Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
majiayu000 Bundle Manage PromptsMUST INVOKE this skill when creating focused prompts in .prompts/prompts/ and multi-stage chains in .prompts/metaprompt/. Create, audit, and maintain all types of prompts including standalone prompts and meta-prompts for AI-to-AI workflows.
567 -
majiayu000 Bundle Memory CuratorManage architectural decisions and insights in memory.jsonl. Use when you need to document strategic decisions, lessons learned, fixed problems, or architectural insights. Append-only audit trail for project knowledge.
567 -
majiayu000 Bundle Mysql PatternsMySQL database patterns for query optimization, schema design, indexing, and security. Quick reference for common patterns.
567 -
majiayu000 Bundle Patch EngineerPatch engineer persona focused on security fix quality, code correctness, testing strategies, and regression prevention
567 -
majiayu000 Bundle Plugin AuditorAudit automatically audits AI assistant code plugins for security vulnerabilities, best practices, AI assistant.md compliance, and quality standards when user mentions audit plugin, security review, or best practices check. specific to AI assistant-code-plugins repositor... Use when assessing security or running audits. Trigger with phrases like 'security scan', 'audit', or 'vulnerability'.
567 -
majiayu000 Bundle Plugin CheckerUse this skill when asked to "validate plugin", "check plugin structure", "verify plugin", "audit plugin", "is my plugin correct", "plugin issues", or when troubleshooting plugin problems.
567 -
majiayu000 Bundle Pr DescriptionGenerate professional pull request descriptions from git diff with summary, changes, security impact, and testing notes
567 -
majiayu000 Bundle Project WizardCreate new GitHub Copilot-enabled projects from the base template with full security configuration, GitHub integration, and Archon project setup. Use when creating new projects, initializing repositories, or setting up new workspaces. Triggers on new project, create project, setup project, project wizard, project template.
567 -
majiayu000 Bundle Python CleanupPerform comprehensive dead code and clean-up analysis in Python projects using static analysis, coverage, dependency checks, and security scanning. Use when asked to clean up code, find unused code, analyze dependencies, or improve code quality.
567 -
majiayu000 Bundle Quality ChecksOrchestrate quality checks at lifecycle points (pre-edit, post-edit, on-stop). Coordinates test, doc, style, and security checks to ensure consistent code quality. Use when making significant code changes or before completing a task.
567 -
majiayu000 Bundle Querying Gpt52Queries GPT-5.2 for high-reasoning code analysis, root-cause bug fixing, and complex coding questions. Provides P0-P3 prioritized analysis reports, architecture audits, and security reviews with configurable reasoning effort (none/low/medium/high/xhigh). 400K context, 128K output.
567 -
majiayu000 Bundle Rails SecuritySpecialized skill for Rails security, authorization, and data protection. Use when implementing Pundit policies, Lockbox encryption, Blind Index searches, authentication, secure configuration, or fixing security vulnerabilities. Includes security best practices and common pitfall prevention.
567 -
majiayu000 Bundle Realgeeks SyncBi-directional synchronization between RealGeeks CRM and conversational AI systems. Use when implementing webhook handlers, creating sync pipelines, handling lead deduplication, mapping activity data, or building real-time CRM integration workflows. Includes webhook security, retry logic, and data transformation patterns.
567 -
majiayu000 Bundle Review SemgrepReview and triage semgrep security scan results to identify true positive vulnerabilities. Use when analyzing semgrep output, triaging security findings, reviewing static analysis results, or when the user has semgrep-results directories to review. Performs deep code analysis to distinguish real vulnerabilities from false positives with high confidence.
567 -
majiayu000 Bundle Security Eventセキュリティイベント機能の開発・修正を行う際に使用。イベント発行、統計データ更新、フック連携(Slack/Datadog/Webhook/SSF)の実装時に役立つ。
567 -
majiayu000 Bundle Security FixerUse when generating security patches, fixing vulnerabilities, or creating code remediation for security findings. Invoked for automated fix generation, patch creation, and vulnerability remediation.
567 -
majiayu000 Bundle Security GuardSecurity specialist - finds vulnerabilities and ensures best practices
567 -
majiayu000 Bundle Skill CraftingCreate, fix, and validate skills for AI agents. Use when user says 'create a skill', 'write a skill', 'build a skill', 'fix my skill', 'skill not working', 'analyze my skill', 'run skill analysis', 'validate skill', 'audit my skills', 'check character budget', 'create a skill from this session', 'turn this into a skill', 'make this reusable', 'can this become a skill', 'could we create a skill', 'should this be a skill', 'check if this could be a skill', or 'any reusable patterns in this session'.
567 -
majiayu000 Bundle Soc OperationsSecurity Operations Center workflows, alert triage, shift handovers, and operational reporting. Automate SOC documentation and standardize processes. Use for SOC-related tasks, alert management, and operational metrics.
567 -
majiayu000 Bundle Solid SecuritySolidStart security: XSS prevention, CSP headers, CORS configuration, CSRF protection, input validation, server-side validation, environment variable security.
567 -
majiayu000 Bundle Test SuggesterProactively suggests tests when code changes are detected. Activates when functions are created, logic is modified, security-sensitive code is added, or bug fixes are implemented. Provides non-intrusive test recommendations to help vibe coders ship with confidence.
567 -
majiayu000 Bundle Threat HuntingProactively search for security threats, vulnerabilities, and suspicious patterns in applications and infrastructure before they cause damage. Use when conducting security audits, identifying vulnerabilities, analyzing security logs, detecting suspicious patterns, investigating potential breaches, performing penetration testing, or implementing security monitoring.
567 -
majiayu000 Bundle Threat ModelerSecurity analysis using STRIDE/ATT&CK/Kill Chain frameworks (Stages 3, 4, 5, 6). Identifies threats, assesses risk, and develops mitigations. Does NOT perform documentation extraction or quality validation.
567 -
majiayu000 Bundle UI IntegrationThis skill should be used when the user asks to "add server action", "implement Supabase query", "connect to backend", "add database integration", "implement RLS", "use server actions", "add data mutation", "implement CRUD operations", "revalidate path", "add authentication check", or needs guidance on server-side integration, defense-in-depth security, or type-safe database queries with Supabase.
567 -
majiayu000 Bundle Wechat MinwareBuild, review, and refactor WeChat Mini Program (微信小程序) frontends. Use for tasks like WXML/WXSS/JS/TS structure, page routing, componentization, state management patterns, API requests, login/openid flows integration points, performance optimization (setData), security/privacy compliance, and release/QA checklists.
567 -
majiayu000 Bundle Windows Kernel SecurityGuide for Windows kernel security research including driver development, system callbacks, security features, and kernel exploitation. Use this skill when working with Windows drivers, PatchGuard, DSE, or kernel-level security mechanisms.
567 -
majiayu000 Bundle Wordpress CoreCore WordPress plugin development fundamentals including file structure, security patterns (sanitize, escape, nonces, capabilities), hooks system (actions/filters), database operations with wpdb, and coding standards. Use when creating plugins, implementing security, or working with core WordPress APIs.
567 -
majiayu000 Bundle X Cmd SecurityThis skill provides comprehensive security assessment and vulnerability management tools through x-cmd CLI, including network reconnaissance with Shodan, vulnerability scanning with OSV, and known exploited vulnerability tracking with KEV. This skill should be used when users need to perform security assessments, vulnerability research, network reconnaissance, or security monitoring from command line interfaces.
567 -
majiayu000 Bundle Zero Day RulesThis skill should be used when the user asks about "game rules", "scoring", "phases", "Attack token", "Exploit token", "Ghost token", "tile placement rules", "path matching", "movement rules", "winning conditions", "turn actions", "firewall breach", "path segments", "edge nodes", or discusses Zero-Day Attack game mechanics and design.
567 -
majiayu000 Bundle Dev CodeThis skill should be used when performing any coding task including implementing features, fixing bugs, refactoring code, or making any modifications to source code. Provides best practices, security considerations, testing guidelines, and a structured workflow for development tasks.
567 -
majiayu000 Bundle IOS KitStartup runbook for iOS projects. Establishes stack decisions, scaffolds the project, configures GitHub security, and confirms governing constraints.
567 -
majiayu000 Bundle SymfonySymfony 7+ framework guardrails, patterns, and best practices for AI-assisted development. Use when working with Symfony projects, or when the user mentions Symfony. Provides Doctrine ORM, Twig templates, bundles, services, and security guidelines.
567 -
majiayu000 Bundle Thor LensTHOR Lens workflows for forensic timeline analysis. A web UI that imports THOR v11 audit trail JSONL logs for interactive exploration. Requires THOR v11 (audit trail not available in v10).
567 -
majiayu000 Bundle Epost(ePost) Use when user intent is ambiguous, spans multiple workflows, or is not matched by a specific skill — performs intent detection and routes to the correct specialist (plan, cook, fix, audit, git, docs)
567 -
majiayu000 Bundle Context CheckOptional manual drift audit — report stale provenance-tracked docs (via _provenancelib drift detection across .codearbiter/.provenance/), then per stale doc offer re-scout / re-baseline / defer. Not the daily loop; commit-gate auto-heal owns routine maintenance.
567 -
majiayu000 Bundle Reality CheckMid-epic strategic drift audit: code is ground truth, README/PRODUCT.md/plan docs are the measuring stick; emit a cited gap report and a routing decision.
567
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include manage-prompts, memory-curator, mysql-patterns. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.