Agent skills

Security skills

Read straight from the source repositories, not from submitted listings. Every skill shows what it does, what is inside, where it came from — and whether attention around its source is actually growing.

Toolclaude-code 29,140codex 4,755cursor 3,111copilot 976windsurf 55cline 34
CategoryWorkflow & Productivity 4,979AI & Agents 3,037Data & Analytics 2,345Code Review & Quality 1,376Backend & API 1,244Security 1,194Design & Presentation 1,154Documentation 965Content & Marketing 916Testing & QA 777DevOps & Cloud 576Databases 550Frontend 469Business & Finance 328Media & Video 257Other 9,833
2,762 found
2,3052,352 · page 49 / 58
oauth2-flow-helperConfigure with oauth2 flow helper operations. Auto-activating skill for Security Fundamentals. Triggers on: oauth2 flow helper…jeremylongshorewritesobserval-adminObserval admin operations including user management, server settings, submission review queue, security events, audit logs, and…Observalobsidian-install-authSet up Obsidian plugin development environment with Node.js and TypeScript. Use when starting a new plugin project, configuring…jeremylongshorewritesobsidian-security-basicsImplement secure Obsidian plugin development practices. Covers credential storage, input validation, XSS prevention, network…jeremylongshorewritesodoo-security-rulesExpert in Odoo access control: ir.model.access.csv, record rules (ir.rule), groups, and multi-company security patterns.sickn33offensive-bluetooth-bleBluetooth Low Energy (BLE) attack methodology — GATT enumeration, characteristic read/write without auth, pairing downgrade (Just…SnailSploitoffensive-business-logicBusiness logic vulnerability testing for web/mobile/API engagements. Covers workflow bypass, state machine violations, multi-step…SnailSploitoffensive-cloudCloud security attack methodology covering AWS, Azure, and GCP. Includes credential harvesting (IMDS, ~/.aws, env vars, leaked CI…SnailSploitoffensive-iotIoT and embedded device security testing methodology. Covers hardware reconnaissance (UART, JTAG, SWD, SPI flash, I2C EEPROM…SnailSploitoffensive-jwtJWT attack methodology for penetration testers. Covers algorithm confusion (alg:none, RS256→HS256), weak HMAC secret brute force…SnailSploitoffensive-osintComprehensive OSINT methodology skill for offensive security, red team intelligence gathering, and bug bounty reconnaissance.…SnailSploitoffensive-reportingPenetration test and red team report writing methodology. Covers executive summary structuring (risk-led narrative for…SnailSploitoffensive-shellcodeShellcode development reference for offensive security engagements. Use when writing custom x86/x64 shellcode, implementing…SnailSploitoffensive-sqliSQL injection testing skill for offensive security assessments and bug bounty hunting. Covers error-based, UNION-based…SnailSploitoffensive-toctouTime-of-Check / Time-of-Use (TOCTOU) race condition exploitation methodology across binary, kernel, filesystem, web, and…SnailSploitoffensive-wifiWireless / 802.11 attack methodology for red team engagements and wireless security assessments. Covers monitor-mode setup…SnailSploitoffensive-wpa3-saeWPA3 / SAE (Simultaneous Authentication of Equals) attack methodology — transition-mode (mixed WPA2/WPA3) downgrade, Dragonblood…SnailSploitonboarding-uxAudit and generate in-app user guidance — onboarding flows, empty states, tooltips, feature tours, contextual help, defaults, and…jezwebonesignal-user-auth-automationAutomate Onesignal User Auth tasks via Rube MCP (Composio). Always search tools first for current schemas.ComposioHQopen-code-reviewPerforms AI-powered code review on Git changes using the `ocr` CLI from alibaba/open-code-review. Use when the user asks to…alibabaopen-source-compliance-auditWenn es um Open-Source-Software Compliance Audit für GPL LGPL MIT BSD Apache Copyleft und SBOM in Fachanwalt It Recht geht: prüft…Klotzketteopen-source-und-secret-contaminationWenn es um Open Source Und Secret Contamination in NDA-Generator und Verschwiegenheitsvereinbarungs-Checker geht: ordnet…Klotzketteopenclaw-ghsa-maintainerMaintainer workflow for OpenClaw GitHub Security Advisories (GHSA). Use when Codex needs to inspect, patch, validate, or publish…SafeAI-Lab-Xopenclaw-release-maintainerMaintainer workflow for OpenClaw releases, prereleases, changelog release notes, and publish validation. Use when Codex needs to…SafeAI-Lab-Xopenevidence-install-authInstall and configure OpenEvidence SDK/API authentication. Use when setting up a new OpenEvidence integration. 'jeremylongshorewritesopenloomi-apiopenloomi HTTP API reference (local-first, served from the OpenLoomi Desktop app at http://localhost:3414). Use when working with…melandlabsops-integrateAdd any SaaS API as a first-class integration. Provide the service name — ops-integrate discovers auth patterns, tests…davepoonwritesorchestrate-reviewUse when user asks to \"deep review the code\", \"thorough code review\", \"multi-pass review\", or when orchestrating the Phase…agent-shosdi-submissionUse when running the final pre-upload audit of an OSDI submission on HotCRP — the December registration and full-paper deadlines…brycewang-stanfordpackage-searchSearch for packages and assess security risk before adding as dependenciesdavepoonwritespagespeed-enhancerScan, audit, and fix web performance issues across all four Lighthouse/PageSpeed Insights pillars — Performance, Accessibility…sickn33Pair ProgrammingAI-assisted pair programming with multiple modes (driver$navigator$switch), real-time verification, quality monitoring, and…ruvnetpalantir-install-authInstall and configure Palantir Foundry SDK authentication with OAuth2 or token auth. Use when setting up a new Foundry…jeremylongshorewritespalantir-security-basicsApply Palantir Foundry security best practices for credentials, scopes, and access control. Use when securing API tokens…jeremylongshorewritespaper-excellenceComprehensive multi-dimensional review of the sewage-house-prices project. Runs econometrics audit, code review, manuscript…brycewang-stanfordwritespassword-hash-generatorGenerate password hash generator operations. Auto-activating skill for Security Fundamentals. Triggers on: password hash…jeremylongshorewritespassword-strength-analyzerAnalyze password strength analyzer operations. Auto-activating skill for Security Fundamentals. Triggers on: password strength…jeremylongshorewritespatent-software-saas-terms-trade-secretWenn es um US Software Patent Paragrafen 102/103/112 in Softwarerecht Deutschland/EU/International/USA geht: prüft Frist, Form…Klotzkettepath-traversal-finderManage path traversal finder operations. Auto-activating skill for Security Fundamentals. Triggers on: path traversal finder…jeremylongshorewritespathfinderMap a codebase into feature-grouped flowcharts, identify duplicated concerns across features, and propose a unified architecture.…thedotmackpci-complianceMaster PCI DSS (Payment Card Industry Data Security Standard) compliance for secure payment processing and handling of cardholder…sickn33pci-dss-validatorValidate pci dss validator operations. Auto-activating skill for Security Advanced. Triggers on: pci dss validator, pci dss…jeremylongshorewritespdf-formulare-automatisierter-audit-bfWenn es um PDF und Formulare barrierefrei in Barrierefreiheit Web Checker geht: ordnet Sachverhalt, Norm, Beweislast…Klotzkettepenetration-test-plannerPlan penetration test planner operations. Auto-activating skill for Security Advanced. Triggers on: penetration test planner…jeremylongshorewritespentest-checklistProvide a comprehensive checklist for planning, executing, and following up on penetration tests. Ensure thorough preparation…sickn33pentest-commandsProvide a comprehensive command reference for penetration testing tools including network scanning, exploitation, password…sickn33pentest-methodologyEthical security testing methodology - 5-phase pipeline, OWASP checklist, proof levels, structured findingsvibeevalpentest-reportWrite a clear penetration-test report from findings of an authorized engagement. Use when documenting a pentest, security…mohitagw15856
← Prev49 / 58Next →
How the catalog works
What is an agent skill?

A folder with a SKILL.md inside — instructions, and often scripts and assets, that an AI agent loads when the task matches. Claude Code, Codex, Cursor and Copilot all read the same format, so one skill usually works across them.

Where does this catalog come from?

We read 660 source repositories straight from their file trees rather than from submitted listings — what you see is what is actually published. 98 repositories were rejected because they advertise skills but contain none: link lists, not folders.

Why is there no install counter?

Because install counts live in the registry that serves `npx skills add`, and that is not ours — publishing a number we cannot verify would be worse than showing none. Instead we show where a skill comes from and whether attention around its source is actually growing, measured from our own weekly snapshots.

Do you deduplicate?

Yes, and it matters more than expected. Aggregator repositories republish the same skill in several places — one source carried 6,317 SKILL.md files for 2,001 actual skills. We collapse by folder name and keep the canonical copy, so the catalog counts things, not copies.

Keep going