AI & ML
AI & ML agent skills cover the machine-learning workflow itself: writing and evaluating prompts, building RAG pipelines, running evals, and wiring up model APIs. Each one is a SKILL.md file your agent loads on demand, so the know-how travels across Claude Code, Cursor, and 60+ agents.
-
danielp370-msft Bundle M365 MCP ToolsReference guide for Microsoft 365 MCP tools (Teams, Outlook Mail, Calendar, SharePoint/OneDrive, Word, Copilot Search, Dataverse). Covers setup, configuration, usage tips, known gotchas (e.g. message ID encoding), auth troubleshooting, and tool-specific workarounds. Use this skill when setting up, using, or debugging M365 MCP servers.
-
myeolinmalchi Bundle MCP AnalyzeAnalyze MCP server source code to classify its pattern and assess CLI conversion feasibility. Use when the user wants to understand an MCP server's architecture, list its tools, or determine if it can be converted to a CLI. Triggers on "analyze mcp", "mcp server pattern", "conversion feasibility", "what type of mcp".
-
myeolinmalchi Bundle MCP CodegenGenerate TypeScript CLI tool code from an MCP server analysis. Use when the user wants to create a CLI tool, generate CLI code, scaffold a CLI project, or design CLI command structure from MCP tools. Triggers on "generate cli", "create cli", "cli code", "scaffold cli", "mcp to typescript".
-
myeolinmalchi Bundle Skill AuthorGenerate a SKILL.md file for a CLI tool so Claude Code can use it effectively. Use when creating SKILL.md, writing skill files, documenting CLI tools for agents, or making a CLI agent-friendly. Triggers on "generate skill", "create skill.md", "write skill", "skill for cli", "agent documentation".
-
huckops Skill Setup Discord MCP安装部署 discord-mcp 服务并配置 MCP 连接,引导用户完成从零到可用的全流程。 当用户第一次使用 Discord 功能、提到安装/部署/配置 Discord、环境搭建、MCP 服务连接失败、或 Discord 相关 MCP 工具不可用时使用。
-
njones17 Skill Prompt Injection DefenseDefend AI systems against prompt injection and indirect prompt attacks using input controls, tool permissions, output validation, and isolation boundaries.
-
njones17 Skill Stealth TechniquesUse when security tools are being blocked by WAF, rate limiting, or intrusion detection systems. Provides comprehensive evasion techniques including User-Agent spoofing, header randomization, timing evasion, session mimicking, and WAF bypass patterns for stealthy security assessments.
-
njones17 Bundle Executing Red Team Engagement PlanningRed team engagement planning is the foundational phase that defines scope, objectives, rules of engagement (ROE), threat model selection, and operational timelines before any offensive testing begins.
-
njones17 Skill Performing Clickjacking Attack TestTesting web applications for clickjacking vulnerabilities by assessing frame embedding controls and crafting proof-of-concept overlay attacks during authorized security assessments.
-
njones17 Bundle Deploying Edr Agent With CrowdstrikeDeploys and configures CrowdStrike Falcon EDR agents across enterprise endpoints to enable real-time threat detection, behavioral analysis, and automated response. Use when onboarding endpoints to EDR coverage, configuring detection policies, or integrating Falcon telemetry with SIEM platforms. Activates for requests involving CrowdStrike deployment, Falcon sensor installation, EDR policy configuration, or endpoint detection and response.
-
njones17 Skill Using Cybersecurity MCP ToolsGuides Claude on how to discover, select, and effectively use cybersecurity MCP tools (nmap, nuclei, shodan, virustotal, radare2, bloodhound, trivy, sqlmap, ffuf, MITRE ATT&CK, and more) alongside the skills in this package. Use when performing security assessments, threat intelligence, or any task that benefits from live tool access.
-
njones17 Skill None 7Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory. Covers Tier 0/1/2 separation, privileged access workstations (PAWs), administrative f
-
njones17 Skill Implementing Iec 62443 Security ZonesThis skill covers designing and implementing security zones and conduits for industrial automation and control systems (IACS) per IEC 62443-3-2. It addresses zone partitioning based on risk assessment, assigning Security Level targets (SL-T), designing conduit security controls, implementing microsegmentation with industrial firewalls, and validating zone architecture through traffic analysis and penetration testing against the Purdue Reference Model.
-
njones17 Skill Implementing Network Segmentation For OtThis skill covers implementing network segmentation in Operational Technology environments using VLANs, industrial firewalls, data diodes, and software-defined networking. It addresses the Purdue Model-based segmentation strategy, migration from flat networks to segmented architectures without disrupting operations, configuring OT-aware firewalls with industrial protocol deep packet inspection, and validating segmentation effectiveness through traffic analysis.
-
njones17 Bundle Performing Ot Network Security AssessmentThis skill covers conducting comprehensive security assessments of Operational Technology (OT) networks including SCADA systems, DCS architectures, and industrial control system communication paths. It addresses the Purdue Reference Model layers, identifies IT/OT convergence risks, evaluates firewall rules between zones, and maps industrial protocol traffic (Modbus, DNP3, OPC UA, EtherNet/IP) to detect misconfigurations, unauthorized connections, and attack surfaces in critical infrastructure.
-
njones17 Bundle Extracting Config From Agent Tesla RatExtract embedded configuration from Agent Tesla RAT samples including SMTP/FTP/Telegram exfiltration credentials, keylogger settings, and C2 endpoints using .NET decompilation and memory analysis.
-
njones17 Bundle Implementing Diamond Model AnalysisImplementing Diamond Model Analysis
-
njones17 Bundle Detecting Qr Code Phishing With Email SecurityDetect and prevent QR code phishing (quishing) attacks that bypass traditional email security by embedding malicious URLs in QR code images within emails.
-
njones17 Bundle Implementing Cisa Zero Trust Maturity ModelImplement the CISA Zero Trust Maturity Model v2.0 across the five pillars of identity, devices, networks, applications, and data to achieve progressive organizational zero trust maturity.
-
njones17 Bundle Implementing Beyondcorp Zero Trust Access ModelImplementing Google's BeyondCorp zero trust access model to eliminate implicit trust from the network perimeter, enforce identity-aware access controls using IAP, Access Context Manager, and Chrome Enterprise Premium for VPN-less secure application access.
-
njones17 Skill Implementing Purdue Model Network SegmentationImplement network segmentation based on the Purdue Enterprise Reference Architecture (PERA) model to separate industrial control system networks into hierarchical security zones from Level 0 physical process through Level 5 enterprise, enforcing strict traffic control between OT and IT domains.
-
njones17 Skill Testing API For Mass Assignment VulnerabilityTests APIs for mass assignment (auto-binding) vulnerabilities where clients can modify object properties they should not have access to by including additional parameters in API requests. The tester identifies writable endpoints, adds undocumented fields to request bodies (role, isAdmin, price, balance), and checks if the server binds these to the data model without filtering. Part of OWASP API3:2023 Broken Object Property Level Authorization. Activates for requests involving mass assignment testing, parameter binding abuse, auto-binding vulnerability, or API over-posting.
-
njones17 Bundle Performing Threat Modeling With Owasp Threat DragonUse OWASP Threat Dragon to create data flow diagrams, identify threats using STRIDE and LINDDUN methodologies, and generate threat model reports for secure design review.
-
njones17 Bundle Performing Asset Criticality Scoring For VulnsDevelop and apply a multi-factor asset criticality scoring model to weight vulnerability prioritization based on business impact, data sensitivity, and operational importance.
-
njones17 Skill Implementing Conduit Security For Ot Remote AccessImplement secure conduit architecture for OT remote access following IEC 62443 zones and conduits model, deploying jump servers, MFA-enabled gateways, session recording, and approval-based workflows to control vendor and engineer access to industrial control systems without exposing OT networks directly.
-
antheurus Bundle Anywrite 2Use this skill whenever the user mentions "anywrite" by name, or mentions Anytype, asks to create/update/search/organize notes, tasks, or PKM objects in Anytype, or wants to upload files, manage properties/tags/types, or chat inside an Anytype space. Covers all 52 endpoints of the Anytype local API (spaces, objects, properties, tags, types, templates, lists, chat, files, members, search, auth) via a single compiled CLI binary — no MCP server, no per-tool context tax.
-
continuum-ai-corp Skill Orca Replay 2Answers questions about a past agent run from its recording rather than from memory, and replays or forks that run. Use when asked why an earlier run did something, or to reproduce a failure.
-
mayurrathi Skill LangfuseExpert in Langfuse - the open-source LLM observability platform. Covers tracing, prompt management, evaluation, datasets, and integration with LangChain, LlamaIndex, and OpenAI. Essential for debug...
-
huggingface Skill Trl Training 3Post-train LLMs with TRL (Transformers Reinforcement Learning) — SFT, DPO, GRPO, KTO, and reward-model training. Use when writing or debugging training code with the TRL Python API or the trl CLI.
10.8k -
mayurrathi Skill Loki ModeMulti-agent autonomous startup system for Claude Code. Triggers on "Loki Mode". Orchestrates 100+ specialized agents across engineering, QA, DevOps, security, data/ML, business operations,...
-
drbarq Bundle Pokemon Red 2Play Pokemon Red autonomously via PyBoy emulator. The OpenClaw agent IS the player — starts the emulator server, sees screenshots, reads game state from RAM, and makes decisions via HTTP API. One move at a time. The AI decides every button press.
-
claw-silhouette Bundle Bot Email 2Get free bot email addresses from BotEmail.ai. Create instant inboxes, receive emails, extract verification codes, monitor for messages. Use when an agent needs an email address for signup flows, 2FA codes, or email automation. No human setup required.
-
mayurrathi Skill AI ProductEvery product will be AI-powered. The question is whether you'll build it right or ship a demo that falls apart in production. This skill covers LLM integration patterns, RAG architecture, prompt ...
-
mayurrathi Skill EvaluationBuild evaluation frameworks for agent systems
-
sperekrestova Skill Interactive Leetcode MCP 2Use when the user wants to practice LeetCode problems, submit solutions, or set up LeetCode integration. Covers MCP server installation, learning-guided practice flow, solution submission, and authentication.
-
bovmanth Bundle Model Failover Guard 2Automatic model failover daemon for OpenClaw. When the primary model fails consecutively, automatically switch to an available fallback model, and switch back after stability is restored. Use when OpenClaw model endpoints are unstable and you need service continuity with automatic rollback and audit logs.
Frequently asked questions
What are AI & ML agent skills?
AI & ML agent skills cover the machine-learning workflow itself: writing and evaluating prompts, building RAG pipelines, running evals, and wiring up model APIs. Each one is a SKILL.md file your agent loads on demand, so the know-how travels across Claude Code, Cursor, and 60+ agents.
Which AI & ML skills are most installed?
Popular AI & ML skills on SkillMD right now include m365-mcp-tools, mcp-analyze, mcp-codegen. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do AI & ML skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.