Agent Skills·Category ·Security
Category · 5,020 skills

Security agent skills

Security-audit, secrets-handling, dependency-scanning, and secure-coding skills. Teach any agent to find and fix vulnerabilities and to respect your security posture.

Browse all 5,020 Security skills →

Security
Anthropic-Cybersecurity-Skills
753+ structured cybersecurity skills mapped to MITRE ATT&CK. 4k+ stars.
hermesawesome-hermes-skillsproductioncybersecurity
Security
x0x
Secure computer-to-computer networking for AI agents — gossip broadcast, direct messaging, CRDTs, group encryption. Post-quantum encrypted, NAT-traversing. E...
openclawnetworkingencryptioncrdt
Security
defi-onchain-analytics
Use when profiling wallets, analyzing protocols or pools, inspecting token metrics, evaluating DEX liquidity or LP/vault performance, reading smart contract state, resolving proxy …
opencodeai-agent-skillblockchain-analyticsclaude-code-skill
Security
skills-keys
Manage API keys for the runner's --execute layer. CRUD on ~/.skills.env (chmod 600): list / add / update / remove / enable / disable gate flags / verify (ping vendor APIs) / export…
claude-codecodexcursorgemini-cliai:claudeai:geminiapi-keys
Security
safe-exec
Safe command execution for OpenClaw Agents with automatic danger pattern detection, risk assessment, user approval workflow, and audit logging. Use when agents need to execute shel…
claude-codecodexcursorgemini-clicommand-executionrisk-assessmentaudit-logging
Security
truthfinder
Always-active web search safety skill. Classifies every website into SAFE, CAUTION, RISKY, or BLOCKED before reading or citing it. Reads and evaluates real user reviews and feedbac…
claude-codecodexcursorgemini-clitype:reviewweb-searchsafety
Security
cyber-risk-modeling
Quantify cyber risk using FAIR methodology with Monte Carlo simulation, assess control effectiveness against NIST CSF/CIS/ISO 27001 frameworks, evaluate risk appetite alignment, an…
claude-codecodexcursorgemini-clifairriskmonte-carlo
Security
audit-trail-protokoll
Maintains an immutable audit trail logging every review run, prompt change, reviewer sign-off, cache hit, and hash verification. Records timestamp, action, responsible party, cube …
claude-codecodexcursorgemini-clitype:audittype:reviewaudit-log
Security
cyber-incident-response-72h
Structured immediate response for active cyber incidents — hacker attacks, ransomware, data exfiltration, insider threats. Phase 1: immediate containment, network isolation, forens…
claude-codecodexcursorgemini-cliincident-responsegdprforensics
Security
ovhcloud-live-kms-key-destruction-guard
Gate and audit OVHcloud KMS key version destruction requests by enforcing five mandatory checks: confirmed key ID and KMS service URN, named approving identity, usage audit confirm…
claude-codecodexcursorgemini-clitype:auditovhcloudkms
Security
hack-review
Performs a scoped, coverage-led review of a working tree, staged diff, commit range, branch diff, PR, or suspicious implementation to identify hack-like risks such as impossible-st…
claude-codecodexcursorgemini-clitype:audittype:reviewcode-review
Security
gcp-live-kms-key-destruction-guard
Gate Cloud KMS key version destruction and key ring deletion against a complete CMEK dependency audit. All Cloud SQL, GCS, BigQuery, Compute Engine disk, and Secret Manager resourc…
claude-codecodexcursorgemini-clicloud:gcptype:auditgcp
Security
cilium-network-policy-review
Use this skill for Cilium network policy review across Kubernetes NetworkPolicy, CiliumNetworkPolicy, and CiliumClusterwideNetworkPolicy formats, including L7 policy via Envoy, Clu…
claude-codecodexcursorgemini-clitool:k8stype:reviewcilium
Security
ciphertext-recovery
ARM64 trace ciphertext recovery methodology. Use when given an ARM64 execution trace file and asked to reverse-engineer encryption, signature, or encoding algorithms from ciphertex…
claude-codecodexcursorgemini-cliarm64ciphertextcryptography
Security
pre-exec-check
Safety check before executing destructive or irreversible commands. Catches dangerous shell commands, risky git operations, secret exposure, and high-blast-radius actions before th…
claude-codecodexcursorgemini-clitype:reviewsafetyshell
Security
gcp-live-bigquery-dataset-deletion-guard
Gate BigQuery dataset deletion, table truncation, and authorized view changes against a full downstream dependency audit and export confirmation. Dataset deletion is immediate and …
claude-codecodexcursorgemini-clicloud:gcptype:auditgcp
Security
defi-risk-analysis
Analyze a DeFi protocol's risk profile across smart contract, off-chain, and track-record dimensions. Use when the user wants a risk analysis of a DeFi project, to check protocol s…
claude-codecodexcursorgemini-clidefirisk-analysissmart-contracts
Security
permission-set-groups-and-muting
Use when designing or reviewing permission-set-group architecture, including profile minimization, group composition, muting strategy, and migration from profile-heavy models. Trig…
claude-codecodexcursorgemini-clitype:reviewsalesforcepermission sets
Security
trustskills
Use this skill when a user wants a trust decision before installing from a skill URL, marketplace, or GitHub repo. It checks a compact allowlist of trusted distribution channels an…
claude-codecodexcursorgemini-clitrustallowlistpolicy
Security
gdpr-valid-consent
Guide for implementing GDPR-valid consent under Article 7 conditions and Article 4(11) definition. Covers five core requirements: freely given, specific, informed, unambiguous, and…
claude-codecodexcursorgemini-clitype:auditgdprprivacy
Security
cosmos-vulnerability-scanner
Scans Cosmos SDK blockchain modules and CosmWasm contracts for consensus-critical vulnerabilities including chain halts, fund loss, and state divergence. Covers 25 core, 16 IBC, 10…
claude-codecodexcursorgemini-clitype:audittype:integrationtype:review
Security
kev-watch
CISA + EU KEV (Known Exploited Vulnerabilities) catalog watch — pull recent KEV additions, intersect with installed dependencies, surface entries with imminent due dates. Use when …
claude-codecodexcursorgemini-clicisakevvulnerabilities
Security
cyber-essentials-plus-expert
UK NCSC Cyber Essentials Plus (CE+) v3.3 expert. Reference-depth framework plugin with assessment, scope determination, and evidence checklist — backed by the SCF crosswalk. Five c…
claude-codecodexcursorgemini-clicyber-essentialsncsccompliance
Security
fraud-detection
Analyze fraud detection systems including rule engines, ML scoring models, real-time transaction monitoring, alert triage workflows, false positive management, SAR/CTR regulatory r…
claude-codecodexcursorgemini-clifraudmlpayments
Security
semaphore-protocol
Guide for integrating Semaphore V4 zero-knowledge protocol. Use when developing anonymous voting systems, privacy-preserving authentication, ZK proofs, smart contracts with group m…
claude-codecodexcursorgemini-clitype:integrationsemaphorezk
Security
offensive-bluetooth-ble
Bluetooth Low Energy attack methodology covering GATT enumeration, unauthenticated characteristic access, pairing downgrade, LE Secure Connections bypass, active MITM relay, traffi…
claude-codecodexcursorgemini-clibluetoothblegatt
Security
warmup
Delivers a daily intelligence brief. CISO mode maps active threat actors to MITRE ATT&CK, tracks CVEs with exploitation status, and summarizes research from CrowdStrike, Palo Alto,…
claude-codecodexcursorgemini-clithreat-intelcvesecurity
Security
gcp-live-iam-policy-change-guard
Gate IAM binding mutations, org policy changes, and Service Account key creation against the GCP resource hierarchy. IAM bindings at org level propagate to all folders and projects…
claude-codecodexcursorgemini-clicloud:gcptype:auditgcp
Security
spam-word-checker
Always-on spam and deliverability guardrails for cold email copy. Apply when writing, reviewing, or QA-ing subject lines, openers, follow-ups, CTAs, or any cold outreach copy. Trig…
claude-codecodexcursorgemini-clitype:reviewspamemail
Security
agentprivacy-perimeter-hardening
Device security, OS hardening, network configuration, and physical security for privacy infrastructure. Activates when securing the execution environment beneath the cryptographic …
claude-codecodexcursorgemini-clihardeningossupply-chain
Security
detecting-ssl-cert-issues
Audits TLS certificate posture beyond handshake success: chain ordering, OCSP stapling, revocation status, Certificate Transparency logs, key-usage flags, and wildcard scope. Flags…
claude-codecodexcursorgemini-clitype:audittlsssl
Security
avv-eu-us-data-privacy-framework-bezug
Handles EU-US Data Privacy Framework (DPF) provisions in data processing agreements. Covers EU Commission adequacy decision of 10.07.2023, self-certification requirements, listing …
claude-codecodexcursorgemini-cligdprprivacydata-transfer
Security
guardiao
Reviews code security, architecture, incidents, and third-party dependencies to identify real vulnerabilities, exploitable weaknesses, supply-chain risk, and safe mitigations. Use …
claude-codecodexcursorgemini-clitype:audittype:reviewsecurity
Security
risk-management
Handles project risk identification, analysis, and response planning for software and systems projects. Covers probability-impact matrices, qualitative/quantitative analysis, Monte…
claude-codecodexcursorgemini-clitype:integrationriskfmea
Security
ki-rote-linien-art-5-pruefen
Screens for prohibited AI practices under Article 5 of the EU AI Act: subliminal influence, vulnerability exploitation, social scoring, real-time biometric identification in public…
claude-codecodexcursorgemini-cliai-actprohibitedcompliance
Security
sanktions-compliance-pruefung
Screening checklist for EU, OFAC, UK-HMT, and UN sanctions covering Russia, Belarus, Iran, North Korea, Syria, Venezuela, Cuba, listed persons and entities, asset freezes, embargoe…
claude-codecodexcursorgemini-clisanctionscomplianceofac
Security
agentprivacy-metadata-resistance
Traffic analysis resistance, timing obfuscation, and metadata stripping for privacy-focused operations. Activates when designing defences against metadata correlation, implementing…
claude-codecodexcursorgemini-climetadatamixnettraffic-analysis
Security
ki-haftung-und-versicherung
Analyzes liability for AI deployment covering provider and operator obligations under the EU AI Act, updated product liability rules, draft AI liability directive, and contractual …
claude-codecodexcursorgemini-cliai-actliabilityinsurance
Security
nis2
Advises on EU NIS2 Directive (2022/2555) compliance for essential and important entities, including entity classification, Article 21 risk management, Article 23 incident reporting…
claude-codecodexcursorgemini-clinis2eucompliance
Security
agentprivacy-nullifier-design
Nullifier construction, deployment, and verification for privacy-preserving invalidation. Activates when designing double-spend prevention, privacy-preserving revocation, unlinkabl…
claude-codecodexcursorgemini-clinullifierrevocationdouble-spend
Security
l5-red-team-auditor
Performs an uncompromising L5 Enterprise Red Team Audit on a given plugin against the 39-point architectural maturity matrix. Trigger when the user requests a security audit, red t…
claude-codecodexcursorgemini-clitype:audittype:reviewred-team
Security
owasp-mobile-security-checker
Perform security audits, vulnerability assessments, or compliance checks on Flutter or mobile applications. Covers OWASP Mobile Top 10 (2024) — hardcoded secrets, insecure storage,…
claude-codecodexcursorgemini-clifw:fluttertype:audittype:scanner
Security
avv-grenzpruefung-datenschutz
Defines the interface between data protection law and professional rules. Checks whether an Art. 28 GDPR processing agreement exists and clarifies that AVV review does not replace …
claude-codecodexcursorgemini-cligdprprivacylegal
Security
memory-load-check
Reviews PRs and diffs for unbounded memory loading, concurrency issues, oversized payloads, and missing pagination or byte caps. Apply during cleanup jobs, data imports, file parsi…
claude-codecodexcursorgemini-clitype:reviewmemorypr-review
Security
ki-hochrisiko-anhang-iii-pruefen
Evaluates high-risk AI systems under Annex III of the EU AI Act including biometrics, critical infrastructure, education, employment, service access, law enforcement, migration, ju…
claude-codecodexcursorgemini-cliai-acthigh-riskcompliance
Security
repo-first-defense
Defensive security audit for AI-native repositories. Activate before launching, merging, updating dependencies, migrating package managers, configuring AI agents, or when supply ch…
claude-codecodexcursorgemini-clilang:javascripttype:auditsecurity
Security
dpa-review
Review data processing agreements, DPAs, or supplier/customer addenda containing personal data transfers for compliance with Turkish KVKK, checking controller/processor roles, secu…
claude-codecodexcursorgemini-clitype:reviewkvkkdpa
Security
agentprivacy-witness
Privacy-Preserving Accountability Agent for 0xagentprivacy. Covers source protection architecture, verifiable evidence publication, breach documentation, whistleblower infrastructu…
claude-codecodexcursorgemini-cliwitnessaccountabilitywhistleblower
Security
cloud-act-und-drittstaat-pruefen
Checks foreign nexus of AI providers per relevant service provider regulations (BRAO, StBerG, WPO, PAO, BNotO). EU/EEA treated as equivalent; third countries require comparable pro…
claude-codecodexcursorgemini-clicompliancedata-protectioneu-law
Security
agentprivacy-personhood-sybil
Personhood verification and Sybil resistance for privacy systems. Activates when discussing ∃! (unique existence) binding, proof-of-personhood without identity disclosure, Sybil at…
claude-codecodexcursorgemini-clisybilpersonhoodbiometric
Security
aig-scanner
AI security scanner for infrastructure, AI tools/skills, agents, and LLM jailbreak evaluation using Tencent Zhuque Lab AI-Infra-Guard. Requires AIG_BASE_URL. Triggers on: scan AI s…
claude-codecodexcursorgemini-clilang:pythontype:audittype:scanner
Security
threat-modeling
Produce structured threat models for software systems using STRIDE on data flow diagrams. Generate DFDs with trust boundaries, identify threats per element, score risks, and define…
claude-codecodexcursorgemini-clistridedfdthreat-model
Security
owasp-security-scanner
Automated OWASP Top 10 vulnerability detection and assessment. Run OWASP ZAP automated scans, detect injection vulnerabilities, identify broken authentication patterns, check for s…
claude-codecodexcursorgemini-clitype:scannerzapautomated-scan
Security
permission-sets-vs-profiles
Use when designing or auditing access control—deciding between Profiles, Permission Sets, and Permission Set Groups. Triggers: 'user can't see field', 'too many profiles', 'permiss…
claude-codecodexcursorgemini-clitool:salesforcetype:auditsalesforce
Security
aussenwirtschaft-ofac-sdn-non-sdn
Guides intake, legal framework review, documentation assessment, risk flagging, record-keeping, approval, and follow-up steps for US sanctions lists including SDN, Non-SDN, and Fif…
claude-codecodexcursorgemini-cliofacsanctionssdn
Security
checking-owasp-compliance
Automatically identify potential security vulnerabilities based on the OWASP Top 10 (2021) list. Provides detailed analysis of compliance gaps and remediation guidance. Use when au…
claude-codecodexcursorgemini-clitype:auditowaspcompliance
Security
agentprivacy-vrc-identity
Verifiable Relationship Credential (VRC) identity system for 0xagentprivacy. Covers A(τ) bilateral trust, VRC issuance/verification/revocation, Relationship Proverb Protocol (RPP),…
claude-codecodexcursorgemini-clivrcidentityrpp
Security
reverse-apk
Automated reverse-engineering pipeline for Android APKs (Flutter and native). Performs tool preflight, pulls the app via adb, detects framework, runs the appropriate toolchain, and…
claude-codecodexcursorgemini-clifw:fluttertype:auditandroid
Security
vulniq
Autonomous security scanner that detects secrets, XSS, missing headers, auth flaws, OWASP Top 10 patterns, dependency issues, PII exposure, and CORS misconfigurations. Produces SAR…
claude-codecodexcursorgemini-clitype:audittype:reviewtype:scanner
Security
auth
Authentication and access control for Next.js 15 + Supabase applications. Handles user authentication, route protection, session management, role-based access control, and multi-te…
claude-codecodexcursorgemini-clicloud:supabasenextjssupabase

Showing the top 60 of 5,020. See the full list →