Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
tools-only Bundle 1329 Threat Skill 0623a026<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 1329 Threat Skill 9c076503<!-- Threat Modeling Skill | Version 3.0.1 (20260203a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 1329 Threat Skill Fff042e8<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 950 Security Scan 24bedfc4Run the security scan gate before pushing.
7 -
tools-only Bundle 248 P5 Stride Analysis 559a2776<!-- Threat Modeling Skill | Version 3.0.0 (20260202a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 249 P8 Report Generation Bd398302<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 2198 Devkitgithubreview Pr 266fc7f1Provides comprehensive GitHub pull request review with code quality, security, and best practices analysis. Use when reviewing a PR before merging.
7 -
tools-only Bundle 2206 Devkitjavacode Review 7f46a604Validates Java code quality for enterprise Spring applications with security, performance, architecture and best practices analysis. Use when reviewing code changes or before merging pull requests.
7 -
tools-only Bundle 253 P7 Mitigation Planning 15557127<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 253 P7 Mitigation Planning 32615020<!-- Threat Modeling Skill | Version 3.0.0 (20260202a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 253 P7 Mitigation Planning F47272a6<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 2156 Flask Security 6907a9c7Flask Security Guide
7 -
tools-only Bundle 654 P3 Trust Boundary 58c1d804<!-- Threat Modeling Skill | Version 3.0.0 (20260201b) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 654 P3 Trust Boundary 622da854<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 114 Security Encryption Faq 9d958893LiteLLM Self-Hosted Security & Encryption FAQ
7 -
tools-only Bundle 2228 Audit Event Types Dd616d8aAudit Event Types
7 -
tools-only Bundle 2506 Audit Calibration A64ea751Audit Calibration — Known False-Positive Patterns
7 -
tools-only Bundle 1595 Python Vulnerabilities 6eacb70aPython-Specific Security Vulnerabilities
7 -
tools-only Bundle 1763 Cookie Security Design B0c35d2bCookie Security Design
7 -
tools-only Bundle 2222 Audit Procedures 0d011cf9Audit Procedures
7 -
tools-only Bundle 659 Description Skill Bcc25a58Hook system fundamentals — all events, configuration structure, matchers per event type, environment variables, execution behavior, security, and debugging. Use when creating hooks, understanding hook events, matchers, configuration locations, environment variables, or troubleshooting hook issues.
7 -
tools-only Bundle 248 P5 Stride Analysis 06600e0e<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 248 P5 Stride Analysis 0687bde5<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 1320 Security Tools C4696d7aHacking/Penetration Testing [<sup>[TOC]</sup>](#anger-table-of-contents)
7 -
tools-only Bundle 1795 Security Audit 2aea97adSecurity Audit
7 -
tools-only Bundle 951 Security Standards 03991052Security Standards
7 -
tools-only Bundle 622 Nfr Checklist 37b9b0f0Non-Functional Requirements Checklist
7 -
tools-only Bundle 2405 Fastembed Audit Report Dc0348b9FastEmbed v2 Audit Report (Plan vs Current Codebase)
7 -
tools-only Bundle 2479 Vulnerability Patterns 2d771fb2Security Vulnerability Patterns
7 -
tools-only Bundle 2536 Remediation Strategies 6c76acc2Security Remediation Strategies
7 -
tools-only Bundle 2596 Chief Security Officer Aa3c9e13Chief Security Officer (CSO)
7 -
tools-only Bundle 1097 Troubleshooting 7a62855aTroubleshooting Guide - Security Pro Pack
7 -
tools-only Bundle 387 Fls Best Practices F0e7117bField-Level Security (FLS) Best Practices
7 -
tools-only Bundle 954 Security Standards 09ace406Security Standards Reference
7 -
tools-only Bundle 261 Secret Patterns D16fd451Secret Detection Patterns
7 -
tools-only Bundle 1318 Codeguard 0 Iac Security 228a0560rule_id: codeguard-0-iac-security
7
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include 1329-threat-skill_0623a026, 1329-threat-skill_9c076503, 1329-threat-skill_fff042e8. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.