Security
7,261 rows, by stacks then stars
772 of these skill files have been read, by 666 distinct authors, and what they tell an agent counted. What Security authors agree on, and what they forbid
mouadja02/skills/skills/agent-design/agent-owasp-compliance Skill
no license9★ repoA curated collection of agent skills for your AI agents - engineering craft, prompt engineering, design, growth marketing, ...
itallstartedwithaidea/google-ads-gemini-extension/skills/security-auditor Skill
8★ repoGemini CLI extension for Google Ads management — campaign analysis, auditing, optimization skills and commands. Ported from production at googleadsagent.ai
oghie/skillsets/skills/android-offsec Skill
8★ repoMy personal collection of agent skills for software, security, product and research engineering. Runs on Claude (Claude Code), Codex, OpenCode, Antigravity (Gemini), and Hermes.
timwukp/agent-skills-best-practice/skills/skills/agentcore-harness-builder Skill
7★ repo35 portable agent skills (Agent Skills spec) for Kiro & Claude Code: Scrum DevSecOps roles, PCI-DSS/MAS TRM compliance, AWS Well-Architected reviews — each with evals and a 4-layer tested methodology
pinkpixel-dev/skills-collection-1/SKILLS/007 Skill
7★ repoPart 1 of a large AI and agent skills collection featuring 900+ reusable skill folders, prompt workflows, references, scripts, and assets across engineering, cloud, security, research, writing, design, and automation.
playbookTV/Ironclad/skills/auth-archon Skill
no license7★ repoAgent-agnostic operating procedures for reviewing, debugging, testing, refactoring, and hardening software.
CrashBytes/claude-role-skills/skills/infosec-engineer Skill
6★ repoClaude Code plugin with 7 role-based professional skills for software teams — Scrum Master, Product Owner, Product Manager, UX/UI Developer, InfoSec Engineer, DevOps Engineer, and Software Migration Engineer
jph4cks/redhound-arsenal/amass Skill
6★ repo76 AI-agent security skills for Kali Linux tools — pentest, red team, forensics, OSINT, and more. Machine-readable skill definitions by Red Hound InfoSec.
ranbot-ai/awesome-skills/skills/007 Skill
no license6★ repoAwesome Claude Skills, Tools for Customizing Claude AI workflows
lteawoo/skills/skills/auth-security-reviewer Skill
no license5★ repoA collection of practical AI agent skills for app development and code workflows.
Neetx/ai-security-research-radar/.claude/skills/radar-lab-sweep Skill
no license4★ repoAI Security Research Radar — AI for security and security for AI
prashantdivate/awesome-yocto-ai-agent-skills/yocto-agent-suite Skill
4★ repoClaude Agent Skills for Yocto Project, OpenEmbedded, and BitBake workflows - AI coding assistant skills for recipes, layers, images, BSPs, SDKs, metadata, QA, sstate, and build troubleshooting.
0xlayerghost/solidity-agent-kit/skills/defi-security Skill
4★ repoAgent skills for Solidity & DeFi development with Foundry. Security, testing, deployment — all in one kit.
ethanaubuchon/dossier-tradecraft/skills/capture-to-vault Skill
3★ repoClaude Code workflow recipes built on dossier-mcp — research → design → scope → decompose → implement as overridable slash commands and skills.
iwritec0de/app-dev/skills/auth-patterns Skill
3★ repoFull-stack Next.js development plugin for Claude Code
Olaradiallysymmetrical491/web3-bug-bounty-hunting-ai-skills/web3-bug-classes Skill
3★ repoEnable efficient smart contract bug bounty hunting with AI-powered skills built from thousands of real Immunefi and DeFiHack reports.
jayantak/vaultmem/skills/vault-capture Skill
3★ repoAgent memory over an Obsidian vault — bash + ripgrep, no database. A restricted-TOML vault registry, a curated Agent Index, a wikilink graph, and a Projects→Sessions lifecycle. Ships the vaultmem CLI + memory skills as a Claude Code plugin.
MCPower-Security/mcpower-proxy/io.github.ai-mcpower/mcpower-proxy MCP server
3★ repoSecurity proxy that wraps MCP servers with real-time monitoring and policy enforcement
zw008/VMware-NSX-Security/io.github.zw008/vmware-nsx-security MCP server
no license3★ repoVMware NSX security: DFW policies, security groups, tags, Traceflow, IDPS — 21 MCP tools.
bitwise-media-group/skills/plugins/actions/skills/actions-security Skill
2★ repoCoding agent marketplace for skills used by the BitWise Media Group.
graphlit/vault-sync/plugins/vault-sync/skills/vault-sync-use Skill
2★ repoSync Vault Git repositories to local Markdown for Claude Code, Codex, OpenClaw, Cursor, and other file-aware AI agents.
Mikacr1138/claude-bug-bounty/skills/bug-bounty Skill
2★ repoEnable efficient bug bounty hunting across Web2 and Web3 with a tool that supports full recon to detailed reporting.
Rootx202/appsec-skills/authentication-security Skill
no license2★ repoAppSec Skills — 15 plug-and-play Claude Code security skills that audit, harden, and fix any website or app before you ship it. OWASP Top 10, auth, API, database, frontend, backend, cloud, dependencies, secrets, and pentest-style checks — all defensive, all evidence-based.
MarieLynneBlock/arcanum-artifex/skills/agentic/agent-owasp-compliance Skill
no license2★ repoPrompts, skills, and agents that survive contact with real workflows. No vendor loyalty. Occasionally heretical. 🧙🏻♀️
mturac/hermes-supercode-skills/skills/auth-architect Skill
2★ repo⚡ 13 production-grade skills for Claude Code · db-whisperer, auth-architect, obs-guardian + 10 more · Zero config · MIT
jabez007/johnny-decimal-zettelkasten/.gemini/skills/librarian-vault-manager Skill
no license2★ repoThis project is a compounding knowledge system ("Second Brain") that manages multiple Obsidian vaults, combining Johnny Decimal for structural organization with Zettelkasten for emergent meaning, augmented by AI librarian agents for maintenance.
hackIDLE/skills/skills/mesh-security Skill
2★ repoSecurity-focused agent skills for service mesh analysis, compliance reporting, and remediation
takeaseatventure/devops-skills/skills/dockerfile-auditor Skill
no license2★ repoAgent skills that make Claude Code (and other AI coding agents) genuinely better at infrastructure, scheduling, and configuration work. Battle-tested, zero-dependency.
xAmirHamza77/PenKit51/assistant-skills/claude/penkit51-ai Skill
no license2★ repoPenKit51 — Open-source AI penetration testing platform with 63 deep exploitation skills, multi-agent orchestration, PoC-validated findings, and native assistant skills for Claude, ChatGPT, and Grok. Authorized testing only.
Pasta threat modeling framework
ivan-sincek/threat-modeling-agent-skills/json/pasta-threat-modeling-framework Skill
2★ repoEasy-to-use, high-quality threat modeling agent skills.
Pwnote/skills/skills/pwnote-cve-research Skill
2★ repoAI agent skills for Pwnote Pentest Notebook
DigitalPine/claude-skills/plugins/docker/skills/docker Skill
1★ repoCurated Claude Code plugins by Digital Pine. Framework setup, auditing, and modernization skills.
kalshamsi/claude-security-skills/skills/api-security-tester Skill
1★ repoProduction-ready security skills for Claude Code and compatible AI coding agents
Consultora-AMDT/claude-github-security-audit/es/github-security-audit Skill
1★ repoAudit a GitHub repository for risk before integrating it into your stack. Seven-dimension framework with weighted scoring and ADOPT/EVALUATE/CAUTION/AVOID verdict.
franzos/claude-plugins/plugins/forseti/skills/audit Skill
1★ repoClaude Code plugin marketplace: a set of domain experts (subagents) grouped into installable plugins.
arcjet/skills/arcjet Skill
1★ repoSkills to make your AI coding agent an Arcjet security expert.
Dolphinllc/claude-security-skills/skills/defensive/genai/langchain-security-scan Skill
1★ repoDefensive security skills for Claude Code and the Claude Agent SDK — web applications and generative AI systems.
amansingh909/claude-bounty-skills/skills/report-writer Skill
1★ repoClaude Code skills for bug bounty hunting and security-auditing web apps you own — recon, scope, report, triage, self-audit. Judgment, not tool wrappers.
hlsitechio/claude-skills-security/appsec-stack-pack/aws-lambda-security Skill
1★ repoDefensive security audit skills for Claude — tech-stack-keyed and audit-domain-keyed packs for SaaS apps.
hootbu/llm-wiki-mind/skills/vault-lint Skill
1★ repoPersistent Obsidian wiki pattern for LLM agents: starter template + init script + Claude Code skills for continuous, cumulative knowledge archives.
Thanasimos/Thanas-flare-builders-toolkit/audit-contract Skill
1★ repoComprehensive Claude Code skill bundle for Flare-family EVM development: chain registry, FTSO/FDC/FAssets/Smart Accounts protocols, Enosys + SparkDEX integrations, Flare-specific security overlays, and audit/gas/test workflows.
fullREFIT/skills/skills/1pw-env Skill
1★ repoPractical open-source agent skills with working examples, validation, and guides for first-time users and technical operators
mo-hawary/hawary-workflow-skills/skills/dependency-security-auditor Skill
1★ repoReusable Agent Skills for Codex, Claude, and AI coding agents
JPeetz/agent-skills/agentic-security-scanner Skill
no license1★ repoThe definitive collection of cross-platform Agent Skills. Compatible with Claude Code, Codex, Cursor, OpenClaw, Gemini CLI, Copilot, Hermes. Curated weekly. Higher quality than any alternative.
newmindsgroup/ai-agent-skills-library/dist/skills/007 Skill
1★ repoShared library of AI agent skills — works across Claude Code, Cursor, Codex, Windsurf, OpenCode, and Google Antigravity via a single universal installer.
pop123-ux/agent-security-skills/skills/secure-auth-patterns Skill
1★ repoProduction-grade security Agent Skills (SKILL.md) for Claude Code, Claude agents & OpenClaw: OWASP API Top 10 patterns + authentication/authorization patterns.
GeorgeMJZak/before-you-deploy/skills/pre-deploy-security-review Skill
1★ repoA pre-deploy security review skill for any AI agent (Claude, Codex, Gemini). Runs the 'Before You Deploy Your Vibe-Coded App' 8-category review on your real code.
toddkasper/expert-skills/aws/skills/aws-security-specialty Skill
1★ repoAgent skills that give AI agents the operational competence of expert practitioners (Salesforce, AWS, GitHub Actions, web). SKILL.md format; Claude Code plugins. Not test-prep — certification is the scaffold and benchmark, not the product.
2702207741-dev/agent-skills-pipeline/agent-security-guard Skill
1★ repoGoverned, replay-tested agent skills for Codex-style maintainer workflows.
dkmqflx/fastapi-best-practices-plugin/plugins/fastapi-best-practices/skills/fastapi-security Skill
1★ repoClaude Code plugin: FastAPI best practices (41 rules, 13 categories) grounded in the official FastAPI docs
dkmqflx/claude-tools/.claude/skills/agents-connect Skill
no license0★ repofathanghani864/oh-my-openclaw/src/presets/apex/skills/prompt-guard Skill
no license0★ repoManage and switch OpenClaw AI agent presets, including personalities, toolsets, and model configurations, via a simple CLI utility.
cyber-sorted/skills-free/cybersorted-lite Skill
0★ repoFree Claude Code skills for cloud architecture diagrams and security advisory
sxntixgo/claude-code-skills-for-security/demo/skills/security-best-practices Skill
no license0★ repoSource for "Claude Skills for Security" — a 45-minute community-conference talk at DC435 on 2026-06-05. Ships a LaTeX writeup and a Beamer deck built from a shared style package.
reasonless-throne486/sast-skills/sast-files/.agents/skills/sast-businesslogic Skill
0★ repoScan codebases for security flaws with LLM agent skills that turn Claude Code, Cursor, and other assistants into SAST scanners
Adversis/skills/skills/security-persona Skill
no license0★ repoSecurity skills for agentic SaaS apps
omonuj/claude-horizon-skills/skills/fanout-cve-rollout/fanout-cve-score-tuner Skill
no license0★ repoClaude Code Agent Skills for building, red-teaming and tuning agentic RL evaluation environments — a four-skill pattern (guardian, validation-debugger, score-tuner, iteration-loop) plus a 24-point adversarial reviewer.
AL-JANEF/janefskills/engineering-standard Skill
0★ repoDefensive security & production-grade engineering skills for Claude Code — auth, OWASP audit, threat modeling, secrets, logging.
GongziTANG/persona-vault/skills/build-persona-vault Skill
0★ repoLocal-first WeChat public-account and Weibo archiver for verified Markdown/JSONL knowledge bases and AI agents.
bensonmaxai/minis-security-skills/skills/prompt-injection-defense Skill
no license0★ repoSecurity skills for Minis on iOS: agent operational safety and prompt-injection defense.