agentsclimarketplace

Security

7,261 rows, by stacks then stars

772 of these skill files have been read, by 666 distinct authors, and what they tell an agent counted. What Security authors agree on, and what they forbid

  • Anthropic sdk security scan

    Dolphinllc/claude-security-skills/skills/defensive/genai/anthropic-sdk-security-scan Skill

    1 repo

    Defensive security skills for Claude Code and the Claude Agent SDK — web applications and generative AI systems.

  • Skill security vulnerability management

    zavora-ai/skill-security-vulnerability-management Skill

    no license1

    Security vulnerability skill — CVE search, dependency audit, risk scoring, remediation plans

  • Github actions security review

    Fyzel/claude-skills/skills/github-actions-security-review Skill

    1 repo

    A collection of Claude skills.

  • Angular security

    hlsitechio/claude-skills-security/appsec-stack-pack/angular-security Skill

    1 repo

    Defensive security audit skills for Claude — tech-stack-keyed and audit-domain-keyed packs for SaaS apps.

  • Kage

    skshadan/kage/skills/kage Skill

    no license1 repo

    A Claude Code plugin that runs a full pentest engagement from inside your coding agent. Point it at a target and it works through recon, deep testing, exploit verification, chain-building, judging, and writes audit report.

  • Vault init

    hootbu/llm-wiki-mind/skills/vault-init Skill

    1 repo

    Persistent Obsidian wiki pattern for LLM agents: starter template + init script + Claude Code skills for continuous, cumulative knowledge archives.

  • Advisories

    ecosyste-ms/skills/skills/advisories Skill

    1 repo

    Claude Code skills for querying the ecosyste.ms APIs

  • Audit

    Laucked-Security/claude-oswe/skills/audit Skill

    1 repo

    White-box, OSWE-style security audit for Claude Code: traces source→sink, chains findings to unauthenticated RCE, verifies each chain, and writes an evidence-backed Markdown + HTML report. PHP · Node · Python · Java · .NET.

  • Prompt injection guard

    kauaim/skills/prompt-injection-guard Skill

    no license1 repo

    Free, open-source skills for Claude Code and Claude Desktop — starting with a prompt-injection guard for safely ingesting untrusted documents.

  • Node aws security audit

    Grenguar/node-aws-security-audit Skill

    1

    Security audits for Node.js on AWS — NextJS, Lambda, ECS, API Gateway, IAM, and OWASP Top 10. Score 0-100 with remediation code.

  • Audit

    oktsec/audit Skill

    1

    Security audit for AI-built projects. 130+ checks across OWASP Top 10. Auto-detects stack, loads relevant checks, grades your project A-F with exact fixes.

  • Laravel prod ready

    meirdick/laravel-prod-ready/skills/laravel-prod-ready Skill

    1 repo

    Laravel production readiness audit skill — 6-dimension scored review (Security, Scalability, Reliability, Hardening, Code Quality, Ops) with actionable, copy-pasteable fixes. Works with Claude Code, Cursor, and other Agent Skills-compatible tools.

  • Smart contract analyzer

    mnedelchev-vn/solidity-claude-setup/.claude/skills/smart-contract-analyzer Skill

    1 repo

    Claude Code skills purpose-built for Solidity security auditing and protocol research.

  • Github manage security alerts

    Nick2bad4u/Github-Security-CodeScanning-Alerts-Skill/skills/github-manage-security-alerts Skill

    1 repo

    A Copilot / AI skill for managing GitHub Code Scanning, Security, Dependabot, etc alerts.

  • Openclaw vault

    AtlasPA/openclaw-vault Skill

    no license1

    Credential lifecycle security for OpenClaw workspaces. Audit exposure, inventory secrets, detect stale credentials. Free alert layer.

  • Prompt injection hardening

    anthalehq/anthale-agent-skills/skills/prompt-injection-hardening Skill

    1 repo

    Anthale's official AI agent security skills

  • Audit security

    designgrappler/agent-os/claude/skills/audit-security Skill

    1 repo

    Agent OS is a management layer for complex, multi-agent AI projects. Instead of letting agents get lost in endless conversational loops, it enforces a disciplined workflow: upfront planning, shared context, scoped work tracks, and strict quality gates — so every agent stays focused, coordinated, and aligned from start to finish.

  • Qa vibe test specialist

    moonki080/qa-vibe-test-specialist Skill

    1

    Run CSTS/ISTQB/ISO-aligned QA, tests, and remediation loops for vibe-coded AI software

  • Aos audit

    riz007/architect-os/skills/aos-audit Skill

    1 repo

    AI-native software engineering operating system for modern application architecture, scaffolding, and AI-assisted development.

  • MGC Script Execution

    zkeviny/MGC-Blackbox/mgc_skill/MGC_Script_Execution Skill

    no license1 repo

    A Safe Vault for AI Agents. No key exposure. Encrypted script execution — local or external.

  • Api security

    pop123-ux/agent-security-skills/skills/api-security Skill

    1 repo

    Production-grade security Agent Skills (SKILL.md) for Claude Code, Claude agents & OpenClaw: OWASP API Top 10 patterns + authentication/authorization patterns.

  • Production readiness audit

    P1tak4s/production-readiness-audit Skill

    1

    Claude Agent Skill: scan, review & harden codebases for production — security, reliability, testing, data/compliance, ops, accessibility. Includes a dependency-free scanner, deep checklists, and templates.

  • Seaworthy

    AmirHosein-Lotfi/Seaworthy/skills/seaworthy Skill

    1 repo

    Catches the exact security mistakes that have actually breached real AI-built apps, before you deploy.

  • Pre deploy security review pl

    GeorgeMJZak/before-you-deploy/skills/pre-deploy-security-review-pl Skill

    1 repo

    A pre-deploy security review skill for any AI agent (Claude, Codex, Gemini). Runs the 'Before You Deploy Your Vibe-Coded App' 8-category review on your real code.

  • Pg extension lab

    ysys143/pg-extension-lab/skills/pg-extension-lab Skill

    1 repo

    A harness for testing, benchmarking, and tuning PostgreSQL extensions in an isolated, reproducible environment.

  • Vault keeper zy

    Freedomzyi/vault-keeper-zy Skill

    no license1

    🤖 AI 驱动的 Obsidian 知识库自动化管家 · Zettelkasten + PARA + 渐进摘要 · 零手动维护

  • Postgres auth security review

    maherukhislam/postgres-auth-security-review/skills/postgres-auth-security-review Skill

    1 repo

    An Agent Skill that reviews and writes PostgreSQL/Supabase authentication code against a researched set of common and uncommon security mistakes - before it ships.

  • Production agent design

    SuperLogicAI/production-agent-design Skill

    1

    Architect high-reliability, logic-driven AI agents for production.

  • Vault sync

    Mahermenix/vault-sync Skill

    1

    Your project's second mind — a Claude Code skill that turns every session into structured, linked Obsidian notes your AI can reference.

  • Ai security guard

    leksman/ai-security-guard Skill

    1

    Claude skill + drop-in code for hardening & auditing LLM features against prompt injection, privilege escalation, marker forgery, and data leaks

  • Vibe app security audit

    piyushomanwar16/vibe-app-security-audit/skills/vibe-app-security-audit Skill

    1 repo

    Agent skill: security audit & hardening for vibe-coded apps (5-phase loop: secrets, PII, pre-deploy, deep logic, attacker review).

  • Vault MCP

    Chill-AI-Space/vault-mcp/io.github.Chill-AI-Space/vault MCP server

    1 repo

    MCP server for credential isolation — bots use passwords and API keys without seeing them

  • Rag vault

    RobThePCGuy/rag-vault/io.github.RobThePCGuy/rag-vault MCP server

    no license1 repo

    Local RAG MCP server with hybrid search, PDF/DOCX support, and zero-config setup

  • Shrike Security

    Shrike-Security/shrike-mcp/io.github.Shrike-Security/shrike-mcp MCP server

    1 repo

    AI agent security scanner — prompt injection detection, SQL injection, PII isolation, threat intel.

  • Multi-workspace Slack MCP server with draft+confirm safety, vault auto-export, a

    adelaidasofia/slack-mcp/io.github.adelaidasofia/slack-mcp MCP server

    1 repo

    Multi-workspace Slack MCP server with draft+confirm safety, vault auto-export, and triple-mode…

  • Attack surface mcp server

    cyanheads/attack-surface-mcp-server/io.github.cyanheads/attack-surface-mcp-server MCP server

    1 repo

    Passive external attack-surface mapping: CT subdomains, DNS, TLS, HTTP posture, RDAP/WHOIS, Shodan.

  • Pentest mcp server

    cyanheads/pentest-mcp-server/io.github.cyanheads/pentest-mcp-server MCP server

    1 repo

    Offline methodology engine for authorized penetration testing, CTF, and security research.

  • Sanction

    ericlovold/sanction/io.github.ericlovold/sanction MCP server

    no license1 repo

    Authorize an AI agent's spend & credential use before it acts — budgets, encrypted vault, audit.

  • Base security scanner mcp

    lordbasilaiassistant-sudo/base-security-scanner-mcp/io.github.lordbasilaiassistant-sudo/base-security-scanner-mcp MCP server

    no license1 repo

    MCP server to scan smart contracts on Base for honeypots, rug pulls, and vulnerabilities.

  • PQC-Khepra MCP — CMMC Autopilot & AI Security Recorder

    nouchix/PQC-Khepra-MCP/io.github.nouchix/pqc-khepra-mcp MCP server

    no license1 repo

    Post-quantum CMMC compliance scanner & AI agent attestation. FIPS 140-3, ML-DSA-65, 36K+ mappings.

  • Arcwall security

    rom-baro/arcwall-mcp/io.github.rom-baro/arcwall-security MCP server

    no license1 repo

    Security scanning for AI coding tools. Detects secrets, threat models, and runs pre-commit checks.

  • Claude vault

    Runesmith-Studio/claude-vault Skill

    0

    Back up and migrate your Claude Code setup (~/.claude) safely across machines and accounts. Cross-platform, pure Python stdlib, MIT licensed.

  • Security code review

    PiyushSolanki038/security-code-review Skill

    0

    AI-powered security code review skill for Claude — finds SQLi, XSS, IDOR, auth bugs & more by reading your code, not payload lists

  • Skill

    mihailShumilov/solana-incident-response-skill/skill Skill

    0 repo

    Live security incident-response & war-room playbook skill for Solana (Solana AI Kit).

  • Security Expert

    x7dl8p/OpenSkill-Marketplace/skills/Security-Expert Skill

    no license0 repo

    A structured registry & a part of OpenSkills project, meant for reusable skill.md files to extend AI agents with deterministic, domain-specific capabilities.

  • Safedep

    safedep/skills/skills/safedep Skill

    0 repo

    SafeDep agent skills

  • Gatekeeper

    skyblueso/gatekeeper Skill

    0

    Security scanner for GitHub repos, MCP servers, AI agent packages, and local projects. One command. Any repo. Letter grade A through F.

  • Sast analysis

    reasonless-throne486/sast-skills/sast-files/.agents/skills/sast-analysis Skill

    0 repo

    Scan codebases for security flaws with LLM agent skills that turn Claude Code, Cursor, and other assistants into SAST scanners

  • Agent security boundary

    alinafe82/cognitive-deadlift/skills/agent-security-boundary Skill

    0 repo

    AI coding skills, hooks, and plugins that keep developers thinking instead of autopiloting

  • Skill

    grupomidiasystems/auditoria-seguranca-lovable-supabase/skill Skill

    no license0 repo

    Checklist público para auditoria de segurança em projetos Lovable + Supabase antes da publicação.

  • Account vault

    tga-cheetung/account-intelligence-vault/.claude/skills/account-vault Skill

    0 repo

    One markdown file per target account. Agents read it before every score, email, and call. Every signal compounds. Public Claude Code skill + heartbeat + per-account schema that mirrors your CRM.

  • Supabase owasp audit

    thiagoferal-ia/thiago-feral-skills/skills/supabase-owasp-audit Skill

    0 repo

    Hub de Skills Thiago Feral

  • Dependency risk audit

    SkillMedev/security-compliance-hardening/skills/dependency-risk-audit Skill

    0 repo

    Threat models, secure reviews, and compliance evidence — ship with confidence.

  • Claude

    giljr/claude Skill

    no license0

    Documenting discoveries, experiments, and lessons learned while pushing the boundaries of AI-assisted software development

  • Agent email patterns

    kumard3/lumbox-skills/agent-email-patterns Skill

    no license0 repo

    Official agent skills for Lumbox — email infrastructure for AI agents (inboxes, OTP extraction, send/reply via REST + MCP).

  • Secure development

    siam-hossain9/secure-development-skill/plugins/secure-development/skills/secure-development Skill

    0 repo

    Secure Development — a Claude Code skill: 23 security reference domains + a phase-by-phase secure build lifecycle (secure-by-design).

  • Vibeguard

    edilkoke/vibeguard Skill

    0

    Scans AI-generated Next.js + Supabase code for the 21 most common security holes (exposed secrets, broken access control, injection) and blocks them in CI.

  • Npm package release hardening

    SSBrouhard/npm-package-release-hardening Skill

    0

    An agent skill that hardens npm packages before public release — catches shipped secrets, runtime-floor mismatches, and tarball junk. Works in any skills-compatible agent.

  • Security audit

    ayman-benmada/owasp-security-audit/skills/security-audit Skill

    no license0 repo

    OWASP Top 10 (2025) security audit plugin for Claude Code and Cursor. Stack-aware scanning that produces a complete vulnerability report.

  • Fanout cve iteration loop

    omonuj/claude-horizon-skills/skills/fanout-cve-rollout/fanout-cve-iteration-loop Skill

    no license0 repo

    Claude Code Agent Skills for building, red-teaming and tuning agentic RL evaluation environments — a four-skill pattern (guardian, validation-debugger, score-tuner, iteration-loop) plus a 24-point adversarial reviewer.