Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
octanejs Skill Performance Audit 3Audit or defend Octane performance. Use when a change can affect per-render, per-node, compiler-output, SSR, hydration, or bundle cost, or when asked whether something is fast enough.
-
axidify Skill AuditBrief project status (/status) or evidence-backed feature gap analysis (/audit). Use for "what's next", session pulse, what's implemented, or gap tables. Not for pre-commit diff review (review).
-
axidify Bundle ReviewStructured pre-commit code review in three passes: security, performance, clean code. Use when the user asks for a review, sanity check, or says /review; or before opening a PR. Runs build/tests when available. For deep security or performance use security or performance.
-
arch1esun Skill ArcgenticUse when the user says Arcgentic, asks to use Arcgentic, or wants an idea taken through a complete plan → development → self-audit → external audit workflow in Codex.
-
arch1esun Bundle Audit RoundExternal-audit role for arcgentic rounds. Loaded when arcgentic state.yaml is in awaiting_audit or audit_in_progress, OR when the user explicitly requests an external audit of a finished round, OR when reviewing a handoff doc + commit chain against the round's declared scope. Produces a PASS / NEEDS_FIX / AUDIT_INCOMPLETE verdict document with mechanically-verifiable fact table, structured findings (P0-P3), and applies the lesson codification protocol. The output verdict file IS the handoff — do not paste verdict text into chat.
-
arch1esun Skill Close RoundUse only after an arcgentic round has an external audit PASS and state.yaml is in passed. Anchors the verdict, runs strict audit-check, transitions passed to closed, and records the last passed round without writing an external audit verdict.
-
arch1esun Skill Codify LessonDetect recurring P2/P3 audit patterns across recent rounds and promote them into lesson cards. Use after round boundaries or when repeated findings appear.
-
arch1esun Skill Execute RoundUse when a planned round handoff exists and needs to be implemented end-to-end via the 4-commit chain (entry-admin → BA design → dev body with inline CR + SE → state refresh + self-audit). Dispatches ba-designer / developer / cr-reviewer / se-contract sequentially.
-
arch1esun Skill Using ArcgenticEntry skill for the arcgentic plugin — establishes the four-role workflow (planning / dev+self-audit / external-audit / reference-tracking), the round state machine, and when to switch roles or dispatch sub-agents. Use when starting any session in a project that has .agentic-rounds/state.yaml present, OR when the user mentions arcgentic / round-driven development / external audit / four-role workflow.
-
arch1esun Skill Cross Session HandoffRead, write, snapshot, and lock .arcgentic/state.yaml across planner, dev, audit, and optional test sessions.
-
pollyglot Skill Gplay AppsManage gplay's local app registry and app-level details, and sweep the account for consistency drift with `apps audit`. Use when onboarding packages into gplay, discovering which apps a credential can reach (`apps accessible list`), listing or removing registered apps, pinning a package to the repo, reading/patching app details (default language, contact info), or gating CI on lingering drafts, empty release notes, locale drift or a missing production release.
-
shoji9x9 Bundle Dependabot Alert Issue 2Dependabot alerts または外部 audit findings(例 pnpm audit の正規化 JSON)を確認し、解消 Issue を `gh` で作成するスキル。対象を「すぐ着手できるか」で分類し、着手可能なものは severity 毎、ブロック中のものは脆弱パッケージ+解決バージョン毎にまとめる。既存 Issue/PR はスキップし、特定 alert の ignore/dismiss も設定できる。`pnpm.overrides` 等の品質が保証されない回避策は採らない。「Dependabot alerts から Issue」「pnpm audit の結果から Issue」「脆弱性対応の Issue」「dependabot-alert-issue」で必ず発動する。
-
nowork-studio Bundle Google Ads Audit 2Google Ads account audit and business context setup. Use for account-health audits and business-context setup. Trigger on "audit my ads", "ads audit", "set up my ads", "onboard", "account overview", "how's my account", "ads health check", "what should I fix in my ads", or when the user is new to NotFair and hasn't run an audit before.
-
nowork-studio Skill Meta Ads Audit 2Meta Ads (Facebook + Instagram) account audit and business context setup. Use for account-health audits and business-context setup. Trigger on "audit my Meta ads", "audit my Facebook ads", "Meta ads audit", "set up my Meta ads", "onboard Meta", "Meta account overview", "how's my Meta account", "Meta health check", "what should I fix in my Facebook ads", or when the user is new to NotFair Meta and hasn't run an audit before.
-
aspi6246 Skill Code AuditTwo-phase code audit workflow for empirical research scripts. Use this skill when the user asks to review, audit, check, validate, or verify R or Python research code — especially code that processes licensed or sensitive data (WRDS, CRSP, WellDatabase, PLIDA). Also use when the user says "check my code", "review this script", "does this look right", or "audit my analysis."
-
aspi6246 Skill Code SweepEnd-of-milestone audit of a research project's `Code/` folder against the paper and outputs. Surfaces drift between scripts, YAML headers, the script registry, outputs, raw data, and the paper. Categorises findings as MUST-FIX or SUGGESTED and proposes fixes one at a time for the user to confirm. Use this skill when the user says "code sweep", "sweep the code", "run a code sweep", "audit my code folder", "check code freshness", "is everything up to date", "any stale outputs", "audit code consistency", or similar — typically before a paper submission, milestone, or share. Extends `script-registry`; reuses its `registry:` YAML block and `Code/_Claude Scripts/build_registry.R` builder rather than redefining either.
-
aspi6246 Bundle Beamer CheckAudit and fix Beamer slide decks for compilation errors, layout problems, and visual issues. Use this skill whenever the user says "check my slides", "fix my slides", "the slides don't compile", "text is running off the page", "slides look wrong", or after generating a Beamer deck to verify it before delivering. Also use when the user mentions overfull boxes, overlapping content, broken images, or any Beamer formatting issue.
-
aspi6246 Bundle Edmans AuditAudit a finance paper against Alex Edmans' "Learnings From 1,000 Rejections" (2025, Financial Management) three-part framework: Contribution, Execution, Exposition. Reads the paper's current LaTeX, applies the framework with per-research-question execution checks, and generates a structured report with severity-labeled findings. Use when the user says "edmans audit", "audit my paper", "run the Edmans check", "referee readiness", "submission audit", "check paper against Edmans", or "pre-submission check".
-
aspi6246 Bundle Paper EditorSeven-audit editorial review protocol for academic finance working papers. Use this skill when the user asks to review, edit, audit, or critique a working paper, manuscript, or draft — including "run The Editor", "review my paper", "audit this draft", "check if this is ready for submission", "what would Referee 2 say", or any request to evaluate a paper for journal submission. Also use when the user mentions R&R, revise and resubmit, or responding to referee reports.
-
delzarsolutionsllc Skill Code ReviewRead a diff like a staff engineer: correctness, security, tests, and regression risk before merge. Use when the user asks to code review.
-
delzarsolutionsllc Skill Security AuditHunt OWASP-class bugs in the code you can actually reach: injection, authz, secrets, SSRF. Use when the user asks to security audit.
-
managedcode Bundle Mcaf Security Baseline 3Apply baseline engineering security guidance: secrets handling, secure defaults, threat modelling references, and review checkpoints for auth, data flow, pipelines, and external integrations. Use when a change has security impact but does not require a full standalone AppSec engagement.
-
martintmk Skill Review TestsReview Rust changes for deleted or weakened tests and observable behavior deltas, even when test files are untouched. Protects existing behavioral contracts from being rewritten to match an implementation, especially in AI-authored changes, and checks that changed tests are idiomatic and reuse supported test utility features such as test-util. Use when asked to review test preservation, behavior compatibility, or Rust test quality in a PR, branch, commit, working-tree diff, or focused audit. Not for coverage percentages or test-framework formatting.
-
martintmk Skill Review NamingReview Rust changes for names and shapes that diverge from their siblings, and for abstractions that earn nothing. Covers family and convention alignment, concise non-padded names, units already carried by a type, domain-appropriate terminology, and whether a new trait, wrapper or layer could be replaced by a small change to an existing type. Use for a focused naming or abstraction audit, or when review-lens routes new names here. Not for formatting, import order, or public contract and semver review.
-
lev-os Bundle Lev 2[WHAT] CLI and SDK reference surface for Lev primitives. [HOW] Maps natural language aliases to stable primitives: get/work/ask/check/go. [WHEN] Use when you need command syntax, alias mapping, protocol routing, or SDK usage. [WHY] Keeps CLI usage stable while lifecycle/process logic lives in `work`. Triggers: "lev", "leviathan", "get", "search", "find", "lookup", "read", "ls", "research", "think", "spec", "plan", "execute", "analyze", "design", "validate", "align", "lifecycle", "work", "check", "scan", "security", "daemon", "daemons", "ask", "wiz", "wizard", "go", "handoff", "exit", "learn", "workflow", "skill"
-
iliaal Bundle Reflect 2Session retrospective and skill audit. Use when "/reflect", "session review", "retrospective", "what went wrong", "lessons learned", "what should we remember", or "what can we improve".
-
iliaal Bundle Nodejs Backend 2Node.js backend patterns: framework selection, layered architecture, TypeScript, validation, error handling, security, production deployment. Use when building REST APIs, Express/Fastify servers, microservices, or server-side TypeScript.
-
drmoisan Skill Feature Review 3Review a feature branch relative to a base branch and write audit artifacts into the active feature folder. Use when Codex must produce policy, code, and feature audits and trigger remediation planning when needed.
-
netvar1337 Skill Awesome Game Security OverviewGuide for understanding and contributing to the awesome-game-security curated resource list. Use this skill when adding new resources, organizing categories, mapping topics across anti-cheat, Windows kernel, DMA, reverse engineering, and game-engine research, or maintaining README.md format consistency.
-
netvar1337 Skill Anti Cheat SystemsGuide for modern game anti-cheat architecture, Windows kernel monitoring, and detection tradeoffs. Use this skill when analyzing EAC, BattlEye, Vanguard, FACEIT AC, kernel callbacks, handle protection, manual-map detection, boot-start drivers, BYOVD, DMA threats, or behavioral telemetry in game security research.
-
netvar1337 Skill Dma Attack TechniquesGuide for PCIe DMA threat modeling, FPGA-based memory access, and defensive implications in game security. Use this skill when researching pcileech, BAR and TLP behavior, page-table walking, IOMMU or VT-d, device impersonation, firmware mimicry, or DMA detection and mitigation in game security research.
-
netvar1337 Skill Game Engine ResourcesGuide for game-engine internals, source trees, plugins, and engine-specific security research. Use this skill when researching Unreal, Unity, Source, Godot, custom engines, engine detectors, engine explorers, or engine protection patterns relevant to modding, reverse engineering, and anti-cheat.
-
netvar1337 Skill Game Hacking TechniquesGuide for game-hacking technique taxonomy and threat modeling relevant to game security. Use this skill when researching memory access, code injection, overlays, input simulation, engine-specific attack surfaces, or how modern anti-cheat systems constrain user-mode, kernel-mode, hypervisor, and DMA-based cheat implementations.
-
netvar1337 Skill Game Security Research RigorGuide for evidence-grounded game-security research, citation verification, uncertainty, reproducible analysis, and detector evaluation. Use when validating technical claims, synthesizing README or wiki resources, comparing security techniques, assessing telemetry or models, or deciding whether evidence supports an anti-cheat conclusion.
-
netvar1337 Skill Windows Kernel SecurityGuide for Windows kernel internals and security mechanisms used in game protection and low-level research. Use this skill when working with drivers, IRQL-sensitive callbacks, EPROCESS, ETHREAD, MMVAD internals, IOCTL paths, DSE, PatchGuard, HVCI, PiDDBCache, MmUnloadedDrivers, or kernel memory inspection.
-
netvar1337 Skill Mobile SecurityGuide for Android and iOS game security, reversing, and anti-cheat-adjacent platform research. Use this skill when working with APK or IPA analysis, IL2CPP mobile titles, Frida, Zygisk or Magisk, jailbreak or root detection bypass, Android kernel modules, emulator detection, or mobile anti-cheat systems.
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include performance-audit, audit, review. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.