Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
majiayu000 Bundle Detecting Dns Tunneling<!-- Copyright (c) 2026 defconxt. All rights reserved. -->
567 -
majiayu000 Bundle Developing With FortifyLaravel Fortify headless authentication backend development. Activate when implementing authentication features including login, registration, password reset, email verification, two-factor authentication (2FA/TOTP), profile updates, headless auth, authentication scaffolding, or auth guards in Laravel applications.
567 -
majiayu000 Bundle Frappe Core PermissionsUse when implementing the Frappe/ERPNext permission system. Covers roles, user permissions, perm levels, data masking, and permission hooks for v14/v15/v16. Prevents common access control mistakes and security issues. Keywords: permissions, roles, user permissions, perm levels, data masking, access control, security, has_permission.
567 -
majiayu000 Bundle Handling AuthenticationHandling authentication and authorization in StickerNest. Use when the user asks about login, signup, auth, session, protected routes, user context, JWT, tokens, logout, or permission checks. Covers Supabase Auth, AuthContext, protected routes, and widget auth.
567 -
majiayu000 Bundle Healthcare Audit LoggerThis skill should be used when the user asks to "generate audit logs", "create HIPAA audit trail", "log healthcare events", "configure audit logging", "track PHI access", "maintain compliance logs", "audit log format", "healthcare event logging", "access control logging", "authentication logging", "HIPAA logging requirements", or mentions HIPAA audit trails, healthcare event logging, compliance logging, PHI access tracking, authentication auditing, or §164.312(b) logging requirements.
567 -
majiayu000 Bundle Homebrew Cask AuthoringCreate, update, validate, and submit Homebrew Casks. Use when the user mentions Homebrew cask/cask, Homebrew/homebrew-cask, adding a new cask, updating a cask, cask token naming, sha256, url verified:, livecheck, zap/uninstall, or when asked to run brew style/audit for a cask.
567 -
majiayu000 Bundle Input Output GuardrailsImplementing safety filters, content moderation, and guardrails for AI system inputs and outputs
567 -
majiayu000 Bundle Nw Compliance FrameworkGDPR LIA template, CCPA thresholds, ethical OSINT principles, data retention policies, and clear boundaries for what CAN vs SHOULD NOT be collected.
567 -
majiayu000 Bundle Opencrow Crypto ToolboxUse the Anaconda `ctf` environment and installed crypto tooling for CTF tasks that fit normal Python or CLI cracking rather than SageMath. Use when Codex needs `z3`, `fpylll`, `pycryptodome`, `hashcat`, `john`, or quick FactorDB lookups.
567 -
majiayu000 Bundle Orchardcore Users RolesSkill for managing users, roles, and permissions in Orchard Core. Covers user registration, role creation, permission definitions, custom user settings, and authentication configuration.
567 -
majiayu000 Bundle Pentest Network ScannerActively enumerate in-scope hosts and services, then produce normalized network mapping artifacts.
567 -
majiayu000 Bundle Pentest Priv EscalationAssess Linux and Windows privilege escalation vectors from existing authorized footholds.
567 -
majiayu000 Bundle Pentest Social EngineerDesign phishing and social engineering simulations with explicit authorization and measurable outcomes.
567 -
majiayu000 Bundle Performing Tls Analysis<!-- Copyright (c) 2026 defconxt. All rights reserved. -->
567 -
majiayu000 Bundle Pii Privacy Regulations SkillHandling personally identifiable information under European and Australian privacy regulations.
567 -
majiayu000 Bundle Privacy Data ProtectionUse when identifying data privacy and protection laws that apply to your software product. Covers GDPR, CCPA/CPRA, LGPD, PIPL, PIPA, DPDPA, PIPEDA, and other global privacy regulations with jurisdiction mapping, key obligations, and compliance triggers. USE FOR: GDPR, CCPA, CPRA, LGPD, PIPL, PIPA, DPDPA, PIPEDA, UK GDPR, data privacy compliance, data subject rights, consent management, cross-border data transfers, DPO requirements, breach notification DO NOT USE FOR: encryption implementation (use security/cryptography), data masking techniques (use security/data-protection), specific DPA drafting (consult legal counsel)
567 -
majiayu000 Bundle Redteam Report TemplateClient-facing red-team deliverable format — codifies the Subject / Observations / Description / Impact / Recommendation / PoC structure used for external red-team engagements (not bug-bounty platform reports). Different audience, different tone, different cadence. Built from an authorized engagement deliverable where 14 findings were packaged into a 52KB MD + 2.2MB DOCX with 16 embedded screenshots. Use when the engagement is "external red team for an enterprise client" (not H1/Bugcrowd/Intigriti), when generating the final report, when the client has specified a custom report format, or when packaging findings into DOCX/PDF.
567 -
majiayu000 Bundle Security Scanning SuiteComprehensive security analysis including SAST, DAST, dependency scanning, secret detection, and vulnerability assessment. Use for security audits, CVE tracking, compliance checks, and preventing vulnerabilities from reaching production. Supports multiple languages and frameworks.
567 -
majiayu000 Bundle Ssh Penetration TestingThis skill should be used when the user asks to "pentest SSH services", "enumerate SSH configurations", "brute force SSH credentials", "exploit SSH vulnerabilities", "perform SSH tunneling", or "audit SSH security". It provides comprehensive SSH penetration testing methodologies and techniques.
567 -
majiayu000 Bundle Suede Visibility GraderGrade a public page for launch appeal: findability, first-screen clarity, CTA pull, proof quality, and AI citation readiness.
567 -
majiayu000 Bundle Triage Suspicious LoginTriage suspicious login alerts like impossible travel, untrusted location, or multiple failures. Use when investigating authentication anomalies. Analyzes user history, source IP reputation, login patterns, and determines if escalation is needed.
567 -
majiayu000 Bundle Active Directory AttacksThis skill should be used when the user asks to "attack Active Directory", "exploit AD", "Kerberoasting", "DCSync", "pass-the-hash", "BloodHound enumeration", "Golden Ticket", "Silver Ticket", "AS-REP roasting", "NTLM relay", or needs guidance on Windows domain penetration testing.
567 -
majiayu000 Bundle Bitcoin Auth DiagnosticsDiagnose and troubleshoot bitcoin-auth token generation and verification issues. This skill should be used when users encounter authentication failures, signature verification errors, or integration problems with the bitcoin-auth library.
567 -
majiayu000 Bundle Smtp Penetration TestingThis skill should be used when the user asks to "perform SMTP penetration testing", "enumerate email users", "test for open mail relays", "grab SMTP banners", "brute force email credentials", or "assess mail server security". It provides comprehensive techniques for testing SMTP server security.
567 -
majiayu000 Bundle Woocommerce Health CheckWooCommerce configuration diagnostics - identifies checkout problems, cart errors, AJAX mismatches, caching issues, payment gateway setup, SSL enforcement. Revenue-impacting diagnostics. Requires WooCommerce add-on. Use when user says "check my woocommerce health", "audit woocommerce store", "diagnose checkout issues", or "scan my store for problems".
567 -
majiayu000 Bundle 502 Frameworks Micronaut RESTUse when you need to design, review, or improve REST APIs with Micronaut — including @Controller routes, HTTP status codes, DTOs, Bean Validation, exception handlers, pagination, idempotency, ETag/If-Match, caching headers, versioning, contract-first OpenAPI (OpenAPI Generator), optional runtime OpenAPI via micronaut-openapi, and security annotations. This should trigger for requests such as Review or improve Micronaut @Controller REST APIs; Add validation, error handling, or align controllers with the OpenAPI contract on Micronaut HTTP layer. Part of cursor-rules-java project
567 -
majiayu000 Bundle Auth Implementation PatternsMaster authentication and authorization patterns including JWT, OAuth2, session management, and RBAC to build secure, scalable access control systems. Use when implementing auth systems, securing APIs, or debugging security issues.
567 -
majiayu000 Bundle Claude Code Excellence AuditAudits Claude Code project setup and provides score with recommendations. Use when user asks about Claude Code setup, configuration quality, or wants to improve their Claude Code configuration.
567 -
majiayu000 Bundle Cloudflare Zero Trust AccessIntegrate Cloudflare Zero Trust Access authentication with Cloudflare Workers applications using proven patterns and templates.
567 -
majiayu000 Bundle Ln 627 Observability AuditorObservability audit worker (L3). Checks structured logging, health check endpoints, metrics collection, request tracing, log levels. Returns findings with severity, location, effort, recommendations.
567 -
majiayu000 Bundle Managing Advanced MiddlewareAdvanced middleware logic for security and routing. Use for global rate limiting, security headers, and protection of admin routes.
567 -
majiayu000 Bundle Openrouter Compliance ReviewExecute conduct security and compliance review of OpenRouter integration. Use when preparing for audits or security assessments. Trigger with phrases like 'openrouter security review', 'openrouter compliance', 'openrouter audit', 'security assessment'.
567 -
majiayu000 Bundle Scanning For VulnerabilitiesExecute this skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin. it identifies security vulnerabilities in code, dependencies, and configurations, including cve detection. use this skill when the user asks to scan fo... Use when appropriate context detected. Trigger with relevant phrases based on skill purpose.
567 -
majiayu000 Bundle Security Dependency ScanningGuide for conducting comprehensive web dependency security scans to identify outdated libraries, CVEs, and security misconfigurations. Use when analyzing deployed websites for dependency vulnerabilities.
567 -
majiayu000 Bundle Security Hardening ChecklistThis skill should be used when the user requests to audit, check, or improve application security by analyzing security headers, cookie configuration, RLS policies, input sanitization, rate limiting, and other security measures. It generates a comprehensive security audit report with actionable recommendations. Trigger terms include security audit, security check, harden security, security review, vulnerability check, security headers, secure cookies, input validation, rate limiting, security best practices.
567 -
majiayu000 Bundle Security Vulnerability AuditWorkflow for auditing security vulnerabilities using Trunk (Trivy and OSV-scanner). Use when checking for project vulnerabilities, hard-coded secrets, or repairing security flaws.
567
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include detecting-dns-tunneling, developing-with-fortify, frappe-core-permissions. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.