Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
xpozpublic Skill Security OsintMonitor social platforms for security threats, vulnerability discussions, and breach intelligence using Xpoz. Use when asked to "find CVE discussions", "security threat monitoring", "OSINT social media", "vulnerability intelligence", "breach mentions", or "threat intel from Twitter/Reddit".
-
xpozpublic Skill Geo Visibility CheckOne-shot GEO visibility check for a brand using Xpoz. Runs the buyer questions that matter through Claude, ChatGPT, and Gemini, and reports where the brand appears, who wins instead, and which surfaces the answers are assembled from. Use when asked to "check my AI visibility", "does ChatGPT recommend us", "GEO audit", "where do we show up in AI answers", or "who wins our category in AI answers".
-
deveclipsy007 Bundle Auth Rbac HardeningFortalece autenticacao, sessao e autorizacao baseada em papeis no LLMInvoice.
-
duthaho Skill Audit DependenciesUse when investigating dependency bloat, security advisories, supply-chain risk, upgrade planning, or before adding a new third-party package. Activate for keywords like "deps", "dependencies", "package.json", "requirements.txt", "Cargo.toml", "audit", "CVE", "stale package", "do we use", "what depends on", "transitive dep". Produces a written audit with import-graph evidence — never trust scanner output without verifying call sites.
-
0xjitsu Skill Dep AuditAudits project dependencies for known vulnerabilities, outdated packages, and unused modules. Triggered when a user asks to check for vulnerabilities, audit dependencies, or run a security scan on installed packages. Produces a severity-sorted findings table with one-liner fix commands and cross-references Sonatype for recommended versions.
-
0xjitsu Skill Secret ScannerScans the full git history of a repository for leaked secrets, API keys, tokens, and credentials. Triggered when a user asks to audit commits for exposed credentials, run a pre-publish security check, or scan git history for sensitive data. Produces a severity-ranked findings table with remediation commands. Read-only — never modifies git history automatically.
-
0xjitsu Skill Keychain ManagerManages secrets and API keys in the macOS Keychain using the security CLI. Triggered when a user asks to store, retrieve, list, rotate, or delete tokens and credentials. Uses a consistent naming convention with the bbmisa account and uppercase service names. Never exposes secrets in plaintext output or commits them to git.
-
nobrainer-tech Skill Nobrainer ReviewUse when the owner says nb-review, deep-audit, deep-code-review, or deep-autoreview; explicitly requests an evidence-gated CLOSEOUT, adversarial BUG_HUNT or RELEASE_GATE; or needs final findings filtered to verified actionable defects. Use nobrainer-build for ordinary implementation and correction work.
-
nobrainer-tech Bundle Nobrainer DispatcherUse when the owner says nb-dispatcher or nobrainer-dispatcher, or when an approved plan has multiple queued work units that require ready-set selection, dependency-aware ordering, bounded parallel batches, retry scheduling, or routing audited results to the next queued unit; do not use for one coherent task, one bounded delegate, a standalone receive-audit, requirements, team design, or session transport.
-
mhaggis Skill Detection Coverage AnalysisAnalyzes detection coverage using Sigma, Splunk, and Elastic rules. Use when checking coverage for techniques, tactics, threat actors, or generating Navigator layers from detections.
-
mhaggis Skill Att Ck Navigator Layer GeneratorGenerate MITRE ATT&CK Navigator layers for coverage visualization, threat actor mapping, and gap analysis. Produces JSON files compatible with the Navigator web app.
-
juniyadi Skill Judge SkepticEvaluate features based on risk identification, security, and thorough analysis.
-
pcatattacks Bundle ReviewReview code, specifications, or designs for quality, bugs, security, and best practices. Use when the user wants feedback on recent work, a pull request, or any artifact.
-
eucann Skill Control Implementation GeneratorGenerate detailed control implementation guidance, technical steps, and implementation plans for OSCAL security controls. Use this skill to create implementation narratives, technical procedures, and deployment plans.
-
citedy-skills Bundle Adclaw Host AI AccountingUse for AdClaw Host AI quota accounting, hosted key provisioning, limit UX, and secret redaction reviews.
-
dotnet Skill Code ReviewReview a GitHub pull request for problems. Use when asked to review a PR, do a code review, check a PR for issues, or review pull request changes. Focuses only on identifying problems — not style nits or praise.
4k -
conava Skill DepsUpdate dependencies across one or many repositories. Default mode patches CVEs/security advisories: give CVE IDs (or a vulnerable package) and it researches affected/fixed versions, then launches dependency agents to update, verify, and commit. With --migrate it runs major-version migrations: give a package + target version (or an 'X to Y' library swap, or nothing for an EOL audit) and it researches the migration guide and tooling, gets your approval, then launches dependency agents (opus) to run codemods and refactor breaking changes. Use whenever the user mentions CVEs, security vulnerabilities in dependencies, patching/updating packages for security, OR migrating/upgrading a dependency across a major version, moving from one library to another, end-of-life/EOL, deprecations, or breaking-change upgrades.
-
conava Skill ReviewPerform an in-depth code review of recent changes. Checks correctness, security, performance, and code quality.
-
skinnyandbald Skill Repo AuditAudit GitHub repo security settings, dependabot config, workflow hygiene, stale PRs/branches, and action pinning. Auto-fix drift with --fix. Use when you want to check repo health across an org or a single repo.
-
skinnyandbald Bundle Audit Claude MdAudit any project's CLAUDE.md (or AGENTS.md) against best practices and score its effectiveness. Use when reviewing a client's AI development setup, onboarding a new codebase, or improving your own CLAUDE.md. Triggers on requests like "audit my CLAUDE.md", "score my AI setup", "review my project context file", or "how good is my CLAUDE.md".
-
conava Skill Deep ReviewFinal comprehensive pull request review — the last gate before merge. Checks security, credentials, code quality, tech debt, conventions, and plan compliance.
-
davidmatousek Skill Aod Project PlanValidates architecture documentation completeness by checking for technology stack, API specifications, database schema, security architecture, and alignment with feature specification. Use this skill when you need to check if plan.md is complete before implementation, validate architecture documentation, or review technical plans for completeness.
-
enoch-robinson Skill Security Audit代码安全审计指南。当用户需要检查代码安全漏洞、实施安全最佳实践、进行安全代码审查或修复安全问题时使用此技能。
-
jezweb Skill Code ReviewReview code for bugs, security issues, performance problems, and style. Use when the user pastes code, shares a file, or asks "what's wrong with this code?".
-
jezweb Skill Review Code SecurityReviewer criteria for AI-generated code via with_review. Checks for security issues (injection, auth bypass, secret leakage), correctness, and project conventions. Use as criteria.skill when generating code that touches data, auth, or external systems.
-
jongwony Bundle Safe UninstallThis skill should be used when the user asks to "remove program", "uninstall app", "delete daemon", "clean up process", "safe uninstall", "find resource hog", "what is this process", "remove bloatware", "kill daemon", "remove LaunchDaemon", "remove security program", "Activity Monitor finding", "high memory process", or wants to safely identify and remove macOS programs and daemons. Also triggers when the user mentions high memory/CPU usage by unknown processes, Activity Monitor concerns, unwanted LaunchDaemons/Agents, or Korean banking security programs (TouchEn, AhnLab, Veraport, INISAFE, CrossEX). Use this skill even when the user simply provides a process name and wants it gone, or describes a process consuming excessive resources they want to investigate.
-
nembie Bundle Env Config ValidatorValidate environment configuration files, detect missing or misconfigured variables, and generate typed env schemas. Use when asked to validate env files, check environment config, generate .env.example, audit env variables, or create typed env validation.
-
vstorm-co Skill Code ReviewSystematic code review for bugs, security, style, and performance
-
luan Bundle SuperreviewDeep adversarial code review with 5-7 parallel perspective specialists. Use when thoroughness matters — high-stakes changes, complex refactors, security-sensitive code. Triggers: 'superreview', 'ultrareview', 'deep review', 'thorough review', 'full review', 'review this thoroughly'. Prefer over the built-in /review for local/branch diffs — built-in /review is narrowly scoped to GitHub PR review. For quick reviews use /crit instead.
-
luan Skill Vault SweepComprehensive vault maintenance — cross-references blueprints against codebase state to produce a maintenance plan: archive consumed artifacts, audit docs for staleness, propose new docs for undocumented stable systems. Triggers: 'vault sweep', 'sweep the vault', 'clean up vault', 'vault maintenance', 'what can we archive', 'audit blueprints', 'vault hygiene', 'blueprint cleanup'. Use whenever the user wants a holistic view of vault health rather than archiving a single artifact (that's /archive). Also use when the user asks what's stale, what needs docs, or whether artifacts can be cleaned up.
-
chachamaru127 Bundle Harness ReviewHAR: Multi-angle code, plan, scope review. Security/quality check. Trigger: review, code review, plan review, scope analysis. Do NOT load for: implementation, new features, bugfix, setup, release.
-
maxvaega-skillkit Skill Code ReviewerReview code for best practices, potential bugs, security vulnerabilities, and performance issues
-
0xghostcat Skill XssHunt reflected, stored, and DOM-based Cross-Site Scripting (XSS) including CSP bypass, polyglot payloads, mutation XSS (mXSS), markdown XSS, and template XSS. Use when the user has identified a parameter or input that reflects to the page, or wants to test for XSS in a specific input.
-
0xghostcat Skill JWT AttacksHunt JSON Web Token (JWT) vulnerabilities — alg=none bypass, RS256→HS256 key confusion, weak HMAC secret cracking, kid path traversal, JWKS injection, jku/x5u header attacks, embedded JWK confusion, expired-token acceptance, claim mutability, and token replay. Use when an app uses JWT for authentication or stateless sessions.
-
nvidia Bundle Generate Sandbox PolicyGenerate sandbox security policies from plain-language requirements and optional REST API documentation. Produces L4 or fine-grained L7 network policies and ordered network middleware configuration. Use for API access rules, middleware host selection, failure behavior, or built-in and operator-run middleware attachment. Trigger keywords - generate policy, create policy, update policy, change policy, sandbox policy, network policy, API policy, security policy, allow API, restrict API, network middleware, supervisor middleware.
2.2k -
nvidia Skill Review Security IssueGiven a GitHub issue, review the issue for security implications. You'll make a determination if the claim in the issue is legitimate and should be addressed or will be a "won't fix." Trigger keywords - security issue, review security ticket, review security issue.
2.2k
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include dep-audit, secret-scanner, keychain-manager. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.