Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
tomevault-io Bundle Dockerfile ValidatorValidate, lint, audit, or scan a Dockerfile for security and best practices. Use when this capability is needed.
-
tomevault-io Bundle Terragrunt ValidatorValidate, lint, audit, or check Terragrunt .hcl/terragrunt.hcl files, stacks, modules, compliance. Use when this capability is needed.
-
tomevault-io Bundle Claudemd CuratorAudit and improve project-memory artifacts (CLAUDE.md, AGENTS.md, .claude/rules/*.md, .claude.local.md). Use when the user asks to check, audit, update, improve, or fix CLAUDE.md or AGENTS.md files, or mentions "project memory", "memory optimization", "Codex AGENTS.md sync", or ".claude/rules". Discovers all known artifacts, scores each against the rubric, prints a report, and makes targeted updates only after approval. Use when this capability is needed.
-
tomevault-io Bundle Audit SupportSupport SOX 404 compliance with control testing methodology, sample selection, and documentation standards. Use when generating testing workpapers, selecting audit samples, classifying control deficiencies, or preparing for internal or external audits. Use when this capability is needed.
-
tomevault-io Bundle Review EnvironmentsReview verifiers environments for correctness, robustness, and ecosystem compatibility. Use when asked for environment code review, quality audit, migration validation, or release readiness checks for local environments or environments pulled from the Hub. Use when this capability is needed.
-
tomevault-io Bundle Vibe SecurityAudits codebases for common security vulnerabilities that AI coding assistants introduce in "vibe-coded" applications. Checks for exposed API keys, broken access control (Supabase RLS, Firebase rules), missing auth validation, client-side trust issues, insecure payment flows, and more. Use this skill whenever the user asks about security, wants a code review, mentions "vibe coding", or when you're writing or reviewing code that handles authentication, payments, database access, API keys, secrets, or user data — even if they don't explicitly mention security. Also trigger when the user says things like "is this safe?", "check my code", "audit this", "review for vulnerabilities", or "can someone hack this?". Use when this capability is needed.
-
tomevault-io Bundle Ioc InvestigationUse this skill when asked to investigate an Indicator of Compromise (IoC) such as an IP address, DNS domain, URL, or file hash. Triggers on keywords like "investigate IP", "check domain", "IoC investigation", "threat intel", "is this malicious", "suspicious URL", or when an IP/domain/URL/hash is mentioned with investigation context. This skill provides comprehensive IoC analysis using Microsoft Defender Threat Intelligence, Sentinel Threat Intel tables, Advanced Hunting, organizational exposure assessment, CVE correlation, and affected device enumeration.
-
tomevault-io Bundle Security FlutterSécurité Flutter. Use when reviewing security, implementing auth, or hardening code. Use when this capability is needed.
-
tomevault-io Bundle Security SymfonySécurité & RGPD - Atoll Tourisme. Use when reviewing security, implementing auth, or hardening code. Use when this capability is needed.
-
tomevault-io Bundle Vuln Patterns LanguagesLanguage-specific vulnerability detection patterns for JavaScript/TypeScript, Python, Go, Java, Ruby, and PHP. Provides regex patterns and grep commands for common security vulnerabilities. Use when this capability is needed.
-
tomevault-io Bundle Convex ReviewComprehensive Convex code review checklist for production readiness. Use when auditing a Convex codebase before deployment, reviewing pull requests, or checking for security and performance issues in Convex functions. Use when this capability is needed.
-
tomevault-io Bundle Secret RotationValidate secret storage practices and rotation policies. Check for secrets in code, Vault usage, and rotation schedules. Use when this capability is needed.
-
tomevault-io Bundle Security ScanningScan code for security vulnerabilities. Use after implementation changes. Use when this capability is needed.
-
tomevault-io Bundle Iot SecurityIoT security protects devices, data, and networks from cyber threats. Use when this capability is needed.
-
tomevault-io Bundle Setup ClaudeInteractive Claude Code repository setup and optimization. Configures the complete ecosystem - skills, commands, subagents, hooks, rules, MCPs, and plugins. Invoke with /setup-claude init or /setup-claude audit. Use when this capability is needed.
-
tomevault-io Bundle Implement Comet ExpressionUse when implementing a new Spark expression in DataFusion Comet. Walks through cloning latest Spark master to study the canonical implementation, checking the upstream datafusion-spark crate before writing native code, building the Comet serde and Rust wire-up from the contributor guide, then running audit-comet-expression to drive a test-coverage iteration loop.
-
tomevault-io Bundle Usage LoggingConsult this skill when implementing usage logging and audit trails. Use when this capability is needed.
-
tomevault-io Bundle Session TemplateApply task-specific templates to AI session plans using ai-update-plan. Use when starting a new task to load appropriate plan structure (feature, bugfix, refactor, documentation, security). Use when this capability is needed.
-
tomevault-io Bundle Codex Review WorkflowAutomated code review workflow using OpenAI Codex CLI. Implements iterative fix-and-review cycles until code passes validation or reaches iteration limit. Use when building features requiring automated code validation, security checks, or quality assurance through Codex CLI. Use when this capability is needed.
-
tomevault-io Bundle Code Security ReviewConducts comprehensive security code reviews including vulnerability detection (OWASP Top 10, CWE), authentication/authorization flaws, injection attacks, cryptography issues, sensitive data exposure, API security, dependency vulnerabilities, security misconfigurations, and compliance validation (PCI-DSS, GDPR, HIPAA). Produces detailed security assessment reports with CVE references, CVSS scores, exploit scenarios, and remediation guidance. Use when reviewing code security, performing security audits, checking for vulnerabilities, validating security controls, assessing security risks, or when users mention "security review", "vulnerability scan", "security audit", "penetration test", "OWASP", "security assessment", "secure coding", or "security compliance". Use when this capability is needed.
-
tomevault-io Skill Burp Suite Web Application TestingThis skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp Repeater", "analyze HTTP history", or "configure proxy for web testing". It provides comprehensive guidance for using Burp Suite's core features for web application security testing.
-
tomevault-io Bundle Binary AnalysisAnalyze binary files (exe, dll, sys, bin, ocx, scr, cpl, drv, elf, so, macho, apk) to assess if they are malicious, perform decompilation, extract strings/imports/exports, detect malware, and provide threat assessment. Use this skill when user asks to analyze, examine, check, or assess any binary file, asks if a file is malicious/suspicious/safe, or provides a file path to a binary. Trigger for phrases like "Is [file] malicious?", "Analyze [file]", "What does [binary] do?", or any request involving binary file analysis. Use when this capability is needed.
-
tomevault-io Bundle Secure Development PolicyComprehensive secure development lifecycle covering all SDLC phases, AI controls, testing, and security requirements per Hack23 ISMS Use when this capability is needed.
-
tomevault-io Bundle Vibe Coding Security Awareness OverviewUnderstand the security risks inherent in AI-generated code and vibe coding. Use this skill when you need to understand why AI generates insecure code, statistics on vulnerabilities, real-world breach examples, or overall security awareness for AI-assisted development. Triggers include "vibe coding security", "AI code security", "AI vulnerabilities", "security risks AI code", "why AI insecure", "AI security awareness", "AI generated code risks". Use when this capability is needed.
-
tomevault-io Bundle Scanning For SecretsDetect exposed secrets, API keys, and credentials in code. Use when auditing for secret leaks. Trigger with 'scan for secrets', 'find exposed keys', or 'check credentials'. Use when this capability is needed.
-
tomevault-io Bundle Kiraneswaran Engineering Skills Security Testing---
-
tomevault-io Bundle Vibe Security AuditAudits codebases for security vulnerabilities common in AI-assisted (vibe coded) projects. Runs a 30-point checklist covering secrets exposure, injection attacks, auth misconfig, CORS, dependency vulnerabilities, and production readiness. Use when reviewing code for security issues, preparing for deployment, or when the user mentions security audit, vulnerability check, or vibe coding security. Use when this capability is needed.
-
tomevault-io Bundle Skastvnt AI Assistant Service Health Check Audit---
-
tomevault-io Bundle Articleshelf Docs AuditAudit ArticleShelf documentation consistency. Use when Codex needs to check or fix docs links, old docs paths, docs directory structure rules, source-of-truth ownership, responsibility overlap, or whether AGENTS.md and ArticleShelf skills are aligned with docs changes. Use when this capability is needed.
-
tomevault-io Bundle Thinking Red TeamDeliberately attack your own plans, systems, and assumptions to find weaknesses before adversaries or reality does. Use for security review, architecture validation, plan stress-testing, and pre-launch preparation. Use when this capability is needed.
-
tomevault-io Bundle API Security Best PracticesImplement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabilities Use when this capability is needed.
-
tomevault-io Bundle Brendadeeznuts1111 Project R Score Tier1380 AuditTier-1380 Audit Skill
-
tomevault-io Bundle Inversion ThinkingProactive failure analysis using the Saboteur Method. Use when designing critical systems, security features, or debugging root causes. Use when this capability is needed.
-
tomevault-io Bundle Claude Dev Suite Claude Dev Suite Dotnet Security.NET Security - Quick Reference
-
tomevault-io Bundle Medassist Security SanityApply baseline security checks to MedAssist code changes, especially for backend routes, auth flows, and input handling, including equivalent requests phrased in German. Use when this capability is needed.
-
tomevault-io Bundle Backend Design ReviewConducts comprehensive backend design reviews covering API design quality, database architecture validation, microservices patterns assessment, integration strategies evaluation, security design review, and scalability analysis. Evaluates API specifications (REST, GraphQL, gRPC), database schemas, service boundaries, authentication/authorization flows, caching strategies, message queues, and deployment architectures. Identifies design flaws, security vulnerabilities, performance bottlenecks, and scalability issues. Produces detailed design review reports with severity-rated findings, architecture diagrams, and implementation recommendations. Use when reviewing backend system designs, validating API specifications, assessing database schemas, evaluating microservices architectures, reviewing integration patterns, or when users mention backend design review, API design validation, database design review, microservices assessment, or backend architecture evaluation. Use when this capability is needed.
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include dockerfile-validator, terragrunt-validator, claudemd-curator. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.