Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
tomevault-io Bundle Codex Md ImproverAudit and improve AGENTS.md files in repositories. Use when user asks to check, audit, update, improve, or fix AGENTS.md files. Scans for all AGENTS.md files, evaluates quality against templates, outputs quality report, then makes targeted updates. Also use when the user mentions "AGENTS.md maintenance" or "project memory optimization". Use when this capability is needed.
-
tomevault-io Bundle Joshmanders Dotfiles Test AuditTest Audit Workflow
-
tomevault-io Bundle Fastapi CodingUse this skill when building FastAPI applications. Provides FastAPI-specific best practices including project structure, routing with Pydantic models, async database patterns, dependency injection, security, and testing.
-
tomevault-io Bundle Mallory APIQuery the Mallory threat intelligence API for actors, vulnerabilities, exploits, and malware. Use when you need current threat intel data. Use when this capability is needed.
-
tomevault-io Bundle Gz Adr AuditGate-5 audit templates and procedure for ADR verification. GovZero v6 skill. Use when this capability is needed.
-
tomevault-io Bundle Guide Swiftui Performance AuditAudit and improve SwiftUI runtime performance from code review and architecture. Use for requests to diagnose slow rendering, janky scrolling, high CPU/memory usage, excessive view updates, or layout thrash in SwiftUI apps, and to provide guidance for user-run Instruments profiling when code review alone is insufficient. Use when this capability is needed.
-
tomevault-io Bundle Audit ReferencesUse when literature notes exist and need citation verification, or before publishing any artifact that cites literature
-
tomevault-io Bundle Compliance AuditAudit Value Delivery compliance after PR push Use when this capability is needed.
-
tomevault-io Bundle Linkerd PatternsImplement Linkerd service mesh patterns for lightweight, security-focused service mesh deployments. Use when setting up Linkerd, configuring traffic policies, or implementing zero-trust networking with minimal overhead. Use when this capability is needed.
-
tomevault-io Bundle OpsSecurity scanning, compliance checks, deployment automation, and infrastructure management. Use for security audits, compliance validation, and deployment planning. Use when this capability is needed.
-
tomevault-io Bundle 1password Scam Security AwarenessSecurity Awareness Expert
-
tomevault-io Bundle Production ReadyUse when preparing any project for production deployment, performing security audits, or release preparation. Triggers on "make production ready", "security audit", "prepare for release", "hardening", "pre-deployment checklist".
-
tomevault-io Bundle Agricidaniel Claude Blog Blog GeoBlog GEO -- AI Citation Optimization Audit
-
tomevault-io Bundle Security ReviewerUse when modifying unsafe blocks, adding parsing or decoding logic, changing buffer pool or scratch internals, or before merging changes to data structure implementations with raw pointers. Memory safety and security audit.
-
tomevault-io Bundle FirebaseFirebase Firestore, Auth, Storage, real-time listeners, security rules Use when this capability is needed.
-
tomevault-io Bundle Systemd UnitsCreate and harden systemd service unit files following modern best practices. Use when writing new systemd units for web applications, background workers, or daemons, or when hardening existing services with security sandboxing and isolation features. Covers service types, dependencies, restart policies, security options, and filesystem restrictions. Use when this capability is needed.
-
tomevault-io Bundle Ruvnet Claude Flow Security AuditSecurity Audit Skill
-
tomevault-io Bundle Do EverythingUse when working with a skill that requests all permissions
-
tomevault-io Bundle Scope Drift Detection SpnUse this skill when asked to detect scope drift, behavioral expansion, or gradual privilege/access creep in service principals or automation accounts. Triggers on keywords like "scope drift", "service principal drift", "SPN behavioral change", "automation account drift", "baseline deviation", "access expansion", or when investigating whether a service principal has gradually expanded beyond its intended purpose. This skill builds a 90-day behavioral baseline per SPN, compares it with 7-day recent activity, computes a weighted Drift Score across 5 dimensions, and correlates with SecurityAlert and AuditLogs for corroborating evidence.
-
tomevault-io Bundle Fix Security VulnerabilitiesFetch all open security vulnerabilities from Dependabot (or pnpm audit as fallback) and bump every affected dependency to its patched version. Use when the user asks to fix, resolve, or address all security vulnerabilities, Dependabot alerts, or audit findings. Use when this capability is needed.
-
tomevault-io Bundle Code PruningDead code detection strategies, safe removal processes, dependency pruning, and bloat metrics for systematically reducing codebase dead weight. Use when evaluating codebase health during architecture-audit, performing cleanup during cook, reviewing unused dependencies, removing commented-out code, or measuring code bloat. Use when this capability is needed.
-
tomevault-io Bundle Snyk Studio Recipes Sbom AnalyzerSBOM Security Analyzer
-
tomevault-io Bundle Xss TestingXSS跨站脚本攻击测试的专业技能 Use when this capability is needed.
-
tomevault-io Bundle Clawsec SuiteClawSec suite manager with embedded advisory-feed monitoring, approval-gated malicious-skill response, and guided setup for additional security skills. Use when this capability is needed.
-
tomevault-io Bundle Excatt Superclaude Plusplus AuditAudit Skill
-
tomevault-io Bundle App PlannerGuides you through comprehensive iOS/Swift app planning and analysis. Use for new apps (concept to architecture) or existing apps (audit current state, plan improvements, evaluate tech stack). Covers product planning, technical decisions, UI/UX design, and distribution strategy. Use when this capability is needed.
-
tomevault-io Bundle Florianbuetow Claude Code ExplainSecurity Explainer
-
tomevault-io Bundle Florianbuetow Claude Code GRAPHQLGraphQL Security (GQL)
-
tomevault-io Bundle Florianbuetow Claude Code LinddunLINDDUN Privacy Threat Dispatcher
-
tomevault-io Bundle Florianbuetow Claude Code LoggingSecurity Logging and Monitoring Failures (A09:2021)
-
tomevault-io Bundle Ghostsecurity Skills Scan SecretsGhost Security Secrets Scanner — Orchestrator
-
tomevault-io Bundle Security DocumentationMaintain comprehensive security documentation including SECURITY_ARCHITECTURE.md, THREAT_MODEL.md per Hack23 ISMS standards Use when this capability is needed.
-
tomevault-io Bundle Ton TactTact language for TON blockchain smart contracts — types, contracts, messages, send/receive, stdlib, and security. Use when this capability is needed.
-
tomevault-io Bundle Jetpack Compose AuditAudit Android Jetpack Compose repositories for performance, animation phase correctness, state management, side effects, composable API quality, and adjacent Android launch UX resource risks such as blurry Android 12+ splash icons. Scans source code, scores each category from 0-10, writes a strict markdown report, and summarizes the most important fixes. Use when reviewing a Compose codebase, rating repository quality, inspecting recomposition/state issues, animation issues, or running a Compose audit. Use when this capability is needed.
-
tomevault-io Bundle Tyro LoginLaravel authentication infrastructure package providing guards, providers, sessions, tokens, verification, and security for the Tyro ecosystem. Use when this capability is needed.
-
tomevault-io Bundle Secure CodingSecurity best practices for Go applications. Use when writing security-sensitive code. Use when this capability is needed.
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include codex-md-improver, joshmanders--dotfiles--test-audit, fastapi-coding. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.