Threat modelling
737 rows, by stacks then stars
309 of these skill files have been read, by 325 distinct authors, and what they tell an agent counted. What Threat modelling authors agree on, and what they forbid
joshuaporth/appsec-skill/skill Skill
0★ repoPortable secure code review skill for AI coding agents — OWASP/CWE coverage, structured findings, and remediation guidance. Works with Cursor, Claude Code, Kiro, and Open Agent Skills.
mj-deving/pai-skills/skills/Security Skill
no license0★ repoCurated, sanitized export of 21 agent-skill packages for Claude Code and Codex, gated by an automated publication audit (no secrets, no local paths).
mj-deving/pai-skills/skills/Security/WebAssessment Skill
no license0★ repoCurated, sanitized export of 21 agent-skill packages for Claude Code and Codex, gated by an automated publication audit (no secrets, no local paths).
mj-deving/pai-skills/skills/Thinking Skill
no license0★ repoCurated, sanitized export of 21 agent-skill packages for Claude Code and Codex, gated by an automated publication audit (no secrets, no local paths).
scikrikci/skills/skills/threat_modeling Skill
no license0★ repoReusable AI agent skills library (SKILL.md) for Codex/Copilot/Claude-style workflows.
kjuhwa/skills-hub/skills/cli/gstack/cso Skill
0★ repoSelf-correcting knowledge corpus for Claude Code — 9 stable shape clusters, bias-correction pipeline baked into contribution flow. 47 papers, 45 techniques, 1.1k skills.
kjuhwa/skills-hub/skills/security/cso Skill
0★ repoSelf-correcting knowledge corpus for Claude Code — 9 stable shape clusters, bias-correction pipeline baked into contribution flow. 47 papers, 45 techniques, 1.1k skills.
vibesec-advisory/skills/skills/mcp-security-review Skill
no license0★ repoPublic Agent Skills for practical AI workflow governance, guardrails, and safer automation.
vibesec-advisory/skills/skills/prompt-injection-defense Skill
no license0★ repoPublic Agent Skills for practical AI workflow governance, guardrails, and safer automation.
stoicpickle/skillseeking/tests/fixtures/malicious-skills/body-prompt-injection Skill
0★ repoLocal Python CLI for governed AI-agent skill requests, evals, and evidence-controlled capability review.
openagentskills/betterskills/skills/engineering/security-review Skill
0★ repoPortable, open catalogue of agent skills for Cursor, Claude Code, Windsurf, Copilot, and other AI coding assistants.
Techtide alibaba waf security review
TechTideOhio/techtide-harness-kit/skills/alibaba/techtide-alibaba-waf-security-review Skill
0★ repoTrust contracts for AI agent skills: JSON Schema risk tiers, tool permissions, deny-by-default egress, approval gates, prompt-injection fixtures, ~28 CI validation gates. Apache-2.0.
Techtide aws waf security review
TechTideOhio/techtide-harness-kit/skills/aws/techtide-aws-waf-security-review Skill
0★ repoTrust contracts for AI agent skills: JSON Schema risk tiers, tool permissions, deny-by-default egress, approval gates, prompt-injection fixtures, ~28 CI validation gates. Apache-2.0.
Techtide azure waf security review
TechTideOhio/techtide-harness-kit/skills/azure/techtide-azure-waf-security-review Skill
0★ repoTrust contracts for AI agent skills: JSON Schema risk tiers, tool permissions, deny-by-default egress, approval gates, prompt-injection fixtures, ~28 CI validation gates. Apache-2.0.
TechTideOhio/techtide-harness-kit/skills/core/core-security-review Skill
0★ repoTrust contracts for AI agent skills: JSON Schema risk tiers, tool permissions, deny-by-default egress, approval gates, prompt-injection fixtures, ~28 CI validation gates. Apache-2.0.
Techtide gcp waf security review
TechTideOhio/techtide-harness-kit/skills/gcp/techtide-gcp-waf-security-review Skill
0★ repoTrust contracts for AI agent skills: JSON Schema risk tiers, tool permissions, deny-by-default egress, approval gates, prompt-injection fixtures, ~28 CI validation gates. Apache-2.0.
Techtide huawei waf security review
TechTideOhio/techtide-harness-kit/skills/huawei/techtide-huawei-waf-security-review Skill
0★ repoTrust contracts for AI agent skills: JSON Schema risk tiers, tool permissions, deny-by-default egress, approval gates, prompt-injection fixtures, ~28 CI validation gates. Apache-2.0.
Techtide oci waf security review
TechTideOhio/techtide-harness-kit/skills/oci/techtide-oci-waf-security-review Skill
0★ repoTrust contracts for AI agent skills: JSON Schema risk tiers, tool permissions, deny-by-default egress, approval gates, prompt-injection fixtures, ~28 CI validation gates. Apache-2.0.
AravindS-Wick/aravindhan-skills/skills/library/007 Skill
no license0★ repo148+ curated Claude AI skills — agent orchestration, security, multi-repo PRs, design, mobile & more. One-command install.
AravindS-Wick/aravindhan-skills/skills/library/cc-skill-security-review Skill
no license0★ repo148+ curated Claude AI skills — agent orchestration, security, multi-repo PRs, design, mobile & more. One-command install.
AravindS-Wick/aravindhan-skills/skills/library/gha-security-review Skill
no license0★ repo148+ curated Claude AI skills — agent orchestration, security, multi-repo PRs, design, mobile & more. One-command install.
AravindS-Wick/aravindhan-skills/skills/library/stride-analysis-patterns Skill
no license0★ repo148+ curated Claude AI skills — agent orchestration, security, multi-repo PRs, design, mobile & more. One-command install.
AravindS-Wick/aravindhan-skills/skills/library/threat-modeling-expert Skill
no license0★ repo148+ curated Claude AI skills — agent orchestration, security, multi-repo PRs, design, mobile & more. One-command install.
jacob-balslev/skills/skills/ai-engineering/prompt-injection-defense Skill
0★ repoPublic Agent Skills library exported from skill-graph. Install: npx skills add jacob-balslev/skills
jacob-balslev/skills/skills/frontend-engineering/generative-ui Skill
0★ repoPublic Agent Skills library exported from skill-graph. Install: npx skills add jacob-balslev/skills
jacob-balslev/skills/skills/quality-assurance/owasp-security Skill
0★ repoPublic Agent Skills library exported from skill-graph. Install: npx skills add jacob-balslev/skills
jacob-balslev/skills/skills/quality-assurance/security-fundamentals Skill
0★ repoPublic Agent Skills library exported from skill-graph. Install: npx skills add jacob-balslev/skills
barcelosvinicius/basic-engineering/plugins/be/skills/sec-agent-security Skill
0★ repoClaude Code plugin + npm base for AI-assisted engineering: 25 skills, 12 agents, slash commands, session-continuity hook. Also works with Copilot, Cursor, and others.
m00kk/agent-skills-playbook/skills/agent-redteam-security Skill
0★ repo15 production Agent Skills — MCP, LangGraph, RAG, security, Cursor SDK. MIT licensed.
Prompt injection workflow tester
vibesec-advisory/vibesec-advisory-skill-library/SKILLS/ai-workflow-eval-and-lifecycle-review/skills/prompt-injection-workflow-tester Skill
0★ repoFree AI workflow skill libraries for GTM teams, with implementation patterns, guardrails, and evals.
Prompt injection denial scenario writer
vibesec-advisory/vibesec-advisory-skill-library/SKILLS/negative-authorization-test-review/skills/prompt-injection-denial-scenario-writer Skill
0★ repoFree AI workflow skill libraries for GTM teams, with implementation patterns, guardrails, and evals.
mysteryon88/skills/mina-protocol/skills/mina-o1js-security-review Skill
0★ repoMy Web3 skills & experiments
JimmyBlanquet/project-forge/skills/speckit/threat-model Skill
0★ repoSaaS factory: Next.js starters + spec-kit extensions + Ralph++ autonomous loop. Production-ready in 48h.
valdomirosouza/agent-skills/skills/security-by-design Skill
no license0★ repoExpert AI Agent Skills for SDD, SRE, DevSecOps and Enterprise Engineering
sarfaraz-munir/Claude-Code-Cyber-agents/.claude/skills/ciso-threat-model Skill
0★ repoHierarchical CISO AI agent swarm for Claude Code — 10 specialist agents covering risk governance, compliance, threat intelligence, vulnerability management, incident response, and AI security (OWASP LLM Top 10 / MITRE ATLAS). Includes MCP tools, Claude Code skills etc.
stevancris/sre-ai-agent/skills/security-posture Skill
0★ repoAI agent that accumulates SRE knowledge from every incident — built on Agent Skills spec for Claude Code
goharabbas321/zeoel/skills/security-review Skill
no license0★ repoZeoel-AI is a production-grade, multi-agent SaaS software engineering agency. Instead of single, fragile LLM prompts that lose context, Zeoel-AI coordinates a complete team of 33 specialized agents (UX designers, database architects, systems engineers, security auditors, QA engineers, etc.) to brainstorm, plan, build, and verify entire software.
roronoazoroshao369/vibe-coding-os/skills/core/threat-model-driven-security Skill
0★ repoVibe Coding OS — Claude/Codex/Cursor skill framework with 139 skills, 111 commands, 95 templates, 22 tracked sources, 28/28 validation gates PASS. Quality Shield, Engineering Discipline Pack, plugin marketplace.
mikulgohil/claude-skills/skills/ai-agents/prompt-injection-defense Skill
0★ repoMy curated collection of Claude Code Agent Skills — 21 skills across frontend, Sitecore, AI/agents, devex fundamentals, and personal workflows.
vindreshsingh/engineering-skills/skills/threat-modeling Skill
0★ repoThe broadest agent-skills library: 64 behaviorally-tested engineering skills + a 38-role SDLC & marketing org + an orchestrated build loop. Works with Claude Code, Cursor, Gemini, Copilot, Codex.
prasadmogulothu/agent-skills/security-review Skill
0★ repoReusable, token-optimized agent skills for autonomous development with Hermes, Claude Code & OpenCode. Multi-model orchestration patterns — context-checkpointing, human review gates, RLS security, GDPR consent, AI cost control, and test-fix loops. Framework-agnostic, agentskills.io compatible.
srg-sphynx/MDForge/Sources/MDForge/Resources/SkillLibrary/Development/007 Skill
0★ repoNative macOS skill-catalog studio for Claude Code — browse 1,492 Markdown skills, customize with variables or AI (hosted or local), export to .claude/skills. SwiftUI + Liquid Glass.
srg-sphynx/MDForge/Sources/MDForge/Resources/SkillLibrary/Development/cc-skill-security-review Skill
0★ repoNative macOS skill-catalog studio for Claude Code — browse 1,492 Markdown skills, customize with variables or AI (hosted or local), export to .claude/skills. SwiftUI + Liquid Glass.
srg-sphynx/MDForge/Sources/MDForge/Resources/SkillLibrary/Development/gha-security-review Skill
0★ repoNative macOS skill-catalog studio for Claude Code — browse 1,492 Markdown skills, customize with variables or AI (hosted or local), export to .claude/skills. SwiftUI + Liquid Glass.
srg-sphynx/MDForge/Sources/MDForge/Resources/SkillLibrary/Development/senior-security Skill
0★ repoNative macOS skill-catalog studio for Claude Code — browse 1,492 Markdown skills, customize with variables or AI (hosted or local), export to .claude/skills. SwiftUI + Liquid Glass.
nledford/engineering-review-board/skills/security-review-evidence Skill
0★ repoA collection of AI agent skills I have written
nledford/engineering-review-board/skills/security-review Skill
0★ repoA collection of AI agent skills I have written
nledford/engineering-review-board/skills/threat-modeling Skill
0★ repoA collection of AI agent skills I have written
Hayatelin/devsecops-skills/skills/threat-model Skill
0★ repoA security skills pack for Claude Code, Cursor, Codex and Gemini CLI: secrets pre-flight, dependency audit, secret rotation, STRIDE threat modeling, secure code review, Dockerfile hardening and env hygiene.
NyXXiR/skillboard/examples/multi-source-skills/wshobson/security-review Skill
0★ repoKnow which agent skills can run before they run.
Sarmkadan/dotnet-senior-skills/skills/security-review-dotnet Skill
0★ repoSenior-level .NET review rules for AI coding agents - Claude Code skills, Cursor rules, and Copilot instructions from one source
Pdbjork/hermosskills-site/skills/ecc-security-review Skill
no license0★ repoHermesskills — a curated marketplace & repository of AI-agent skills. OpenClaw-compatible catalog at /catalog/v1/skills.json. 30% of commissions fund public-good AI.
vaibhavsaxena022/skills/security-review Skill
0★ repoAI-agent skills for software engineering — works with Claude Code, Codex, Cursor
ats4321/claude-engineering-skills/skills/security-review-playbook Skill
0★ repo26 repository-agnostic engineering skills for Claude Code — debugging, design, review, validation, and AI engineering as operational runbooks.
IcodeNet/agent-skills/skills/security-review Skill
0★ repo40 portable full-SDLC agent skills for Claude Code, Cursor, Codex, and GitHub Copilot — deep-work autonomy, contract-guard for external interfaces, TDD, code review, PR babysitting. Install: npx github:IcodeNet/agent-skills
shinzoxD/knackbox/skills/coding/prompt-injection-hardening Skill
0★ repoCurated, auditable, benchmark-ready Agent Skills library for Claude Code, Codex, OpenCode, Cursor, and more.
shinzoxD/knackbox/skills/coding/security-review Skill
0★ repoCurated, auditable, benchmark-ready Agent Skills library for Claude Code, Codex, OpenCode, Cursor, and more.
sandev/engineering-os/skills/design-and-architecture/security-threat-modeling Skill
0★ repoAn operating system for engineering: durable, opinionated playbooks (Agent Skills) for software architecture, AI/agentic systems, product engineering, and technical leadership. Read by humans, loaded by any LLM/agent.
yuri-semenenko/ai-engineering-workspace/claude-code/.claude/skills/web-security-checklist Skill
0★ repoOne engineering workflow across Claude Code, Codex, Copilot, and Gemini CLI. A portable persona canon, process skills, and safety guardrails, kept in sync by design.
K95M65/AI_ONBOARD/skills/automated-security-review Skill
0★ repoPortable agent workflow framework for Codex, Claude Code, and OpenCode—shared project context, focused skills, independent review, and safe updates.