Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
nota-america Skill Gws Admin ReportsGoogle Workspace Admin SDK: Audit logs and usage reports.
-
nota-america Bundle Audit Reference OriginalityAudit a website or digital experience against its supplied source references for originality and plagiarism risk. Use when Codex must compare current or historical site output with reference pages, capture packs, screenshots, copy, brands, numbers, images, assets, videos, layouts, motion, or code; raise evidence-backed red flags; distinguish common visual grammar from distinctive copying; and propose concrete fixes without making unsupported legal claims.
-
nota-america Skill BriefGenerate contextual briefings for legal work — daily summary, topic research, or incident response. Use when starting your day and need a scan of legal-relevant items across email, calendar, and contracts, when researching a specific legal question across internal sources, or when a developing situation (data breach, litigation threat, regulatory inquiry) needs rapid context.
-
nota-america Bundle Audit Verify Explain Grade 5Audit work, verify claims with concrete evidence, and explain the result in simple grade-5 language. Use when the user asks to review, audit, check, verify, explain a change, explain a fix, summarize test results, validate whether something works, or translate technical findings into plain language for non-technical readers.
-
adu2021 Skill Omnitransfer All In One Framework For SpatioVideos convey richer information than images or text, capturing both spatial and temporal dynamics. However, most existing video customization methods rely on reference images or task-specific temporal priors, failing to fully exploit the rich spatio-temporal information inherent in videos, thereby limiting flexibility and generalization in video generation. To address these limitations, we propose OmniTransfer, a unified framework for spatio-temporal video transfer. It leverages multi-view info...
Audited -
nota-america Skill Compliance TrackingTrack compliance requirements and audit readiness. Trigger with "compliance", "audit prep", "SOC 2", "ISO 27001", "GDPR", "regulatory requirement", or when the user needs help tracking, preparing for, or documenting compliance activities.
-
nota-america Bundle Claude Md ImproverAudit and improve CLAUDE.md files in repositories. Use when user asks to check, audit, update, improve, or fix CLAUDE.md files. Scans for all CLAUDE.md files, evaluates quality against templates, outputs quality report, then makes targeted updates. Also use when the user mentions "CLAUDE.md maintenance" or "project memory optimization".
-
undermybelt Bundle Code ReviewPre-commit review: security scan, quality gates, auto-fix.
Audited -
undermybelt Bundle Bounty Scope Source AuditUse when auditing bounty scope CSVs, public source repos, or no-account bounty surfaces such as exposed RPC/API services; also use for HackerOne-style reports, weakness classification, and PoC zip attachments.
Audited -
undermybelt Skill Ecc Quarkus VerificationVerification loop for Quarkus projects: build, static analysis, tests with coverage, security scans, native compilation, and diff review before release or PR.
-
undermybelt Skill Ecc Quality NonconformanceCodified expertise for quality control, non-conformance investigation, root cause analysis, corrective action, and supplier quality management in regulated manufacturing. Informed by quality engineers with 15+ years experience across FDA, IATF 16949, and AS9100 environments. Includes NCR lifecycle management, CAPA systems, SPC interpretation, and audit methodology. Use when investigating non-conformances, performing root cause analysis, managing CAPAs, interpreting SPC data, or handling supplier quality issues.
Audited -
undermybelt Skill Ecc Security Bounty HunterHunt for exploitable, bounty-worthy security issues in repositories. Focuses on remotely reachable vulnerabilities that qualify for real reports instead of noisy local-only findings.
-
ferroxlabs Bundle Blockchain Security AuditorSmart contract security auditing methodology covering vulnerability classification (reentrancy, flash loan attacks, oracle manipulation, access control), automated and manual review techniques, audit report writing, tool proficiency (Slither, Mythril, Echidna), and remediation guidance for EVM-compatible chains. Use when the user asks about blockchain security auditor, related techniques, best practices, or needs guidance in this domain. Do NOT use when the request is outside the scope of blockchain security auditor or requires a different specialized skill.
37 -
ferroxlabs Bundle Digital Literacy AssessmentEvaluate proficiency with digital tools, online security practices, digital communication effectiveness, and productivity technology to identify skill gaps and learning priorities Use when the user asks about digital literacy assessment, related techniques, best practices, or needs guidance in this domain. Do NOT use when the request is outside the scope of digital literacy assessment or requires a different specialized skill.
37 -
ferroxlabs Bundle Security Incident ResponderSecurity incident response expertise covering NIST incident response lifecycle, containment strategies, evidence preservation, forensic analysis basics, communication templates, post-incident review, incident classification and severity levels, and playbook creation for handling security incidents efficiently and effectively. Use when the user asks about security incident responder, security incident responder best practices, or needs guidance on security incident responder implementation. Do NOT use when the user needs a different specialized skill or is asking about an unrelated technology domain.
37 -
ferroxlabs Bundle Security Posture AssessmentComprehensive security posture evaluation covering vulnerability management, access controls, policy compliance, incident readiness, and security culture to produce an actionable security scorecard. Use when the user asks about security posture assessment, related techniques, best practices, or needs guidance in this domain. Do NOT use when the request is outside the scope of security posture assessment or requires a different specialized skill.
37 -
ferroxlabs Bundle Compliance Checklist BuilderBuilds a business compliance self-audit checklist organized by category (registration, tax, employment, industry-specific, data privacy, insurance) based on the user's business type, size, and location. Produces a prioritized checklist with deadlines, responsible parties, and resources for verification. Use when the user is starting a business and wants to know what compliance requirements apply, wants to audit their current compliance status, or needs to prepare for a compliance review. Do NOT use for tax preparation, regulatory filing, legal compliance certification, or industry-specific regulatory guidance requiring specialized expertise.
37 -
ferroxlabs Bundle Cybersecurity Awareness TestPractical cybersecurity awareness assessment covering phishing recognition, password hygiene, social engineering awareness, device security, incident reporting, and producing a personalized security improvement plan. Use when the user asks about cybersecurity awareness test, related techniques, best practices, or needs guidance in this domain. Do NOT use when the request is outside the scope of cybersecurity awareness test or requires a different specialized skill.
Audited 37 -
ferroxlabs Bundle Architecture Review ChecklistSystematic software architecture assessment evaluating scalability, maintainability, security, cost efficiency, and documentation quality to produce a structured architecture scorecard. Use when the user asks about architecture review checklist, related techniques, best practices, or needs guidance in this domain. Do NOT use when the request is outside the scope of architecture review checklist or requires a different specialized skill.
37 -
ferroxlabs Bundle Video Production Quality AuditComprehensive video production evaluation assessing technical quality, storytelling effectiveness, editing proficiency, and production value. Produces a scored audit with specific recommendations for improving video content across any platform or purpose. Use when the user asks about video production quality audit, related techniques, best practices, or needs guidance in this domain. Do NOT use when the request is outside the scope of video production quality audit or requires a different specialized skill.
37 -
ferroxlabs Bundle Healthcare Compliance NavigatorNavigate HIPAA fundamentals, healthcare regulations, audit preparation, and compliance training to maintain regulatory adherence in healthcare organizations. Use when the user asks about healthcare compliance navigator, related techniques, best practices, or needs guidance in this domain. Do NOT use when the request is outside the scope of healthcare compliance navigator or requires a different specialized skill.
37 -
ferroxlabs Bundle Relationship Communication AuditProvides a self-reflection framework for assessing personal communication patterns in relationships. Produces structured self-assessments with pattern identification, strength recognition, and specific improvement actions. This is a self-reflection tool, not a diagnostic instrument. Use when the user wants to reflect on their communication patterns, identify areas for improvement, or audit how they communicate in their relationships. Do NOT use for diagnosing communication disorders, assessing relationship health, or replacing couples therapy.
37 -
paulasilvatech Skill Ef CoreReview or design Entity Framework Core data access using DbContext, entity mapping, LINQ queries, migrations, change tracking, performance, security, and tests. Use when the user asks for EF Core best practices, Entity Framework Core code review, query optimization, migration guidance, or database access improvements in .NET.
Audited -
undermybelt Skill Ecc Springboot VerificationVerification loop for Spring Boot projects: build, static analysis, tests with coverage, security scans, and diff review before release or PR.
-
undermybelt Skill Skill YAML Audit FixUse when auditing Hermes SKILL.md files for YAML/frontmatter breakage and repairing invalid frontmatter safely at scale.
Audited -
undermybelt Skill Ecc Healthcare Phi ComplianceProtected Health Information (PHI) and Personally Identifiable Information (PII) compliance patterns for healthcare applications. Covers data classification, access control, audit trails, encryption, and common leak vectors.
-
undermybelt Skill Ecc Network Config ValidationPre-deployment checks for router and switch configuration, including dangerous commands, duplicate addresses, subnet overlaps, stale references, management-plane risk, and IOS-style security hygiene.
-
undermybelt Bundle Infrst NessusTenable Nessus is the industry-leading vulnerability scanner used to identify security weaknesses across network infrastructure including servers, workstations, network devices, and operating systems.
-
undermybelt Bundle Web App Pntrtn TestPerforms systematic security testing of web applications following the OWASP Web Security Testing Guide (WSTG) methodology to identify vulnerabilities in authentication, authorization, input validation, session management, and business logic. The tester uses Burp Suite as the primary interception proxy alongside manual testing techniques to find flaws that automated scanners miss. Activates for requests involving web app pentest, OWASP testing, application security assessment, or web vulnerability testing.
-
undermybelt Bundle Scada Hmi Sec AssssmPerform security assessments of SCADA Human-Machine Interface (HMI) systems to identify vulnerabilities in web-based HMIs, thin-client configurations, authentication mechanisms, and communication channels between HMI and PLCs, aligned with IEC 62443 and NIST SP 800-82 guidelines.
-
undermybelt Bundle Fileless Malware TchnqsDetects and analyzes fileless malware that operates entirely in memory using PowerShell, WMI, .NET reflection, registry-resident payloads, and living-off-the-land binaries (LOLBins) without writing traditional executable files to disk. Activates for requests involving fileless threat detection, in-memory malware investigation, LOLBin abuse analysis, or WMI persistence examination.
Audited -
undermybelt Bundle S7comm Protocol Sec AnaPerform security analysis of Siemens S7comm and S7CommPlus protocols used by SIMATIC S7 PLCs to identify vulnerabilities including replay attacks, integrity bypass, unauthorized CPU stop commands, and program download manipulation exploiting weaknesses in S7-300, S7-400, S7-1200, and S7-1500 controllers.
-
undermybelt Bundle API Rate Limiting BypassTests API rate limiting implementations for bypass vulnerabilities by manipulating request headers, IP addresses, HTTP methods, API versions, and encoding schemes to circumvent request throttling controls. The tester identifies rate limit headers, determines enforcement mechanisms, and attempts bypasses including X-Forwarded-For spoofing, parameter pollution, case variation, and endpoint path manipulation. Maps to OWASP API4:2023 Unrestricted Resource Consumption. Activates for requests involving rate limit bypass, API throttling evasion, brute force protection testing, or API abuse prevention assessment.
-
undermybelt Bundle Nerc Cip Cmplnc ControlsThis skill covers implementing North American Electric Reliability Corporation Critical Infrastructure Protection (NERC CIP) compliance controls for Bulk Electric System (BES) cyber systems. It addresses asset categorization (CIP-002), electronic security perimeters (CIP-005), system security management (CIP-007), configuration management (CIP-010), supply chain risk management (CIP-013), and the 2025 updates including mandatory MFA for remote access and expanded low-impact asset requirements.
-
undermybelt Bundle Power Grid Cybrsc AssssmThis skill covers conducting cybersecurity assessments of electric power grid infrastructure including generation facilities, transmission substations, distribution systems, and energy management system (EMS) control centers. It addresses NERC CIP compliance verification, substation automation security, IEC 61850 protocol analysis, synchrophasor (PMU) network security, and the unique threat landscape targeting power grid operations as demonstrated by Industroyer/CrashOverride and related attacks.
-
undermybelt Bundle Prrtzn Vulns Cvss ScorinThe Common Vulnerability Scoring System (CVSS) is the industry standard framework maintained by FIRST (Forum of Incident Response and Security Teams) for assessing vulnerability severity. CVSS v4.0 (r
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include gws-admin-reports, audit-reference-originality, brief. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.