Agent skills

Security skills

Read straight from the source repositories, not from submitted listings. Every skill shows what it does, what is inside, where it came from — and whether attention around its source is actually growing.

Toolclaude-code 29,140codex 4,755cursor 3,111copilot 976windsurf 55cline 34
CategoryWorkflow & Productivity 4,979AI & Agents 3,037Data & Analytics 2,345Code Review & Quality 1,376Backend & API 1,244Security 1,194Design & Presentation 1,154Documentation 965Content & Marketing 916Testing & QA 777DevOps & Cloud 576Databases 550Frontend 469Business & Finance 328Media & Video 257Other 9,833
2,762 found
1,3931,440 · page 30 / 58
ads-microsoftAudit Microsoft Advertising measurement, UET, search and audience campaigns, Google imports, syndication, keywords, creative…AgriciDanielads-pinterestAudit Pinterest Ads measurement, Pinterest Tag and Conversions API, catalog and shopping readiness, visual creative, audiences…AgriciDanielads-redditAudit Reddit Ads measurement, campaign structure, community and interest targeting, creative-native fit, catalog advertising…AgriciDanielads-reportRender Markdown, HTML, or PDF paid-advertising reports from a validated Claude Ads JSON run bundle. Use for ads report, client…AgriciDanielads-server-side-trackingAudit server-side paid-media measurement including server-side tag management, platform conversion APIs, event taxonomy…AgriciDanielads-snapchatAudit Snapchat Ads measurement, Snap Pixel and Conversions API, mobile and app campaigns, creative, AR and catalog formats…AgriciDanielads-tiktokAudit TikTok Ads measurement, Pixel and Events API, mobile-first creative, audiences, Smart+, Shop and commerce campaigns…AgriciDanielads-xAudit X Ads measurement, X Pixel and Conversions API, campaign objectives, keyword and conversation targeting, creative, budgets…AgriciDanielads-youtubeAudit YouTube Ads campaign setup, video and Demand Gen inventory, Shorts, in-stream, CTV, creative, audiences, brand safety…AgriciDanielAdvanced Reflected XSS Payload Crafting MethodologyA systematic, first-principles approach to crafting advanced Cross-Site Scripting (XSS) payloads by analyzing reflection…ECNU-ICALKaegisops-aiAutonomous DevSecOps & FinOps Guardrails. Orchestrates Gemini 3 Flash to audit Linux Kernel patches, Terraform cost drifts, and…sickn33aejpol-robustnessUse when an AEJ: Economic Policy manuscript's headline policy estimate needs to be shown stable and credible against…brycewang-stanfordaeo-auditAudit AI search visibility. Use when: checking brand presence in ChatGPT, Perplexity, AI Overviews, Gemini.indranilbanerjeeaeo-optimizerOptimize an article for Answer Engine Optimization (AEO) so AI engines like ChatGPT, Perplexity, and Claude can extract, quote…mohitagw15856affiliate-page-generatorWhen the user wants to create, optimize, or audit affiliate program page content. Also use when the user mentions "affiliate…kostja94agent-architecture-auditFull-stack diagnostic for agent and LLM applications. Audits the 12-layer agent stack for wrapper regression, memory pollution…mturacagent-audit-loggingImplement comprehensive audit logging and reporting for multi-agent systems. Covers event capture, structured logging…cosmicstack-labsagent-context-auditAudit a repo's agent context — CLAUDE.md files, codebase docs, skills, and tool/MCP designs — against Anthropic's Claude 5…AI-Builder-Clubagent-governancePatterns and techniques for adding governance, safety, and trust controls to AI agent systems. Use this skill when: - Building AI…githubagent-owasp-complianceCheck any AI agent codebase against the OWASP Agentic Security Initiative (ASI) Top 10 risks. Use this skill when: - Evaluating…githubagent-readiness-auditAudit whether AI agents can actually use your product — docs, APIs, onboarding, errors, and discoverability, evaluated from a…mohitagw15856agent-security-managerAgent skill for security-manager - invoke with $agent-security-managerruvnetagent-v3-security-architectAgent skill for v3-security-architect - invoke with $agent-v3-security-architectruvnetagentic-actions-auditorAudits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI…sickn33agentlas-security-scanUse when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment) before private…agentlas-aiagf-deploying-uatUse when deploy-engineer is about to deploy the merged-to-main code to the isolated local UAT stack (after code review + SIT…pcliangxagf-releasing-appleUse when apple-release-engineer is about to build the signed distributable (TestFlight build / notarized DMG / internal package)…pcliangxagf-writing-adrUse when tech-lead is about to record an architecture decision (new tech stack member, deviation from baseline, deployment /…pcliangxagile-scrum-audit-klauseln-on-premWenn es um Agile/Scrum-Vertrag in Softwarerecht Deutschland/EU/International/USA geht: prüft Frist, Form, Zuständigkeit…KlotzketteAhrefs AutomationAutomate SEO research with Ahrefs -- analyze backlink profiles, research keywords, track domain metrics history, audit organic…ComposioHQai-code-reviewReview AI-authored code for its characteristic failure modes — plausible-but-wrong logic, hallucinated APIs, over-engineering…mohitagw15856ai-content-auditAudit a content library, docs site, or blog for AI-generated filler that's eroding trust and search performance — and triage what…mohitagw15856ai-engineering-toolkit6 production-ready AI engineering workflows: prompt evaluation (8-dimension scoring), context budget planning, RAG pipeline…sickn33ai-prompt-engineering-safety-reviewComprehensive AI prompt engineering safety review and improvement prompt. Analyzes prompts for safety, bias, security…githubai-roi-auditAudit whether the organisation's AI spend actually paid — measured against baselines, not vendor math or vibes. Use when a CFO…mohitagw15856ai-security-papers-guideAI security papers from top-4 security conferencesbrycewang-stanfordai-visibility-writingAudit, question, suggest, or fact-preservingly revise a press release, blog post, contributed article, or expert explainer so AI…elvisunaims-audit/cs:aims-audit <scope> — ISO/IEC 42001 AIMS internal-audit 6-question forcing interrogation. Use before certification stage 1…alirezarezvanialchemy-install-authInstall the Alchemy SDK and configure API key authentication for Web3 development. Use when setting up blockchain API access…jeremylongshorewritesalchemy-security-basicsApply Web3 security best practices for Alchemy-powered applications. Use when securing API keys, validating blockchain inputs…jeremylongshorewritesalgolia-enterprise-rbacConfigure Algolia enterprise access control: team-scoped API keys, Secured API Keys for multi-tenant RBAC, dashboard team…jeremylongshorewritesalgolia-install-authInstall and configure the Algolia JavaScript v5 client with proper API key management. Use when setting up a new Algolia…jeremylongshorewritesalgolia-prod-checklistExecute Algolia production readiness checklist: index settings, key security, replica configuration, monitoring, and rollback…jeremylongshorealgolia-security-basicsApply Algolia security best practices: API key scoping, secured API keys, frontend vs backend key separation, and key rotation.…jeremylongshorewritesalternatives-page-generatorWhen the user wants to create, optimize, or audit alternatives or comparison content (page or blog article). Also use when the…kostja94analytics-trackingDesign, audit, and improve analytics tracking systems that produce reliable, decision-ready data.sickn33android-asoWhen the user wants to optimize their Google Play Store listing — title, short description, full description, keywords, ratings…Eronredanima-install-authInstall the Anima SDK and configure authentication for Figma-to-code generation. Use when setting up design-to-code automation…jeremylongshorewrites
← Prev30 / 58Next →
How the catalog works
What is an agent skill?

A folder with a SKILL.md inside — instructions, and often scripts and assets, that an AI agent loads when the task matches. Claude Code, Codex, Cursor and Copilot all read the same format, so one skill usually works across them.

Where does this catalog come from?

We read 660 source repositories straight from their file trees rather than from submitted listings — what you see is what is actually published. 98 repositories were rejected because they advertise skills but contain none: link lists, not folders.

Why is there no install counter?

Because install counts live in the registry that serves `npx skills add`, and that is not ours — publishing a number we cannot verify would be worse than showing none. Instead we show where a skill comes from and whether attention around its source is actually growing, measured from our own weekly snapshots.

Do you deduplicate?

Yes, and it matters more than expected. Aggregator repositories republish the same skill in several places — one source carried 6,317 SKILL.md files for 2,001 actual skills. We collapse by folder name and keep the canonical copy, so the catalog counts things, not copies.

Keep going