Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
leadmagic Bundle Soc2 ComplianceAchieve SOC2 Type II compliance for SaaS companies — readiness assessment, control implementation, auditor selection, evidence collection, and ongoing monitoring. Use when preparing for SOC2, responding to enterprise security questionnaires, or building a compliance program. Triggers on: "SOC2", "SOC 2", "compliance", "security audit", "enterprise security", "security questionnaire", "Type II", or any request about security compliance for SaaS.
-
tcuzzo Skill Seam EngineeringUse when repairing a bug or closing out an audit or bug hunt. Fixes the flaw class once at its shared primitive, sweeps every sibling, lands a guard that catches the next instance, and closes every surfaced finding — no silent deferrals. Trigger words: seam, class fix, whole-seam closure, point patch, structural guard, do it right the first time.
Audited -
harzva Bundle Ieee WritingDraft, rewrite, and audit IEEE journal manuscripts via compact suite fragments for journals, components, evidence, structure, and official-source checks.
-
harzva Bundle Ieee CitationAudit IEEE citations, reference integrity, missing related work, and bibliography consistency without fabricating sources.
-
harzva Bundle Elsevier WritingDraft, rewrite, and audit Elsevier journal manuscripts via compact suite fragments for journals, components, evidence, structure, and official-source checks.
-
harzva Bundle Elsevier CitationAudit Elsevier citations, reference integrity, missing related work, and bibliography consistency without fabricating sources.
-
harzva Bundle Elsevier HighlightsCreate and audit Elsevier Highlights, graphical-abstract briefs, and short submission assets with Guide-for-Authors verification reminders.
-
harzva Bundle Tifs WritingIEEE TIFS: information forensics, security, privacy, biometrics, trustworthy media.
-
harzva Bundle Ieee Copyright LicenseIEEE Copyright License: copyright, license options, figure/table reuse permissions, and rights-risk audit.
-
harzva Bundle Ieee Editorial ScreeningIEEE Editorial Screening: desk-rejection risk, scope fit, novelty, formatting, ethics, and completeness audit.
-
harzva Bundle Ieee Latex Source PackageIEEE Latex Source Package: LaTeX source package, class/style files, BibTeX, figures, and compilation-risk audit.
-
harzva Bundle Ieee Latex Template AuditIEEE LaTeX Template Audit: IEEE template-readiness, source package hygiene, equations, captions, and references.
-
harzva Bundle Ieee Official Source AuditIEEE Official Source Audit: mapping workflow rules to IEEE Author Center, target-publication instructions, templates, style manuals, and policy checkpoints before making submission-readiness claims.
-
harzva Bundle Ieee Reproducibility CheckIEEE Reproducibility Check: pre-submission reproducibility and evidence audit.
-
harzva Bundle Elsevier Copyright LicenseElsevier Copyright License: copyright, license options, figure/table reuse permissions, and rights-risk audit.
-
harzva Bundle Ieee Preprint Prior PublicationIEEE Preprint Prior Publication: preprint status, prior conference version disclosure, simultaneous submission, and overlap audit.
-
harzva Bundle Elsevier Editorial ScreeningElsevier Editorial Screening: desk-rejection risk, journal scope, novelty, completeness, ethics, and submission-package audit.
-
harzva Bundle Elsevier Latex Template AuditElsevier LaTeX Template Audit: elsarticle-style source package, references, highlights, graphical abstract, and submission files.
-
harzva Bundle Elsevier Official Source AuditElsevier Official Source Audit: mapping workflow rules to Elsevier Guide for Authors, target journal instructions, LaTeX/source-package guidance, Highlights, Graphical Abstract, declarations, and GenAI policy checkpoints before making submission-readiness claims.
-
neuralblitz Bundle CybersecuritySecurity principles, threat detection, and defensive strategies
1 -
neuralblitz Skill Adversarial MlAdversarial machine learning, robustness, and security in ML
Audited 1 -
neuralblitz Skill Hardware SecurityHardware security, side-channel attacks, and secure processor design
Audited 1 -
neuralblitz Skill Zero TrustExpert guidance on implementing zero trust security architectures where no user, device, or network segment is implicitly trusted. Use for continuous verification of identity, device health, and context for every access request, microsegmentation of networks, policy-based access control, and migrating from perimeter-based security to zero trust.
1 -
davekilleen Skill Process AuditUse when an operational process needs its start, end, owner, outcome, representative sample, measured queues or handoffs, bottleneck evidence, or controlled improvement experiment made explicit.
-
davekilleen Skill Design System AuditUse when assessing use of named design-system components or tokens across a defined sample of product artifacts, including adoption and deviation questions.
-
quantumquirkxyz Skill Web3 L2 ScalingAnalyse Layer-2 scaling solutions — Rollups (optimistic, ZK), validiums, state channels — with security assumptions, data availability, and cost trade-offs.
-
quantumquirkxyz Skill Iot EmbeddedDesign embedded/IoT systems — firmware, sensors, edge computing, device connectivity, OTA updates — with reliability, security, and constrained resource awareness.
-
quantumquirkxyz Skill Math CryptographyAnalyse cryptographic constructions — symmetric, asymmetric, hashing, MACs, zero-knowledge — with security reductions, hardness assumptions, and attack analysis.
-
quantumquirkxyz Skill Sec Security AuditAudit software/security posture — code review, dependency scanning, secret detection, access control, audit logging — with explicit findings and remediation priorities.
-
quantumquirkxyz Skill Sec Threat ModelingDesign and document threat models for software / systems — assets, threats, vulnerabilities, mitigations — using STRIDE or ATT&CK frameworks.
-
quantumquirkxyz Skill Web3 Smart ContractsDesign and review smart contracts — security, gas optimization, upgradeability, access control — with an adversarial review step.
-
quantumquirkxyz Skill NetworkingDesign and analyze network infrastructure — TCP/IP, routing, DNS, load balancing, firewalls, VPNs, network security — with explicit assumptions about latency, bandwidth, and failure modes.
-
quantumquirkxyz Skill Skill AuditAudit the Skills bundle, lockfile, symlink parity, and contract drift — with actionable maintenance output.
-
quantumquirkxyz Skill QA Security TestingTest security posture — auth flows, authorization boundaries, injection paths, session handling, and misconfiguration checks — with adversarial scenarios.
-
quantumquirkxyz Skill Networking SecurityDesign network security — segmentation, firewalls, VPNs, TLS, authentication, and threat boundaries — with explicit trust zones.
-
fusengine Skill CommitSmart conventional commit with security validation, branch flow enforcement, and auto-detection. Use when committing changes, saving work, staging and committing, or choosing a conventional commit message.
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include zero-trust, soc2-compliance, seam-engineering. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.