Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
vamseeachanta Skill Mkdocs DangerMkDocs danger admonition syntax. Use when writing critical warnings about data loss or security risks in MkDocs documentation.
Audited -
thomasmoreai Skill Import Compliance ManualDrafts a U.S. import compliance manual demonstrating reasonable care under 19 U.S.C. § 1484. Covers HTS classification, customs valuation (19 U.S.C. § 1401a), country of origin, recordkeeping (19 C.F.R. Part 163), PGA compliance, internal audit, training, and corrective action. Use when creating or overhauling an importer-of-record compliance program, preparing for a CBP focused assessment, or establishing written reasonable-care procedures. Trigger keywords: import compliance manual, customs compliance program, CBP audit preparation, reasonable care, IOR compliance.
Audited -
thomasmoreai Skill Motion To Avoid LienDrafts a Motion to Avoid Lien under 11 U.S.C. § 522(f) for bankruptcy proceedings. Produces a litigation-ready motion with caption, impairment calculations, legal argument, and prayer for relief. Use when filing lien avoidance motions in Chapter 7, 11, or 13 cases, stripping judicial liens or nonpossessory nonpurchase-money security interests that impair debtor exemptions.
Audited -
thomasmoreai Skill Ucc Financing StatementDrafts UCC-1 Financing Statements and UCC-3 Amendments to perfect security interests under Article 9 of the Uniform Commercial Code. Handles debtor identification, collateral descriptions, filing jurisdiction, continuations, terminations, and assignments. Use when drafting UCC-1 filings, UCC-3 amendments, continuation statements, or any secured transaction perfection document.
Audited -
thomasmoreai Skill Chart Audit ProtocolDrafts healthcare chart audit protocols covering clinical documentation review, coding accuracy, and billing compliance. Aligns with Medicare CoPs, OIG Compliance Program Guidance, RAC preparedness, federal sentencing guidelines, and the 60-day overpayment rule. Use when drafting routine periodic audits, targeted risk reviews, proactive compliance measures, or post-regulatory-update assessments.
Audited -
thomasmoreai Skill Awa Compliance AuditProduces an enforcement-aware Animal Welfare Act compliance audit for USDA/APHIS-regulated facilities. Maps Form 7002 inspection citations to verified 9 C.F.R. Parts 1-3 requirements, analyzes NCI severity and recurrence patterns, evaluates core compliance programs (PVC, IACUC, housing, records, transport), and outputs a prioritized corrective action plan with proof artifacts. Use when auditing AWA compliance, reviewing USDA inspection reports, preparing for license renewal, conducting diligence, or assessing enforcement risk. Trigger: Animal Welfare Act, AWA, USDA, APHIS, Form 7002, IACUC, PVC, exhibitor, dealer, research facility.
Audited -
thomasmoreai Skill Arckit Ca Charter[COMMUNITY] Generate a Canada Charter rights design review — s.2 (expression and association), s.7 (life, liberty, security of person), s.8 (search and seizure), s.15 (equality) — applying Oakes proportionality framing to system design with mitigation tracker and DOJ counsel sign-off block.
Audited -
vamseeachanta Skill Matlab Dark PortPort legacy MATLAB engineering code to Python through the legal deny-list gate — extract example data, audit branded names, build regression tests, and commit to nested repo correctly.
Audited -
vamseeachanta Skill Verification LoopSix-phase quality gate for code changes. Runs build, typecheck, lint, test, security, and diff-review in sequence. Supports JavaScript/TypeScript, Python, and Rust with auto-detection and skip conditions.
Audited -
vamseeachanta Skill Audit SupportSupport SOX 404 compliance with control testing methodology, sample selection, and documentation standards.
Audited -
vamseeachanta Skill Audit Support It General Controls ItgcsSub-skill of audit-support: IT General Controls (ITGCs) (+4).
Audited -
vamseeachanta Skill Workflow Compliance AuditSystematic audit of whether agents are following established workflows — cross-review, plan approval, TDD compliance, and document intelligence status.
Audited -
vamseeachanta Skill Doc Audit And Close WorkflowA repeatable workflow for executing a batch of documentation, audit, or planning tasks. For each task, it audits the current state, creates a plan/report, commits the result, and closes the corresponding GitHub issue. The process is designed to be idempotent.
Audited -
vamseeachanta Skill Github Issue Label Existence AuditPrevent GitHub issue creation failures by auditing exact label existence, duplicate titles, and partial-create risk before calling gh issue create.
Audited -
vamseeachanta Skill Enforcement Audit And UpgradeAudit existing enforcement infrastructure, identify gaps between advisory and strict modes, create hard-gate scripts, and incrementally roll out enforcement. Pattern from
Audited -
vamseeachanta Skill Gsd Operational AuditAudit a repo's live GSD/get-shit-done workflow state against docs, issues, and runtime outputs to find stale issues, automation reliability gaps, parser drift, migration residue, and policy contradictions.
Audited -
vamseeachanta Skill Hidden Folder Audit Pre AuditSub-skill of hidden-folder-audit: Pre-Audit (+6).
Audited -
vamseeachanta Bundle Multi Provider Adversarial ReviewDispatch parallel adversarial reviews to Codex and Gemini CLIs for plans or code artifacts. Use when the AI Review Routing Policy requires two- or three-provider review — architecture-heavy, security-affecting, cross-module, or high-stakes changes.
-
vamseeachanta Skill Audit Support Random SelectionSub-skill of audit-support: Random Selection (+4).
Audited -
vamseeachanta Skill Tier1 Indexing Scorecard And Freshness AuditAudit tier-1 repos for code-placement/retrieval readiness, write a scorecard report, create follow-up GitHub issues, and add a daily freshness cron while avoiding legacy product-doc reference patterns.
Audited -
vamseeachanta Skill Provider Session Ecosystem Audit And ExportersBuild and maintain cross-provider session-log audits for Codex, Codex, Hermes, and Gemini, including exporter design, normalization, and behavioral verification.
Audited -
thomasmoreai Skill Field Of Use RestrictionDrafts field-of-use restriction clauses for IP licensing agreements. Covers grant language, prohibited activities, audit rights, breach remedies, and dispute resolution. Use when drafting IP license restrictions, patent field-of-use limitations, technology licensing clauses, or licensee scope provisions.
Audited -
thomasmoreai Skill Joint Operating AgreementDrafts U.S. Joint Operating Agreements (JOA) for oil and gas exploration, development, and production. Covers party structure, operator authority, AFE workflow, cost allocation, billing and audit rights, title and lien protections, default remedies, and governing-law provisions. Use when drafting, negotiating, or finalizing a JOA, joint account agreement, non-consent election, operator designation, participating interest schedule, or memorandum of operating agreement.
Audited -
thomasmoreai Skill Loc Security DepositDrafts irrevocable standby letters of credit serving as security deposits in commercial lease transactions. Use when a tenant provides an LOC alternative to a cash deposit, when drafting standby LOC instruments for lease security, or when structuring bank guarantees for tenant obligations under UCC Article 5 and ISP98.
Audited -
thomasmoreai Skill Compliance ReportGenerate auditor-ready compliance reports with multi-framework control mapping, automated evidence collection strategies, gap analysis, and structured report packages for SOC 2, HIPAA, GDPR, PCI-DSS, and ISO 27001. Reduces audit prep from weeks to days.
Audited -
thomasmoreai Skill Board Committee CharterDrafts board committee charters for Audit and Compensation Committees tailored to public/private status, exchange listing (NYSE/NASDAQ), and governance requirements. Covers composition, independence, authority, meeting procedures, and reporting. Use when creating or updating audit committee charters, compensation committee charters, or corporate oversight committee formations.
Audited -
thomasmoreai Skill Nonprofit Board MinutesDrafts legally compliant non-profit board meeting minutes with attendance, quorum, resolutions, conflict-of-interest recusals, and executive session notation. Formats output for IRS Form 990 audit, state AG scrutiny, and permanent corporate records. Use when drafting official board minutes, recording board resolutions, or creating non-profit governance records.
Audited -
thomasmoreai Skill Corrective Action PlanDrafts healthcare Corrective Action Plans (CAPs) responding to CMS survey deficiencies, Joint Commission findings, state inspection citations, or internal audit results. Structures root cause analysis, remediation steps, accountability, timelines, and monitoring. Use when drafting plans of correction, responding to immediate jeopardy findings, condition-level citations, or standard-level deficiencies.
Audited -
thomasmoreai Skill Hipaa Compliance CheckUse when performing hipaa compliance check — hIPAA compliance review covering PHI handling, encryption requirements, access controls, audit logging, Business Associate Agreements, and breach notification readiness. Use for healthcare application assessments, vendor onboarding, or annual compliance reviews.
Audited -
thomasmoreai Skill Hipaa InteroperabilityAddresses HIPAA privacy and security requirements for health data interoperability under the 21st Century Cures Act, ONC Health IT Certification Program, and CMS Interoperability and Patient Access Final Rule. Covers information blocking prohibitions, FHIR API patient access, TEFCA exchange purposes, and privacy safeguards for health information exchange. Keywords: interoperability, information blocking, FHIR, TEFCA, Cures Act, patient access API, health information exchange.
Audited -
thomasmoreai Skill Infringement Triage AnthropicsInfringement triage across trademark, copyright, patent, and trade secret — a flag list with the factors cutting each way, not a finding. Use when assessing whether someone is infringing your IP or whether you might be infringing theirs, when a knockoff or copycat surfaces, or when deciding whether a matter is worth pursuing and how.
Audited -
thomasmoreai Skill Invention Assignment AgreementDrafts a U.S. Confidentiality and Invention Assignment Agreement (CIAA/PIIA) for employee or contractor onboarding. Covers confidential information, DTSA immunity notices, state-specific invention assignment carve-outs (CA, DE, IL, KS, MN, NC, UT, WA), present-tense IP assignment, work-made-for-hire, restrictive covenants, and prior invention disclosure. Use when drafting IP assignment agreements, onboarding employees or contractors, or protecting trade secrets in employment contexts. Trigger keywords: CIAA, PIIA, invention assignment, confidentiality agreement, IP assignment, trade secret, non-compete, non-solicitation, work made for hire, employee onboarding IP.
Audited -
vamseeachanta Skill Hidden Folder Audit Common Hidden Folders ReferenceSub-skill of hidden-folder-audit: Common Hidden Folders Reference.
Audited -
vamseeachanta Skill Clean Code Top P1 Candidates 2026 02 25 AuditSub-skill of clean-code: Top P1 Candidates (2026-02-25 audit).
Audited -
vamseeachanta Skill Hidden Folder Audit Step 1 Inventory All Hidden FoldersSub-skill of hidden-folder-audit: Step 1: Inventory All Hidden Folders (+4).
Audited -
vamseeachanta Skill Provider Audit Bootstrap And Path ClassificationFix provider-session ecosystem audit failures caused by source-checkout imports and over-aggressive symbolic-path classification.
Audited
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include nonprofit-board-minutes, hipaa-interoperability, mkdocs-danger. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.