. Use via /retro after ship, escalate, or significant…

138
1.2K
1 files
View
codewithmukesh logo

Httpclient Factory

codewithmukesh
Organization

IHttpClientFactory and typed HTTP clients for .NET 10 applications. Covers named/typed/keyed clients, DelegatingHandlers, resilience with Microsoft.Extensions.Http.Resilience, and testing patterns.…

170
721
Instructions
View
blacklanternsecurity logo

Infrastructure Enumeration

blacklanternsecurity
Organization

Enumeration of infrastructure services: DNS, SMTP, SNMP, IPMI, NFS, TFTP, RPC/MSRPC, and HTTP/HTTPS surface detection. Checks zone transfers, open relays, default community strings, cipher zero, NFS…

39
276
Instructions
View
mattgierhart logo

Prd V05 Technical Stack Selection

mattgierhart
Community

Determine technologies needed to build the product, making build/buy/integrate decisions during PRD v0.5 Red Team Review. Handles both greenfield and brownfield contexts. Triggers on requests to…

11
179
5 files
View
trilwu logo

Reversing React Native Apps

trilwu
Community

Reverse engineer React Native mobile apps, including Hermes bytecode bundles, using hbctool, hermes-dec, and Frida. Use when an APK contains index.android.bundle or libhermes.so, when an IPA contains…

15
144
Instructions
View
Houseofmvps logo

Retro

Houseofmvps
Community

Sprint retrospective — analyzes git velocity, commit patterns, test health, and shipping cadence. Use after a sprint, at the end of the week, or when the user wants to reflect on progress.

14
122
Instructions
View
Factory-AI logo

Commit Security Scan

Factory-AI
Organization

Analyze code changes for security vulnerabilities using LLM reasoning and threat model patterns. Use for PR reviews, pre-commit checks, or branch comparisons.

15
111
1 files
View
mturac logo

Continuous Agent Loop

mturac
Community

品質ゲート、評価、リカバリーコントロールを備えた継続的な自律エージェントループのパターン。

2
91
Instructions
View
simota logo

Flow

simota
Community

Implementing CSS/JS animations for hover effects, loading states, modal transitions, and gesture interactions. Use for meaningful motion, interaction feedback, or performance-safe animation.

14
80
14 files
View
brucesongs logo

Chronicle

brucesongs
Community

A system for recording, indexing, and distilling knowledge from agent lifecycle events. Through a three-layer document system (overview -> detailed records -> knowledge distillation), raw conversation…

18
70
15 files
View
wshobson logo

Solidity Security

wshobson
CommunityPopular

Master smart contract security best practices to prevent common vulnerabilities and implement secure Solidity patterns. Use when writing smart contracts, auditing existing contracts, or implementing…

4.2K
39.8K
1 files
View
mukul975 logo

Analyzing Golang Malware With Ghidra

mukul975
CommunityPopular

Reverse engineer Go-compiled malware in Ghidra by parsing Go buildinfo and pclntab structures, recovering stripped/obfuscated function names (e.g. via GoResolver), and extracting embedded…

4K
32.9K
6 files
View
googleworkspace logo

Gws Meet

googleworkspace
OrganizationPopular

Manage Google Meet conferences.

1.8K
31K
Instructions
View
prowler-cloud logo

Prowler Test Mcp

prowler-cloud
OrganizationPopular

Testing patterns for the Prowler MCP Server: in-memory FastMCP clients, the ProwlerAPIClient singleton, JSON:API model builders and mocked httpx transports. Trigger: When writing tests under…

2.4K
14.8K
3 files
View
SnailSploit logo

Offensive Linux Privesc

SnailSploit
CommunityPopular

Comprehensive Linux privilege escalation methodology for offensive security engagements. Covers the full attack surface from a low-privilege shell to root: SUID/SGID binary abuse via GTFOBins, Linux…

775
6K
Instructions
View
samber logo

Golang Pkg Go Dev

samber
CommunityPopular

Golang package and module lookup via `godig`, a pkg.go.dev API client (CLI + MCP server). Use for any Go/Golang library's documentation, API signatures, symbols, usage examples, which versions exist,…

213
3.3K
1 files
View
jeremylongshore logo

Hyperflow Dispatch

jeremylongshore
CommunityPopular

Hyperflow execution phase. Use when a task file exists in .hyperflow/tasks/ and the work needs building — verbs like build, implement, add, refactor, "wire up", "run the plan", "execute the task".…

402
2.8K
Instructions
View
yaklang logo

Container Escape Techniques

yaklang
OrganizationPopular

Container escape playbook. Use when operating inside a Docker container, LXC, or Kubernetes pod and need to escape to the host via privileged mode, capabilities, Docker socket, cgroup abuse, namespace…

292
2.2K
1 files
View
wgpsec logo

Gcp Pentesting

wgpsec
OrganizationPopular

GCP 云环境渗透测试总体方法论。当目标使用 Google Cloud Platform、发现 GCP 相关资产(GCS Bucket/Compute Engine/Cloud Functions/GKE)、获取 GCP 凭据(Service Account Key/OAuth Token/Metadata Token)、或需要对 GCP…

242
1.7K
2 files
View
daymade logo

Marketplace Dev

daymade
CommunityPopular

Creates and maintains Claude Code plugin marketplaces, consolidates standalone skills into a new or existing suite, and moves skills between suites. Converts any Claude Code skills repository into an…

219
1.4K
9 files
View
uphiago logo

Gitlab Public Recon

uphiago
CommunityPopular

Mine GitLab for secrets, CI tokens when subdomain found.

213
1.3K
Instructions
View
TencentCloudBase logo

Minimal Web Baas Demo

TencentCloudBase
OrganizationPopular

Fast path for a minimal CloudBase Web + database demo (最小前后端 / 最小可用 fullstack / Lovable-like BaaS). Defaults to @cloudbase/js-sdk client CRUD (NoSQL app.database / PG app.rdb), MCP-only schema,…

141
1.1K
Instructions
View
ww-w-ai logo

Pdca Fast Track

ww-w-ai
Organization

Daniel-mode fast-track auto-approves Checkpoint 1-8 when Trust ≥ 80, fastTrack on, Design doc exists. Else L2 + manual gates. Triggers: pdca fast-track, skip checkpoints, auto approve

154
601
Instructions
View
ancoleman logo

Displaying Timelines

ancoleman
Community

Displays chronological events and activity through timelines, activity feeds, Gantt charts, and calendar interfaces. Use when showing historical events, project schedules, social feeds, notifications,…

73
523
31 files
View
hoodini logo

Owasp Security

hoodini
Community

Implement secure coding practices following OWASP Top 10. Use when preventing security vulnerabilities, implementing authentication, securing APIs, or conducting security reviews. Triggers on OWASP,…

62
280
Instructions
View
blacklanternsecurity logo

Network Recon

blacklanternsecurity
Organization

Network reconnaissance, host discovery, port scanning, and OS fingerprinting. Produces a port/service map that the orchestrator uses to route to service-specific enumeration skills.

39
276
Instructions
View
Mindrally logo

Blockchain

Mindrally
Organization

Expert guidelines for blockchain development including CosmWasm, Cosmos, and cross-chain patterns

41
259
Instructions
View

Set up your own AI workspace now

Get notified about new features and future giveaways by subscribing to our newsletter 👇