Agent Skills

Security

791 skills.

Browse

malware-detection-and-removalreason-machinesIdentify, analyze, and document malware distribution repositories masquerading as legitimate softwaremalware-detection-and-reportingreason-machinesIdentify, analyze, and report malicious software distribution repositories masquerading as legitimate security toolsmalware-detection-awarenessreason-machinesUnderstanding security risks in software distribution and recognizing illegitimate software packagesmalware-detection-security-awarenessreason-machinesRecognize and educate about malware distribution disguised as legitimate security softwaremalware-distribution-awarenessreason-machinesRecognize and report malicious software distribution repositories masquerading as legitimate security toolsmalware-repository-warningreason-machinesWARNING - This repository appears to distribute cracked/pirated security software and potential malwaremalware-warning-avast-keygenreason-machinesWARNING - This repository distributes malware disguised as Avast Premium Security cracks and keygensmalware-warning-avast-piracyreason-machinesWARNING - This repository distributes pirated software and potential malware disguised as Avast Premium Securitymalware-warning-bitdefender-crackreason-machinesWARNING - This repository distributes malware disguised as pirated Bitdefender antivirus softwaremcp-security-hubreason-machinesDeploy and orchestrate 38 MCP servers for offensive security tools (Nmap, Nuclei, Ghidra, SQLMap, etc.) via Dockernpm-security-best-practicesreason-machinesExpert guidance on securing npm packages, preventing supply chain attacks, and hardening package manager configurationsopenclaw-security-hardeningreason-machinesDeploy and manage security hardening for high-privilege autonomous AI agents (OpenClaw) using zero-trust architecture and automated defense matricesopenclaw-security-watchdogreason-machinesOpenClaw security scanning skill that performs comprehensive system security audits and generates human-friendly reportsopenosint-ai-osint-frameworkreason-machinesAI-powered OSINT agent with interactive REPL, MCP server, and CLI for email/username/domain/IP/phone investigation using 11 integrated toolspalisade-security-nexus-bitdefenderreason-machinesDeploy and configure BitDefender Total Security 2026 with advanced threat detection, sandboxing, VPN integration, and AI-powered heuristic analysispentestcompanion-workspacereason-machinesSelf-hosted pentest management workspace for tracking engagements, running tools, auto-importing findings, and generating reportspentestify-security-report-generatorreason-machinesInteractive pentest report generator with vulnerability tracking, real-time risk statistics, and PDF export in multiple languagesreport-malicious-repositoryreason-machinesIdentify and report potentially malicious software repositories masquerading as legitimate security toolss800-vehicle-network-security-testingreason-machinesVehicle network security testing framework for automotive CAN bus and network protocol analysissecurity-awareness-malicious-repository-detectionreason-machinesDetect and analyze potentially malicious repositories disguising as legitimate software cracks or pirated toolssecurity-compliance-skills-suite-claudereason-machinesSecurity audits, vulnerability management, GDPR/SOC2/ISO27001 compliance and incident response skill suite for AI coding agentssecurity-detections-mcpreason-machinesQuery unified Sigma, Splunk, Elastic, KQL, Sublime, and CrowdStrike security detection rules via MCP server with MITRE ATT&CK mapping and coverage analysissecurity-threat-awarenessreason-machinesRecognize and warn against malicious software distribution repositories masquerading as legitimate security toolssecurityclaw-autonomous-soc-agentreason-machinesDeploy and operate SecurityClaw, an autonomous SOC agent with RAG-based threat detection, LLM-powered anomaly analysis, and skill-based security automationskill-file-securityreason-machinesBattle-tested security checks for AI coding assistants — 29 categories covering OWASP Top 10, CWE Top 25, and ASVS Level 3slowmist-agent-security-frameworkreason-machinesComprehensive security review framework for AI agents to audit skills, repositories, URLs, on-chain addresses, and services in adversarial environmentssparkfinderoven-claude-security-compliance-suitereason-machinesSecurity & compliance skill suite for OWASP scanning, CVE detection, GDPR/SOC2 auditing, threat modeling, and incident response workflowssparkfinderoven-r01-security-compliance-skillsreason-machinesSecurity & compliance skill suite for OWASP scanning, CVE detection, GDPR/SOC2 audits, threat modeling, and incident response workflowssparkfinderoven-security-compliance-skillsreason-machinesSecurity & compliance skill suite with OWASP scanning, CVE detection, GDPR audits, SOC2 readiness, threat modeling, and incident response workflowssparkfinderoven-security-compliance-suitereason-machinesSecurity audit and compliance automation suite with OWASP scanning, CVE detection, GDPR/SOC2 audits, threat modeling, and incident response playbooksvibe-pentest-ai-security-testingreason-machinesAI-powered automated penetration testing tool using multi-agent architecture for web applications, APIs, and admin panelsvibe-security-skillreason-machinesAgent skill that audits vibe-coded apps for common security vulnerabilities introduced by AI coding assistantsweb-security-scanner-proreason-machinesAdvanced Python web security scanner with 49 modules, evasion engine, CVE database, and WAF bypass for penetration testingwxmini-security-auditreason-machinesAutomated WeChat mini-program security auditing framework using Claude Code Agent Teams with 7 specialized agents for comprehensive static analysiszen-ai-pentest-frameworkreason-machinesAI-powered autonomous penetration testing framework with multi-agent system, real security tool execution, and compliance reportingai-scanner-garakreason-machinesAI model safety scanner built on NVIDIA garak for testing LLMs against 179 security probes across 35 vulnerability familiesbluehammer-vulnerability-pocreason-machinesSkill for working with the BlueHammer vulnerability proof-of-concept repository, covering build, usage, and code patterns.codex-session-patcherreason-machinesClean AI refusal responses from Codex CLI, Claude Code, and OpenCode session files, and inject CTF/pentest prompts to reduce refusals.littlesnitch-linuxreason-machinesOpen source eBPF-based network monitoring and blocking components for Little Snitch on Linuxmetatron-pentest-assistantreason-machinesAI-powered penetration testing assistant using local LLM (metatron-qwen via Ollama) on Parrot OS Linuxntwarden-windows-analysis-toolkitreason-machinesNtWarden is a Windows Analysis and Research Toolkit providing GUI-based inspection of processes, kernel internals, services, network, ETW, and more via ImGui + DirectX 11 with optional kernel driver support.yourvpndead-vpn-detectionreason-machinesAndroid app that detects VPN/proxy servers (VLESS/xray/sing-box) via local SOCKS5 vulnerability, exposing exit IPs and server configs without rootrc-securityrevenuecatUse this skill when hardening a RevenueCat integration on Android. Covers Trusted Entitlements response verification (INFORMATIONAL vs ENFORCED), why the server is always the authority, API key hygiene (public SDK key vs secret REST key), anonymous user identity, and purchase token protections RevenueCat provides automatically.securityrshankrasSecurity category index for Apple platforms. Routes to the privacy-manifests skill. General secure-storage/biometrics/ATS guidance was retired in the 2026 blind-test audit — current models cover it natively.agent-security-managerruvnetAgent skill for security-manager - invoke with $agent-security-manageragent-v3-security-architectruvnetAgent skill for v3-security-architect - invoke with $agent-v3-security-architectbrowser-auth-flowruvnetProbe a site's authentication flow for redirect leaks, missing CSRF, weak session cookies, and OAuth misconfiguration; produces an auth findings.mdclaimsruvnetClaims-based authorization for agents and operations. Grant, revoke, and verify permissions for secure multi-agent coordination. Use when: permission management, access control, secure operations, authorization checks. Skip when: open access, no security requirements, single-agent local work.dependency-checkruvnetScan project dependencies for known vulnerabilities and CVEs. Use when auditing third-party packages, before releases, after `npm install`/lockfile changes, or when investigating reported CVE advisories.federation-auditruvnetQuery federation audit logs with compliance filtering

Search skills and MCP servers

Fuzzy search across 23,137 skills and servers