Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
rweisssieker-xp Bundle Risk Compliance IntelligenceIdentify, categorize and prioritize enterprise risks, compliance gaps, control weaknesses, audit topics, evidence needs and countermeasures. Use for risk reviews, audit preparation and compliance intelligence. Use when the user needs risk compliance intelligence for CIO decision support.
-
rweisssieker-xp Bundle Security Business TranslatorTranslate security findings, vulnerabilities, identity gaps, incidents and maturity issues into business impact, executive decisions, budget needs and risk trade-offs. Use when the user needs security business translator for CIO decision support.
-
rweisssieker-xp Bundle Executive Dissent SynthesizerSynthesize constructive CFO, CISO, COO, Audit, architecture and customer dissent before decisions are approved. Use when the user needs executive dissent synthesizer for CIO decision support.
-
rweisssieker-xp Bundle Executive Narrative GeneratorGenerate concise board, CEO, CFO, CISO/Audit and customer narratives from a decision packet or operating review. Use when the user needs executive narrative generator for CIO decision support.
-
rweisssieker-xp Bundle It Ot Production Risk CommandMap IT/OT, shopfloor, ERP, MES, integration, network, security and production-continuity risks into executive risk chains and action gates. Use when the user needs it ot production risk command for CIO decision support.
-
rweisssieker-xp Bundle Industrial Cio Operating SystemRun a manufacturing, industrial, medtech or regulated-production CIO operating review across IT, OT, ERP, MES, QMS, PLM, security, production continuity, audit evidence, vendors and digital channels. Use when the user needs industrial cio operating system for CIO decision support.
-
rweisssieker-xp Bundle Cyber Business Impact TranslatorTranslate security, IAM, vulnerability, breach and control signals into business impact, executive decisions and risk acceptance choices. Use when the user needs cyber business impact translator for CIO decision support.
-
rweisssieker-xp Bundle Autonomous Due Diligence QuestionsGenerate targeted due-diligence questions for board, vendor, crisis, audit, transformation, AI and carve-out reviews. Use when the user needs autonomous due diligence questions for CIO decision support.
-
rweisssieker-xp Bundle Architecture Data Security IntelligenceAnalyze enterprise architecture, system landscapes, technical debt, redundancy, data quality, data flows, critical assets and security risks. Use for CIO, CISO and enterprise architecture decisions. Use when the user needs architecture data security intelligence for CIO decision support.
-
cbrock84 Skill TaxStructures the tax questions a growing business faces — corporate income, sales and use, payroll, nexus, and the obligations created by hiring or selling somewhere new. Use this to work out what a new state or country obligates you to, prepare for a tax filing or audit, understand sales tax on your product, or check what a remote hire or new market triggers.
Audited -
cbrock84 Skill Enterprise RiskIdentifies, assesses, and tracks organizational risk — building and maintaining a risk register, scoring exposure, assigning owners and treatments, and preparing for audit. Use this to stand up a risk program, assess the risk in a decision or initiative, prepare for a certification or audit, decide whether a risk should be accepted, mitigated, transferred, or avoided, or report risk posture to leadership.
Audited -
cbrock84 Skill Incident ResponseRuns a security incident from detection to closure — triage, containment, investigation, communication, and the review afterward. Use this when a compromise is suspected or confirmed, when preparing an incident response plan or running an exercise, when deciding whether something is an incident, or when a breach may trigger notification obligations.
Audited -
marucie Skill Industry ForcesPerform Five Forces analysis — competitive rivalry, supplier power, buyer power, threat of substitutes, and threat of new entrants. Use when analyzing industry dynamics, assessing competitive forces, or evaluating market attractiveness.
-
marucie Skill ObservabilityUse when adding structured logging, instrumenting Prometheus metrics, wiring up distributed tracing with OpenTelemetry, writing alerting rules, defining SLOs and error budgets, or building a Grafana golden-signals dashboard.
-
marucie Skill Ft Internal AuditUse when: user needs internal control evaluation, process audit, fraud detection, COSO framework application, or audit workpaper preparation. Trigger: '内部审计', '内控', '舞弊', 'COSO', '审计底稿', '职责分离', '控制缺陷'. NOT for: external audit (CPA statutory audit) or financial statement audit opinion — those require registered CPA.
-
marucie Skill Ft Compliance AuditorUse when: risk identification, compliance checking, Golden Tax IV alerts, audit preparation, internal control review. Trigger: 合规, 风险, 稽查, 预警, 金税四期, 内控, 质检. NOT for: external audit opinions, legal proceedings.
-
marucie Skill Spellbook Security Auditor Quality GateQuality Gate Workflow
-
marucie Skill Spellbook Security Auditor Scope ContractScope Contract Workflow
-
marucie Skill Spellbook Security Auditor Delivery ReviewDelivery Review Workflow
-
iblai Skill Iblai API LoginConnect an ibl.ai organization for API access. Gets the user signed in (ibl.ai/join if new, login.iblai.app/me if returning), captures their org key and username, mints a Platform API Token, and writes IBLAI_ORG / IBLAI_USERNAME / IBLAI_API_KEY to .env and PLATFORM / TOKEN / IBLAI_USERNAME to iblai.env (the same values under the names each skill family uses). If you already hold org credentials (key + secret), the secret works directly as the Api-Token — no browser needed. Run this first before any other iblai-* skill.
-
iblai Bundle Iblai Vibe DeslopAudit and harden existing codebases (especially AI-generated / vibe-coded ones) for production readiness. Use when the user asks to review, audit, clean up, harden, deslop, refactor, or fix quality issues across an existing codebase. Works in two phases — first a thorough multi-pass audit written to a structured file, then systematic fixes applied in safety-tiered order. Language-agnostic. Does NOT change business logic — only hardens, cleans, and robustifies.
-
iblai Skill Iblai API TokenManage an organization's Platform API Tokens via the platform API — list, create (secret shown once), and delete Api-Tokens by name. Use when issuing or rotating the keys that authenticate ibl.ai API access.
-
etanhey Bundle CoderabbitReview changes and handle CodeRabbit/Greptile/Bugbot/GitHub feedback. Triggers: review, comments, security.
-
etanhey Bundle Skill CreatorCreate/edit/audit/eval golem skills. Triggers: create skill, skill eval, live eval, JSONL mining.
-
etanhey Bundle Github ResearchAudit unfamiliar repos: architecture, features, config gaps. Triggers: unfamiliar repo audit. NOT catchup.
-
etanhey Bundle Shell HardeningBash security checklist: injection, set -euo, printf, quoting. Triggers: shell hardening, bash security.
-
etanhey Bundle Convention AuditAudit code for duplicated ownership, uncoordinated implementations, multiple writers, split lifecycle controls, live-copy drift, or missing single sources of truth. NOT for generic lint, style, security, or architectural research audits.
-
etanhey Bundle Pane Liveness CheckAudit cmux panes for claim-or-close. Triggers: sprint close-out, idle workers, dead shells, uncommitted or unpushed artifacts, untitled seats, stale numeric surface refs.
-
etanhey Bundle Ultracode Depth GateWorkflow depth-floor gate. Triggers: ultracode, exhaustive audit, deep fan-out, workflow topology, persistent collab.
-
etanhey Bundle Conference RecruitingMine a conference for hiring targets and matching jobs. Triggers: tech or security conference, Hackers Summer Camp, BSides, Black Hat, DEF CON, conference sponsors, exhibitors, speakers. NOT for general job search or LinkedIn post drafting.
-
etanhey Bundle Launchd Secret LinterLint launchd plists for hardcoded secrets. Triggers: launchd plist, LaunchAgents, plist secret, raw API key in plist, secrets hygiene, op:// reference.
-
etanhey Bundle Architectural Conformance AuditPre-R0 diff of implementation vs SOTA research. Triggers: before R0, architectural audit. NOT per-PR review.
-
qa-aman Skill UX AuditAudit a user flow for friction and drop-off points. Use when the user says "UX audit", "audit this flow", "where are users dropping off", "why isn't this converting", "review the onboarding", "usability audit", "what's causing friction", "user journey review", or wants to identify why users struggle with a flow - even if they don't explicitly say "UX audit".
-
qa-aman Skill Vuln ReportWrite a vulnerability report. Use when the user says "vulnerability report", "vuln report", "security finding", "write up this finding", "pentest finding", "bug bounty report", "security disclosure", "CVE writeup", "document this vulnerability", "how to report a security issue", or needs to formally document a security vulnerability with evidence, impact, and remediation guidance - even if they don't explicitly say "report".
-
cbrock84 Skill It Asset ManagementTracks hardware and software assets through their life — procurement, ownership, licensing, refresh, and disposal. Use this to build an asset register, prepare for a software audit, plan a refresh cycle, control license spend, or dispose of equipment safely.
Audited -
cbrock84 Skill Vulnerability ManagementRuns the loop from discovering a weakness to confirming it is fixed — scanning, triage, prioritization by real exploitability, remediation tracking, and patch policy. Use this to stand up or fix a vulnerability program, triage scanner output, decide what to fix first, set patch SLAs, handle a disclosure from an outside researcher, or report posture to leadership.
Audited
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include risk-compliance-intelligence, security-business-translator, executive-dissent-synthesizer. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.