Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
usmanskillsmd Skill Junit5 Lifecyclejunit5 lifecycle — comprehensive testing patterns and workflows for Java projects.
-
usmanskillsmd Skill K6 Spike Testingk6 spike testing — comprehensive testing patterns and workflows for Multi-language projects.
-
usmanskillsmd Skill Test Skill Xyz999test-skill-xyz999
-
usmanskillsmd Skill Dast Zap Scanningdast zap scanning — comprehensive testing patterns and workflows for Multi-language projects.
-
usmanskillsmd Skill Go Testing Stdlibgo testing stdlib — comprehensive testing patterns and workflows for Go projects.
-
usmanskillsmd Skill Jest Unit Testingjest unit testing — comprehensive testing patterns and workflows for JavaScript projects.
-
usmanskillsmd Skill Junit5 Assertionsjunit5 assertions — comprehensive testing patterns and workflows for Java projects.
-
usmanskillsmd Skill Junit5 Extensionsjunit5 extensions — comprehensive testing patterns and workflows for Java projects.
-
usmanskillsmd Skill K6 Stress Testingk6 stress testing — comprehensive testing patterns and workflows for Multi-language projects.
-
usmanskillsmd Skill Mock Server Setupmock server setup — comprehensive testing patterns and workflows for Multi-language projects.
-
usmanskillsmd Skill Puppeteer Testingpuppeteer testing — comprehensive testing patterns and workflows for JavaScript projects.
-
usmanskillsmd Skill Afrexai Business Process Auditafrexai-business-process-audit
-
usmanskillsmd Skill Design Audit SkillDESIGN_AUDIT_SKILL
-
usmanskillsmd Skill Exploiting OAUTH MisconfigurationIdentifying and exploiting OAuth 2.0 and OpenID Connect misconfigurations including redirect URI manipulation, token leakage, and authorization code theft during security assessments.
-
usmanskillsmd Skill Managing Intelligence LifecycleManages the end-to-end cyber threat intelligence lifecycle from planning and direction through collection, processing, analysis, dissemination, and feedback to ensure intelligence products meet stakeh
-
usmanskillsmd Skill Openclaw Security Skill Hubsecurity-skill-hub
-
usmanskillsmd Skill Jest Async Testingjest async testing — comprehensive testing patterns and workflows for JavaScript projects.
-
usmanskillsmd Skill Junit5 Spring Bootjunit5 spring boot — comprehensive testing patterns and workflows for Java projects.
-
usmanskillsmd Skill Locust Python Loadlocust python load — comprehensive testing patterns and workflows for Multi-language projects.
-
usmanskillsmd Skill Mfa Implementationmfa implementation — comprehensive testing patterns and workflows for Multi-language projects.
-
usmanskillsmd Skill Mocha Chai Testingmocha chai testing — comprehensive testing patterns and workflows for JavaScript projects.
-
usmanskillsmd Skill Playwright Codegenplaywright codegen — comprehensive testing patterns and workflows for JavaScript projects.
-
usmanskillsmd Skill Claw Security Scannerclaw-security-scanner
-
usmanskillsmd Skill Vulnerability Scannervulnerability-scanner
-
usmanskillsmd Skill Build Graph Testing SkillBUILD_GRAPH_TESTING_SKILL
-
usmanskillsmd Skill Mapping Mitre Attack TechniquesMaps observed adversary behaviors, security alerts, and detection rules to MITRE ATT&CK techniques and sub-techniques to quantify detection coverage and guide control prioritization. Use when building
-
usmanskillsmd Skill Testing For Xss VulnerabilitiesTests web applications for Cross-Site Scripting (XSS) vulnerabilities by injecting JavaScript payloads into reflected, stored, and DOM-based contexts to demonstrate client-side code execution, session
-
usmanskillsmd Skill Afrexai QA Testing Engineafrexai-qa-testing-engine
-
usmanskillsmd Skill Devvit Publishing Auditordevvit-publishing-auditor
-
usmanskillsmd Skill Defi Security Analyst Skilldefi-security-analyst.skill
-
usmanskillsmd Skill Agent Security SkillAGENT_SECURITY_SKILL
-
usmanskillsmd Skill Openclaw Openclaw Security Policy Checkopenclaw-security-policy-check
-
usmanskillsmd Skill Elasticsearch Integration Testselasticsearch integration tests — comprehensive testing patterns and workflows for Multi-language projects.
-
usmanskillsmd Skill Auto Test Generatorauto-test-generator
-
usmanskillsmd Skill Implementing Threat Intelligence Lifecycle ManagementImplement a structured threat intelligence lifecycle encompassing planning, collection, processing, analysis, dissemination, and feedback stages to produce actionable intelligence for organizational d
-
usmanskillsmd Skill Exploiting Active Directory Certificate Services Esc1Exploit misconfigured Active Directory Certificate Services (AD CS) ESC1 vulnerability to request certificates as high-privileged users and escalate domain privileges during authorized red team assess
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include junit5-lifecycle, k6-spike-testing, test-skill-xyz999. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.