Security AI Skills

1,735 open-source Security AI skills that teach any AI model a new workflow.

Search and filter AI skills

Showing 409-459 of 1,735 AI skills

AI skills directory results

Hmbown logo

Knock

Hmbown
Community

Knock is specifically about restoring legitimate access through authorized channels. It is NOT about: - Performance optimization (slow queries, throughput issues) → different spell - Removing safety…

10
106
Instructions
View
AIDotNet logo

Git Workflow

AIDotNet
Organization

自动化Git操作,智能生成遵循Conventional Commits的提交信息、分支管理和PR描述生成。

17
85
Instructions
View
ilyasibrahim logo

Agent Coordination

ilyasibrahim
Community

Coordination protocol for main Claude Code agent. Explicit user invocation required ("mobilize agents", "coordinate", "check registry"). Provides agent orchestration, registry management, and handoff…

15
83
4 files
View
reason-machines logo

Ai Scanner Garak

reason-machines
Organization

AI model safety scanner built on NVIDIA garak for testing LLMs against 179 security probes across 35 vulnerability families

15
80
Instructions
View
simota logo

Breach

simota
Community

Designing red team attack scenarios, threat models, MITRE ATT&CK/OWASP application, Purple Team exercises, and AI/LLM red teaming. Use when adversarial security validation is needed.

14
80
11 files
View
kaivyy logo

Perseus Config

kaivyy
Community

Security configuration analysis (Headers, CORS, Docker, CI/CD, Cloud, K8s)

14
68
Instructions
View
damusix logo

Hurl

damusix
Community

Write and run HTTP API tests in Hurl's plain-text format. Use when testing REST/GraphQL APIs, writing integration or smoke tests for HTTP endpoints, chaining requests with captured values, polling…

3
63
6 files
View
thedotmack logo

Cloud Sync

thedotmack
CommunityPopular

Set up or check claude-mem cloud sync with cmem.ai Pro. Use when the user says "set up cloud sync", "sync my memories", "cmem pro", "cloud backup", "sync status", or wants their memory database backed…

8.3K
94.1K
Instructions
View
usestrix logo

Web App Penetration Testing

usestrix
OrganizationPopular

Pentest a web app or website end to end — black-box testing of a live URL, staging environment, or local dev server that finds and exploits real vulnerabilities (auth bypass, broken access control,…

6.9K
63.3K
Instructions
View
CherryHQ logo

Code Mate Openclaw

CherryHQ
OrganizationPopular

Runs a local OpenClaw agent non-interactively and returns its structured response. Use when the user asks to delegate a bounded task to the OpenClaw main agent.

5K
51.9K
Instructions
View
sickn33 logo

Acceptance Orchestrator

sickn33
CommunityPopular

Use when a coding task should be driven end-to-end from issue intake through implementation, review, deployment, and acceptance verification with minimal human re-intervention.

6.8K
46.5K
Instructions
View
wshobson logo

Fastapi Templates

wshobson
CommunityPopular

Create production-ready FastAPI projects with async patterns, dependency injection, and comprehensive error handling. Use when building new FastAPI applications or setting up backend API projects.

4.2K
39.8K
1 files
View
github logo

Agent Owasp Compliance

github
OrganizationPopular

Check any AI agent codebase against the OWASP Agentic Security Initiative (ASI) Top 10 risks. Use this skill when: - Evaluating an agent system's security posture before production deployment -…

5K
39.1K
Instructions
View
zhaoxuya520 logo

Competition Custom Protocol Replay

zhaoxuya520
CommunityPopular

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for custom binary or text protocol recovery, handshake reconstruction, framing, sequence control, checksums, stateful…

5K
36.3K
2 files
View
mukul975 logo

Analyzing Azure Activity Logs For Threats

mukul975
CommunityPopular

Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query to detect suspicious administrative operations, impossible travel, privilege escalation, and resource modifications. Builds…

4K
32.9K
2 files
View
googleworkspace logo

Gws Docs

googleworkspace
OrganizationPopular

Read and write Google Docs.

1.8K
31K
Instructions
View
AgriciDaniel logo

Seo Audit

AgriciDaniel
CommunityPopular

Full website SEO audit with parallel subagent delegation. Crawls up to 500 pages, detects business type, delegates to up to 15 specialists (8 always + 7 conditional), generates health score. Use when…

2.5K
17.1K
Instructions
View
prowler-cloud logo

Postgresql Indexing

prowler-cloud
OrganizationPopular

PostgreSQL indexing best practices for Prowler: index design, partial indexes, partitioned table indexing, EXPLAIN ANALYZE validation, concurrent operations, monitoring, and maintenance. Trigger: When…

2.4K
14.8K
Instructions
View
Jeffallan logo

Code Reviewer

Jeffallan
CommunityPopular

Analyzes code diffs and files to identify bugs, security vulnerabilities (SQL injection, XSS, insecure deserialization), code smells, N+1 queries, naming issues, and architectural concerns, then…

1.1K
11.5K
6 files
View
steipete logo

Codex Huge Context

steipete
CommunityPopular

Codex 1M context: direct OpenAI Responses API inference, safe Astra/Sol/Terra/Luna input headroom, Keychain delivery, and Mac fleet rollout.

547
6.6K
2 files
View
Tencent logo

Inter Agent Comm Security Detection

Tencent
OrganizationPopular

Detect data leakage, missing boundaries, or privilege mismatch in inter-agent communication.

594
6.4K
Instructions
View
SnailSploit logo

Offensive K8s Attacks

SnailSploit
CommunityPopular

Kubernetes cluster attack techniques covering the full attack lifecycle from initial foothold in a pod to cluster-wide compromise. Covers service account token theft and impersonation, RBAC…

775
6K
Instructions
View
epicweb-dev logo

Epic Security

epicweb-dev
OrganizationPopular

Guide on security practices including CSP, rate limiting, and session security for Epic Stack

461
5.5K
Instructions
View
awarexone logo

Meme Coin Audit

awarexone
OrganizationPopular

Meme coin and token security audit — rug pull detection (honeypot, hidden mint, fee manipulation, LP lock bypass), Solana SPL token analysis (freeze authority, mint authority, metadata mutability),…

868
4.9K
Instructions
View
zebbern logo

Burp Suite Testing

zebbern
CommunityPopular

This skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp Repeater", "analyze…

464
4.6K
Instructions
View
ljagiello logo

Ctf Web

ljagiello
CommunityPopular

Provides web exploitation techniques for CTF challenges. Use when the target is primarily an HTTP application, API, browser client, template engine, identity flow, or smart-contract frontend/backend…

380
3.3K
23 files
View
aws logo

Scanning With Aws Security Agent

aws
OrganizationPopular

Run an AWS Security Agent scan on the workspace — uploads the source to AWS, scans it with the managed Security Agent service, and returns ranked, verified findings with code locations and…

311
2.7K
Instructions
View
sergebulaev logo

Linkedin Post Writer

sergebulaev
CommunityPopular

Draft a new LinkedIn post from scratch using one of 20 2026 hook formulas (anaphora, R.I.P., time-anchor, curiosity-gap, contrarian, controlled A/B, false-binary, and more) plus a founders-edition…

456
2.6K
3 files
View
cisco-ai-defense logo

Ransomware Chain

cisco-ai-defense
OrganizationPopular

Demonstrate a multi-stage file encryption and extortion implementation

321
2.5K
2 files
View
redhat-et logo

Ripwire Mcp

redhat-et
OrganizationPopular

Wire ripwire into an agent as an MCP server — `ripwire wrap AGENT` (Claude Code, Cursor, Codex, Gemini…) — and choose the server verb mid-task. Also tool HEALTH: a symbol you expected is missing from…

141
2.2K
1 files
View
tinyfish-io logo

Dep Security

tinyfish-io
OrganizationPopular

Check every dependency in a package.json against live CVE databases and security advisories in real time — specifically targeting vulnerabilities disclosed in the last 48 hours, the window that Snyk,…

333
2.2K
Instructions
View
xu-xiang logo

Django Security

xu-xiang
CommunityPopular

Django 安全最佳实践、身份验证(Authentication)、授权(Authorization)、CSRF 防护、SQL 注入防御、XSS 防御以及安全部署配置。

318
1.9K
Instructions
View
open-mercato logo

Om Auto Upgrade 0.6.7 To 0.7.0

open-mercato
OrganizationPopular

Migrate downstream Open Mercato code from 0.6.7 to 0.7.0 with exact TanStack, settings-group, and removed-env edits; audit auth, search, workflow, facts, Redis, webhook, and security-header changes;…

415
1.8K
Instructions
View
Prat011 logo

Notion Spec To Implementation

Prat011
CommunityPopular

Turns product or tech specs into concrete Notion tasks that Claude code can implement. Breaks down spec pages into detailed implementation plans with clear tasks, acceptance criteria, and progress…

303
1.7K
13 files
View
wgpsec logo

Prompt Leak

wgpsec
OrganizationPopular

AI/LLM 系统提示词泄露技术。当目标是基于 LLM 的应用且想获取其系统提示词、配置信息、工具列表、知识库内容时使用。AI Bug Bounty、红队评估、竞品分析的关键第一步

242
1.7K
1 files
View
huang-sir1 logo

Radiology Federated Learning

huang-sir1
CommunityPopular

Use when multiple imaging centers cannot pool raw data and need a federated-learning research design. Chooses horizontal, vertical, split, or personalized federation; plans aggregation, non-IID…

17
1.7K
2 files
View
first-fluke logo

Oma Design

first-fluke
OrganizationPopular

Define or review a visual system, DESIGN.md, or redesign direction. Use for typography, layout, color, motion, and interaction design decisions.

149
1.3K
20 files
View
uphiago logo

Recon Playbook

uphiago
CommunityPopular

Use when starting or restructuring an authorized external web and API assessment.

213
1.3K
Instructions
View
aklofas logo

Mouser

aklofas
CommunityPopular

Search Mouser Electronics for electronic components — secondary source for prototype orders. Find parts, check pricing/stock, download datasheets, analyze specifications. Use with KiCad for BOM…

109
1.2K
2 files
View
ananddtyagi logo

Safe Project Organizer

ananddtyagi
Community

Safely analyze and reorganize project structure with multi-stage validation, dry-run previews, and explicit user confirmation. Use when projects need cleanup, standardization, or better organization.

85
689
2 files
View
oliver-kriska logo

Audit

oliver-kriska
Community

Project health audit and health check — architecture, performance, tests, dependencies, code quality. Use when assessing overall project health, before releases, or after refactors.

40
555
2 files
View
aiskillstore logo

Vibe Security

aiskillstore
Organization

Security intelligence for code analysis. Detects SQL injection, XSS, CSRF, authentication issues, crypto failures, and more. Actions: scan, analyze, fix, audit, check, review, secure, validate,…

45
427
19 files
View
Ibrahim-3d logo

Eval Integration

Ibrahim-3d
Community

Specialized integration evaluator for the Evaluate-Loop. Use this for evaluating tracks that integrate external services — Supabase auth/DB, Stripe payments, Gemini API, third-party APIs. Checks API…

38
378
Instructions
View
blacklanternsecurity logo

Credential Dumping

blacklanternsecurity
Organization

Extracts credentials from Active Directory: DCSync replication, NTDS.dit database extraction, SAM hive dump, Azure AD Connect (ADSync) credential extraction, LAPS passwords (legacy + Windows LAPS),…

39
276
Instructions
View
Mindrally logo

Api Development

Mindrally
Organization

Guidelines for building clean, scalable APIs with Go standard library and NestJS TypeScript, covering security, validation, and modular architecture.

41
259
Instructions
View
ed3dai logo

Writing Claude Directives

ed3dai
Organization

Use when writing instructions that guide Claude behavior - skills, CLAUDE.md files, agent prompts, system prompts. Covers token efficiency, compliance techniques, and discovery optimization.

33
249
2 files
View
Dynatrace logo

Dt Obs Azure

Dynatrace
Organization

Azure cloud resources including VMs, VMSS, SQL Database, Storage, AKS, App Service, Functions, VNet networking, load balancers, Event Hubs, Container Apps, and Key Vault. Monitor Azure infrastructure,…

30
156
13 files
View
trilwu logo

Auditing Mcp Servers

trilwu
Community

Audit Model Context Protocol servers for injection surfaces, excessive tool scope, authorization gaps, resource over-exposure, and transport weaknesses across stdio, SSE, and Streamable HTTP…

15
144
Instructions
View
Houseofmvps logo

Deploy

Houseofmvps
Community

Pre-flight checks then deploy. Validates env vars, migrations, bundle size, runs /ship audit, then deploys via git push or platform CLI.

14
122
Instructions
View
686f6c61 logo

Sync Project Docs

686f6c61
Community

Usar para sincronizar la documentación viva del proyecto después de una fase. También: actualizar docs/project, índice, architecture.md, compliance.md, threat-model.

7
115
Instructions
View
HermeticOrmus logo

Dependency Upgrade

HermeticOrmus
Community

Manage major dependency version upgrades with compatibility analysis, staged rollout, and comprehensive testing. Use when upgrading framework versions, updating major dependencies, or managing…

18
104
Instructions
View

Set up your own AI workspace now

Get notified about new features and future giveaways by subscribing to our newsletter 👇