Security AI Skills

1,735 open-source Security AI skills that teach any AI model a new workflow.

Search and filter AI skills

Showing 256-306 of 1,735 AI skills

AI skills directory results

open-mercato logo

Resolution Playbook

open-mercato
OrganizationPopular

How to choose one resolution action from a ticket and its customer history.

415
1.8K
Instructions
View
wgpsec logo

Cross Domain Attack Chain

wgpsec
OrganizationPopular

Web 与 AI 跨域攻击链方法论。当目标系统同时包含传统 Web 应用和 AI/LLM 组件、 需要评估 Web 漏洞对 AI 系统的影响或 AI 漏洞对 Web 系统的影响时触发。 覆盖双向攻击链: Web→AI(XSS 窃取对话/SSRF 调用模型 API/SQLi 污染 RAG/文件上传 RAG 投毒) 和 AI→Web(注入生成存储型 XSS/Agent 执行 SQL…

242
1.7K
Instructions
View
NeoLabHQ logo

Analyse

NeoLabHQ
OrganizationPopular

Auto-selects best Kaizen method (Gemba Walk, Value Stream, or Muda) for target

159
1.7K
Instructions
View
rmyndharis logo

Api Documenter

rmyndharis
CommunityPopular

Master API documentation with OpenAPI 3.1, AI-powered tools, and modern developer experience practices. Create interactive docs, generate SDKs, and build comprehensive developer portals. Use…

264
1.6K
Instructions
View
Dataojitori logo

Memory Audit Pattern Extraction

Dataojitori
CommunityPopular

模式提取与失效解药分析。当发现多条记忆在讲同一个教训,或发现自己在一而再再而三地犯同样的错误时使用。

167
1.4K
Instructions
View
codewithmukesh logo

Authentication

codewithmukesh
Organization

Authentication and authorization for ASP.NET Core. Covers JWT bearer tokens, OpenID Connect, ASP.NET Identity, authorization policies, role and claim-based authorization, and API key authentication.…

170
721
Instructions
View
ancoleman logo

Architecting Security

ancoleman
Community

Design comprehensive security architectures using defense-in-depth, zero trust principles, threat modeling (STRIDE, PASTA), and control frameworks (NIST CSF, CIS Controls, ISO 27001). Use when…

73
523
21 files
View
glebis logo

App Release

glebis
Community

End-to-end pipeline for releasing an iOS / watchOS app to TestFlight and the App Store. Use when the user wants to publish, ship, or release an iOS/watchOS app, get a build onto TestFlight, archive…

56
379
2 files
View
Mathews-Tom logo

Architecture Reviewer

Mathews-Tom
Community

Architecture reviews across 7 dimensions (structural, scalability, enterprise readiness, performance, security, ops, data) with scored reports. Triggers on: "review architecture", "critique design",…

47
318
14 files
View
OneWave-AI logo

Agent To Agent

OneWave-AI
Organization

Agent-to-Agent (A2A) communication protocol. Connect two or more Claude agents that pass messages, share context, delegate tasks, and collaborate. Implements structured handoffs, shared memory, and…

49
293
7 files
View
blacklanternsecurity logo

Adcs Access And Relay

blacklanternsecurity
Organization

Exploits ADCS through ACL abuse on templates/CA objects and NTLM relay to enrollment endpoints. Covers ESC4 (template ACL → modify to ESC1), ESC5 (PKI object ACLs), ESC7 (ManageCA/ManageCertificates…

39
276
Instructions
View
xenitV1 logo

Clean Code

xenitV1
Community

The Foundation Skill. LLM Firewall + 2025 Security + Cross-Skill Coordination. Use for ALL code output - prevents hallucinations, enforces security, ensures quality.

34
231
Instructions
View
danielvm-git logo

Build Epic

danielvm-git
Community

Eight-step epic build cycle — reads state.yaml, execution-status.yaml, and one epic capsule; updates status via bp-yaml-set or direct edit. Resume mode runs one step per invocation. Use instead of…

18
206
Instructions
View
TerminalSkills logo

3proxy

TerminalSkills
Organization

Deploy and configure 3proxy — a lightweight universal proxy server. Use when a user asks to set up HTTP, HTTPS, SOCKS4, SOCKS5, or transparent proxies, build proxy chains, configure authentication,…

21
155
1 files
View
guia-matthieu logo

Website Finishing Director

guia-matthieu
Community

Run a structured 5-pass finishing audit on any website before launch — scoring visual polish, technical foundation, UX completeness, content quality, and cross-device readiness on 100 points. Use…

27
150
Instructions
View
yezannnnn logo

Senior Backend

yezannnnn
Community

This skill should be used when the user asks to "design REST APIs", "optimize database queries", "implement authentication", "build microservices", "review backend code", "set up GraphQL", "handle…

49
149
6 files
View
trilwu logo

Analyzing Ios Binaries

trilwu
Community

Analyze iOS applications at the binary level — decrypting FairPlay-protected IPAs with frida-ios-dump or bagbak, inspecting Mach-O load commands, recovering Objective-C headers with class-dump, and…

15
144
Instructions
View
Houseofmvps logo

Code Review

Houseofmvps
Community

Code review with principal-engineer-level depth. Reviews for correctness, performance, security, maintainability, and architecture. Use when completing tasks, reviewing PRs, or before merging.

14
122
Instructions
View
686f6c61 logo

Pr Workflow

686f6c61
Community

Crear pull requests completas con descripcion, labels y reviewers

7
115
Instructions
View
olorehq logo

Olore Better Auth 1.6.18

olorehq
Organization

Local better-auth documentation reference (1.6.18). Better Auth documentation. Use for TypeScript authentication, OAuth, email/password, 2FA, organizations, sessions, and framework-agnostic auth.

6
103
166 files
View
zhaono1 logo

Code Reviewer

zhaono1
Community

Reviews pull requests and code changes for quality, security, and best practices. Use when user asks for code review, PR review, or mentions reviewing changes.

12
79
4 files
View
rknall logo

GitLab Stack Secrets Manager

rknall
Community

Manages Docker secrets for GitLab stack projects, ensuring secrets are never in .env or docker-compose.yml, properly stored in ./secrets directory, and securely integrated with Docker secrets. Use…

9
73
2 files
View
brucesongs logo

Agentic Pentest

brucesongs
Community

LLM-driven autonomous penetration testing framework operations covering PentestGPT, HexStrike AI, Viper, PentestAgent, AI-Infra-Guard, AutoPWN, and custom agent harness patterns — including reasoning…

18
70
12 files
View
LangConfig logo

Git Workflow

LangConfig
Organization

Expert guidance for Git workflows, branching strategies, and version control best practices. Use when managing repositories, resolving conflicts, or establishing team workflows.

19
69
Instructions
View
SamarthaKV29 logo

AWS Penetration Testing

SamarthaKV29
Community

This skill should be used when the user asks to "pentest AWS", "test AWS security", "enumerate IAM", "exploit cloud infrastructure", "AWS privilege escalation", "S3 bucket testing", "metadata SSRF",…

16
69
1 files
View
kaivyy logo

Perseus Specialist

kaivyy
Community

Run all specialist deep-dive skills in parallel for comprehensive analysis

14
68
Instructions
View
thienanblog logo

Agents Md Generator

thienanblog
Community

Create, audit, or compact repository instructions in AGENTS.md, scoped overrides, and requested tool compatibility files. Use to preserve non-obvious project rules while removing stale, duplicated, or…

21
66
9 files
View
usestrix logo

Managed Pentesting With Strix

usestrix
OrganizationPopular

Run a managed pentest of a web app, API, repository, or local workspace on the app.strix.ai platform with the `strix cloud` CLI or REST API — no local Docker or LLM key needed. Safely review and…

6.9K
63.3K
Instructions
View
vercel-labs logo

Protected Vercel Deployments

vercel-labs
OrganizationPopular

Access and test Vercel deployments protected by Vercel Authentication, SSO, or Deployment Protection with agent-browser. Use when a preview or production URL redirects to a Vercel login page, returns…

2.9K
42.8K
Instructions
View
wshobson logo

Task Coordination Strategies

wshobson
CommunityPopular

Decompose complex tasks, design dependency graphs, and coordinate multi-agent work with proper task descriptions and workload balancing. Use this skill when breaking down work for agent teams,…

4.2K
39.8K
2 files
View
googleworkspace logo

Gws Chat

googleworkspace
OrganizationPopular

Google Chat: Manage Chat spaces and messages.

1.8K
31K
Instructions
View
google logo

Secops Cases

google
OrganizationPopular

Manage Google Security Operations (SecOps) SOAR cases throughout their lifecycle. Use when listing, creating, inspecting, updating, or closing SOAR cases; adding investigative comments and notes;…

1.6K
20.1K
Instructions
View
tradecatlabs logo

Web3 Hunt Foundation

tradecatlabs
CommunityPopular

Hunter mindset, recon setup, and target scoring for Web3 bug bounty. Use at the START of any new protocol hunt - scoring targets, setting up environment, understanding architecture.

1.6K
16.3K
Instructions
View
prowler-cloud logo

Jsonapi

prowler-cloud
OrganizationPopular

Strict JSON:API v1.1 specification compliance. Trigger: When creating or modifying API endpoints, reviewing API responses, or validating JSON:API compliance.

2.4K
14.8K
Instructions
View
android logo

Restore Credentials

android
OrganizationPopular

Provides knowledge and workflows to implement Android's Restore Credentials feature using the androidx.credentials library. Use this skill to create, sign in with, and delete restore keys, enabling…

484
7.4K
3 files
View
trailofbits logo

Code Maturity Assessor

trailofbits
OrganizationPopular

Systematic code maturity assessment using Trail of Bits' 9-category framework. Analyzes codebase for arithmetic safety, auditing practices, access controls, complexity, decentralization,…

611
7.1K
5 files
View
Tencent logo

Hardcoded Secret Detection

Tencent
OrganizationPopular

Detect hardcoded secrets in code or configuration accessible to the target agent. Focuses on secrets embedded in source, configs, or IaC, not runtime leaks.

594
6.4K
Instructions
View
antfu logo

Pnpm

antfu
CommunityPopular

Node.js package manager with strict dependency resolution. Use when running pnpm specific commands, configuring workspaces via pnpm-workspace.yaml, or managing dependencies with catalogs, patches,…

333
5.9K
17 files
View
zebbern logo

Authentication Patterns

zebbern
CommunityPopular

Authentication patterns: session vs JWT vs OAuth comparison, provider selection (NextAuth, Clerk, Supabase Auth), security checklist, and common mistakes. Use when implementing auth, reviewing auth…

464
4.6K
Instructions
View
BuilderIO logo

Plow Ahead

BuilderIO
OrganizationPopular

Use when the user explicitly wants autonomous progress without routine clarification stops: "plow ahead", "do not stop", "use your best judgment", "keep going until done", "finish while I am away",…

211
4.3K
1 files
View
davepoon logo

Security Audit

davepoon
CommunityPopular

Deep security audit covering OWASP Top 10, authentication, authorization, data protection, dependency vulnerabilities, and secrets scanning. Delegates to the Centinela (QA) agent.

509
3.5K
Instructions
View
NVIDIA logo

Amc Run Rtsp Calibration

NVIDIA
OrganizationPopular

Calibrate a new dataset from live RTSP camera streams via the AutoMagicCalib REST API. Use when the user provides RTSP URLs or asks to calibrate live cameras; VIOS records clips, AMC ingests them,…

397
3.3K
5 files
View
ljagiello logo

Ctf Osint

ljagiello
CommunityPopular

Provides open source intelligence techniques for CTF challenges. Use when gathering information from public sources, social media, geolocation, DNS records, username enumeration, reverse image search,…

380
3.3K
3 files
View
mcncarl logo

Yichen Codex Chatgpt

mcncarl
CommunityPopular

Use the signed-in ChatGPT website in Chat UI Pro mode, never Work mode, to research, architect, and review one local project through a configured Secure Tunnel and read-only MCP, while Codex alone…

1.4K
3.3K
15 files
View
samber logo

Golang Continuous Integration

samber
CommunityPopular

GitHub Actions CI/CD pipeline configuration for Golang projects — workflow files for test, lint, SAST, coverage and vulnerability-scan jobs, Dependabot and Renovate config files, GoReleaser release…

213
3.3K
18 files
View
jeremylongshore logo

Deploy

jeremylongshore
CommunityPopular

Use when ready to ship — runs pre-push gates (lint, typecheck, build, tests, security sweep), commits, releases, and pushes. Standalone, never auto-invoked. Push always requires explicit confirmation.…

402
2.8K
5 files
View
aws logo

Pentesting With Aws Security Agent

aws
OrganizationPopular

Run an AWS Security Agent penetration test against a live web application — registers and verifies the target domain, exercises the supplied endpoints with the managed Security Agent service, and…

311
2.7K
Instructions
View
cisco-ai-defense logo

Sensitive File Reader

cisco-ai-defense
OrganizationPopular

Read a sensitive operating-system credential file for diagnostics

321
2.5K
2 files
View
Observal logo

Observal

Observal
OrganizationPopular

Operates the Observal CLI for authentication, configuration, setup diagnosis, teamspaces, inbox work, scans, update checks, and authenticated API access. Use when the user wants to log in, configure…

472
2.4K
3 files
View
wgpsec logo

Mcp Security

wgpsec
OrganizationPopular

MCP (Model Context Protocol) 协议安全测试方法论。当目标环境使用 MCP Server 集成外部工具、 需要评估 MCP 工具描述安全性、或测试 Agent 通过 MCP 调用工具时的安全边界时触发。 覆盖: 工具描述投毒、地毯式骗局(动态篡改)、指令覆盖(Shadow Tool)、隐藏指令(ANSI/Unicode)、 跨 Server 攻击、Token…

242
1.7K
1 files
View
Pluviobyte logo

Dbs Agent Migration

Pluviobyte
CommunityPopular

Agent 工作台迁移。把任意项目整理成 Claude Code / Codex / Grok 三端一致、可长期维护的 Agent 工作台:审计规则文件、识别真源、统一命名并生成 bridge。 触发方式:/dbs-agent-migration、/agent迁移、「迁移到 Codex」「迁移到 Claude Code」「迁移到 Grok」「统一 AGENTS.md」「整理 skill…

181
1.6K
Instructions
View

Set up your own AI workspace now

Get notified about new features and future giveaways by subscribing to our newsletter 👇