Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
gener8v Bundle Section DrafterWrites one markdown file per RFP response section, grounded in the coverage matrix and collateral brief. Every claim is either traced to a source or flagged as an assertion. Trigger when the user says "draft the sections," "write the response," "start drafting," or after the requirements mapper has produced coverage-matrix.md. Can also be triggered for a single section: "draft the technical approach" or "write the security section."
-
spirizeon Skill Aeo AuditComprehensive AEO audit for websites and documentation. Checks llms.txt, robots.txt, token counts, skill.md files, and AI traffic configuration. Use when auditing a site's readiness for AI agents.
-
giulsposito Bundle R ShinyExpert Shiny app development in R - reactive programming, UI design, modules, performance, and security. Use when working with shiny, shinydashboard, or building interactive R web applications. Triggers on "dashboard interativo", "interactive dashboard", "dashboard em R", "R dashboard", "aplicativo R", "R app", "aplicação Shiny", "Shiny app", shiny library imports, server/ui function patterns like "ui <- fluidPage", "server <- function", reactive expressions, renderPlot, renderTable, observeEvent, reactiveVal, or user requests for Shiny help, web applications in R, or reactive programming guidance.
-
scytale-labs Bundle HipaaUse when the user asks about HIPAA — Privacy Rule, Security Rule (administrative, physical, technical safeguards), Breach Notification Rule, Business Associate Agreements (BAAs), the HITECH Act, OCR audits, or determining whether an organisation is a covered entity or business associate. For US healthcare providers, health plans, clearinghouses, and their business associates and subcontractors.
-
scytale-labs Bundle Nist CsfUse when the user asks about NIST Cybersecurity Framework — the CSF 2.0 six Functions (Govern, Identify, Protect, Detect, Respond, Recover), Categories and Subcategories, Implementation Tiers (1–4), Profiles (Current and Target), Organizational Profile, or using CSF as a structuring lens for a security program. Voluntary framework — useful for any sector, often paired with sector-specific regulation.
-
scytale-labs Bundle Sox ItgcUse when the user asks about SOX ITGC (Sarbanes-Oxley IT General Controls) — access management, change management, computer operations, system development, control testing, working papers, deficiency remediation, deficiency severity (SD / MW), or moving from point-in-time to continuous ITGC monitoring. For publicly traded companies, pre-IPO companies preparing for SOX, and their internal audit and finance teams.
-
scytale-labs Bundle Iso 27001Use when the user asks about ISO/IEC 27001 — Information Security Management System (ISMS), Statement of Applicability, the 93 Annex A controls (2022 revision), risk assessment and treatment, Stage 1/Stage 2 certification audits, surveillance audits, or cross-walks with SOC 2, HIPAA, or GDPR. For organizations seeking certification globally.
-
uhdyindy Bundle SystemSystem exploitation testing - Active Directory attacks, privilege escalation (Linux/Windows), and exploit development.
-
zrtch Bundle API GatewayConnect to 100+ APIs (Google Workspace, Microsoft 365, GitHub, Notion, Slack, Airtable, HubSpot, etc.) with managed OAuth. Use this skill when users want to interact with external services. Security: The MATON_API_KEY authenticates with Maton.ai but grants NO access to third-party services by itself. Each service requires explicit OAuth authorization by the user through Maton's connect flow. Access is strictly scoped to connections the user has authorized. Provided by Maton (https://maton.ai).
-
uhdyindy Bundle AuthenticationAuthentication security testing - auth bypass, JWT attacks, OAuth flaws, password attacks, 2FA bypass, CAPTCHA bypass, and bot detection evasion.
-
audn-ai Skill Audn LoginAuthenticate with Audn.ai for red-team security testing. Sets up OAuth login or API token. Run this before using any other audn skill. Use when the user needs to log in, authenticate, connect to Audn, or set up their API credentials.
-
audn-ai Skill Audn Vuln MonitorList, triage, and monitor vulnerabilities detected across your AI agents. Shows severity ratings, categories, status, and remediation recommendations. Use when checking security posture or reviewing findings.
-
ranilf2005 Bundle Cisco Health Check BaseBase framework for creating Cisco product configuration health check and audit skills. USE THIS SKILL when: (1) creating a new Cisco product health check skill (e.g., Catalyst switches, ASA/FTD firewalls, ISE, DNA Center, SD-WAN, Meraki), (2) performing a health check for any Cisco product that does not yet have a dedicated audit skill, or (3) ensuring consistency across all Cisco health check skills. Defines the universal 5-step audit workflow, severity classification framework, report structure, finding card format, revision tracking, corporate disclaimer, and output conventions. All Cisco product-specific health check skills (e.g., cisco-wireless-audit) are built on this base. Always load this skill before building a new health check to inherit proven conventions.
-
ranilf2005 Bundle Cisco Health Check Base 2Base framework for creating Cisco product configuration health check and audit skills. USE THIS SKILL when: (1) creating a new Cisco product health check skill (e.g., Catalyst switches, ASA/FTD firewalls, ISE, DNA Center, SD-WAN, Meraki), (2) performing a health check for any Cisco product that does not yet have a dedicated audit skill, or (3) ensuring consistency across all Cisco health check skills. Defines the universal 5-step audit workflow, severity classification framework, report structure, finding card format, revision tracking, corporate disclaimer, and output conventions. All Cisco product-specific health check skills (e.g., cisco-wireless-audit) are built on this base. Always load this skill before building a new health check to inherit proven conventions.
-
lucianfialho Bundle Backend DevBackend specialist — builds APIs, database operations, auth, and server-side logic with security and performance focus
-
lucianfialho Bundle Code ReviewerCode review specialist — reviews PRs for bugs, security issues, performance problems, and code quality
-
lucianfialho Bundle Check SecuritySecurity-focused review of a PR — injection, XSS, auth, secrets, dependencies
-
saolalab Skill Penetration TestingSecurity testing and assessment methodologies. Use when conducting penetration tests, security assessments, or code reviews.
-
saolalab Skill Vulnerability ManagementVulnerability identification, assessment, and remediation tracking. Use when managing security vulnerabilities across the organization.
-
farawayshore Bundle Lab Report Skill Family AuditorUse when a lab-report family summary or planning note may have drifted from the installed skills, when planned subskills may be missing, or when family boundaries, overlap, or coherency need a minimum-change audit.
-
rhysha Bundle Security ResearchFull-spectrum security research skill for web servers, REST APIs, web applications, and network/port enumeration. Triggers whenever the user wants to: find vulnerabilities, run a security assessment, scan a target, test an API for security issues, enumerate ports or services, check for OWASP Top 10 vulnerabilities, audit auth/secrets, fuzz endpoints, run recon on a domain or IP, or use tools like nmap, nikto, nuclei, ZAP, sqlmap, ffuf, dalfox, subfinder, hydra, or trufflehog. Use this skill even if the user says "just a quick scan" or phrases it casually. Covers full engagement workflow: recon → enumeration → vuln scanning → vulnerability validation → reporting.
-
stoffl6781 Bundle Laravel Security AuditSecurity-Audit für Laravel-Apps. Nutze bei: "Security Audit", "Sicherheitsprüfung", "Go-Live Checkliste", "ist die App sicher", "Pre-Launch Check", "DSGVO-Check", "Security Hardening".
-
stoffl6781 Skill QAQualitätssicherung: Feature testen, Bugs finden, Security Audit, Regression. Nutze bei: 'testen', 'QA', 'funktioniert das', 'ist das sicher', 'Bugs finden', 'prüfe das Feature'.
-
stoffl6781 Skill Laravel PerformancePerformance-Audit für Laravel. Ziel: jede Seite unter 2 Sekunden. Nutze bei: "Performance", "Seite ist langsam", "Ladezeit", "Caching", "N+1", "Query optimieren", "PageSpeed", "Core Web Vitals", "TTFB", "zu viele Queries", "Cache aufsetzen", "Bilder optimieren", "lazy loading", "OPcache", "Redis", "CDN".
-
travisleeeeee Bundle Vuln ScannerResponsibilities
-
travisleeeeee Bundle Access AuditorResponsibilities
-
travisleeeeee Bundle Threat MonitorResponsibilities
-
travisleeeeee Bundle Incident LoggerResponsibilities
-
zeon-kun Skill Perf AuditAudit code or system design for performance issues. Identifies bottlenecks, N+1 queries, unnecessary re-renders, and algorithmic inefficiencies. Use when investigating slow code or reviewing for performance.
-
zeon-kun Skill Code ReviewReview code for correctness, security, performance, and maintainability. Produces a structured review with severity-tagged findings. Use when asked to review a PR, file, or code snippet.
-
zeon-kun Skill Security AuditAudit code for security vulnerabilities (OWASP Top 10, injection, auth issues, secrets exposure). Produces a severity-ranked findings report. Use when asked to security-review code, a PR, or a module.
-
travisleeeeee Bundle Blockchain Security Auditor🎯 Your Core Mission
-
art2url Skill Linkedin Profile BoosterBoost your LinkedIn profile for recruiter visibility — rewrite headlines, craft About sections, place searchable keywords, and audit profile completeness
-
prasad-vennam Skill Android Performance AuditUse when profiling Android apps, debugging memory leaks, optimizing Compose UI, or improving app startup time.
-
prasad-vennam Skill Android Security HardenedUse when securing Android applications, implementing Biometric auth, or encrypting sensitive data locally.
-
prasad-vennam Skill Android Enterprise SecurityDeep-dive skills for banking and healthcare apps.
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include section-drafter, aeo-audit, r-shiny. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.