Threat modelling
737 rows, by stacks then stars
309 of these skill files have been read, by 325 distinct authors, and what they tell an agent counted. What Threat modelling authors agree on, and what they forbid
Application security review desk
MadewellRD/skills-lab/dist/vendor/openai/security-command-desk/application-security-review-desk Skill
2★ repoVendor-agnostic agent skill suites for the software lifecycle, web, AI engineering, product, sales, and mobile. Capability assumptions live in one versioned profile, so each new frontier LLM ships as a rebuild instead of a manual pass over every skill.
MadewellRD/skills-lab/dist/vendor/openai/security-command-desk/attack-surface-inventory-desk Skill
2★ repoVendor-agnostic agent skill suites for the software lifecycle, web, AI engineering, product, sales, and mobile. Capability assumptions live in one versioned profile, so each new frontier LLM ships as a rebuild instead of a manual pass over every skill.
MadewellRD/skills-lab/dist/vendor/openai/security-command-desk/security-command-desk Skill
2★ repoVendor-agnostic agent skill suites for the software lifecycle, web, AI engineering, product, sales, and mobile. Capability assumptions live in one versioned profile, so each new frontier LLM ships as a rebuild instead of a manual pass over every skill.
MadewellRD/skills-lab/dist/vendor/openai/security-command-desk/threat-modeling-desk Skill
2★ repoVendor-agnostic agent skill suites for the software lifecycle, web, AI engineering, product, sales, and mobile. Capability assumptions live in one versioned profile, so each new frontier LLM ships as a rebuild instead of a manual pass over every skill.
MadewellRD/skills-lab/dist/vendor/openai/security-command-desk/vendor-security-review-desk Skill
2★ repoVendor-agnostic agent skill suites for the software lifecycle, web, AI engineering, product, sales, and mobile. Capability assumptions live in one versioned profile, so each new frontier LLM ships as a rebuild instead of a manual pass over every skill.
Stride threat modeling framework
ivan-sincek/threat-modeling-agent-skills/json/stride-threat-modeling-framework Skill
2★ repoEasy-to-use, high-quality threat modeling agent skills.
Dread threat modeling framework
ivan-sincek/threat-modeling-agent-skills/markdown/dread-threat-modeling-framework Skill
2★ repoEasy-to-use, high-quality threat modeling agent skills.
Pasta threat modeling framework
ivan-sincek/threat-modeling-agent-skills/markdown/pasta-threat-modeling-framework Skill
2★ repoEasy-to-use, high-quality threat modeling agent skills.
Stride threat modeling framework
ivan-sincek/threat-modeling-agent-skills/markdown/stride-threat-modeling-framework Skill
2★ repoEasy-to-use, high-quality threat modeling agent skills.
scoobydont-666/shared-claude-skills/skills/infosec-architect Skill
1★ repo10 production-tested Claude Code skills — model routing, security hardening, code quality, tax advisory, cost optimization. Install: clone to ~/.claude/skills/
RealDougEubanks/ClaudeMarketplace/skills/full-security-review Skill
1★ repoA community-driven collection of custom skills for Claude Code, Anthropic's CLI tool for software engineering with Claude.
entpnomad/bootstrapper-toolkit/.claude/skills/risk-assessment Skill
no license1★ repo20 Claude Code skills for evaluating business ideas — bootstrapper-first, revenue-focused
Yesterday-AI/ytstack/vendor/gstack/cso Skill
1★ repoAn opinionated OS for AI coding agents. Plan like a PM, execute like a senior eng. -- Claude Code plugin
timdevai/proteus/skills/community/from-alireza/engineering-team/skills/senior-security Skill
1★ repoAlways-on multi-agent AI workstation for Claude Code. 142 specialist agents (ML, security, K8s, backend, frontend) · 366 curated skills · 200+ prompt templates · auto prompt-matcher · auto skill-matcher · MCP support · token router cuts Anthropic bill 6x via Kimi/Haiku/Ollama. LiteLLM · BYOK · MIT + Apache. One-line install.
sunilgentyala/OmniRed/skills/ai-native/prompt-injection Skill
no license1★ repoOmniRed: Multi-AI offensive security skills library for Claude, ChatGPT, Gemini & Microsoft Copilot — with unique MCP, LLM-pipeline, and AI-native attack categories. By Sunil Gentyala, Independent Researcher.
MARUCIE/openclaw-foundry/web/public/packs/compliance-expert/skills/compliance/ft-risk-assessment Skill
1★ repoThe curated AI Agent skill marketplace — 37K+ vetted skills, S/A/B/C ratings, deploy anywhere
MARUCIE/openclaw-foundry/web/public/packs/spellbook-security-auditor/skills/security Skill
1★ repoThe curated AI Agent skill marketplace — 37K+ vetted skills, S/A/B/C ratings, deploy anywhere
manastalukdar/ai-devstudio/skills/prompt-injection-detect Skill
1★ repoProfessional development studio for Claude Code CLI
vikast908/agent-repo-card/skills/agent-security Skill
1★ repoGrade your AI-agent repo. One command, one report card — scored, evidence-backed reviews (reliability, security, prompts, evals, token cost, UX, accessibility) for AI/LLM apps.
imtiazrayhan/agentscamp-library/skills/threat-model-builder Skill
1★ repoInstallable library of AI coding agents, skills, commands, guides & tools — the copy-paste mirror of agentscamp.com
mehtab78/skills/skills/expert-security-reviewer Skill
1★ repoClaude Code skills: freelance business pack and model-routing expert team that delegates to haiku/sonnet/opus/fable specialist subagents
Dolphinllc/claude-security-skills/skills/offensive/genai/prompt-injection-probe Skill
1★ repoDefensive security skills for Claude Code and the Claude Agent SDK — web applications and generative AI systems.
steph-frtech/cdesign-expo/.claude/marketplaces/wshobson/plugins/security-scanning/skills/stride-analysis-patterns Skill
no license1★ repoClaude Code skill plugin that turns any design (Claude Design, screenshot, HTML, Figma) into production-ready Expo + NativeWind code. One skill, three slash commands, two reviewer agents.
hlsitechio/claude-skills-security/saas-security-pack/saas-code-security-review Skill
1★ repoDefensive security audit skills for Claude — tech-stack-keyed and audit-domain-keyed packs for SaaS apps.
bromso/metapowers/plugins/legal/skills/risk-assessment Skill
1★ repoA Claude Code plugin that adds an agentic skills framework, with MCP's and a meta prompting processes. Inspired by "Superpowers" & "Figma Console MCP", but not just for development or design; but for all aspect within the digital production cycle.
bromso/metapowers/plugins/project-management/skills/risk-assessment Skill
1★ repoA Claude Code plugin that adds an agentic skills framework, with MCP's and a meta prompting processes. Inspired by "Superpowers" & "Figma Console MCP", but not just for development or design; but for all aspect within the digital production cycle.
bromso/metapowers/plugins/security/skills/attack-surface Skill
1★ repoA Claude Code plugin that adds an agentic skills framework, with MCP's and a meta prompting processes. Inspired by "Superpowers" & "Figma Console MCP", but not just for development or design; but for all aspect within the digital production cycle.
bromso/metapowers/plugins/security/skills/risk-assessment Skill
1★ repoA Claude Code plugin that adds an agentic skills framework, with MCP's and a meta prompting processes. Inspired by "Superpowers" & "Figma Console MCP", but not just for development or design; but for all aspect within the digital production cycle.
bromso/metapowers/plugins/security/skills/threat-model Skill
1★ repoA Claude Code plugin that adds an agentic skills framework, with MCP's and a meta prompting processes. Inspired by "Superpowers" & "Figma Console MCP", but not just for development or design; but for all aspect within the digital production cycle.
mrzhangguoguo/oh-my-workbuddy/skills/security-review Skill
1★ repo1:1 WorkBuddy port of oh-my-codex — 46 catalog-driven skills (30 active + 16 deprecated), bilingual docs.
po4yka/llm-wiki-skills/skills/llm-wiki-security-review Skill
1★ repoPortable Agent Skills for building, operating, evaluating, and governing LLM-Wiki knowledge systems.
po4yka/llm-wiki-skills/skills/llm-wiki-threat-model Skill
1★ repoPortable Agent Skills for building, operating, evaluating, and governing LLM-Wiki knowledge systems.
protosphinx/sphinxstack/skills/threat-model-a-feature Skill
1★ repoA stack of skills for your AI agent, made for people starting from zero. 103 skills and 149 project briefs — load one into Codex, Claude Code, Copilot, Gemini, or Cursor and do the thing.
HikaruEgashira/agent-skills/meta/skills/assesment Skill
1★ repoAgentprivacy threat adversarial
mitchuski/agentprivacy-skills/agentprivacy-skills-v5/role/agentprivacy-threat-adversarial Skill
1★ repoPrivacy-first AI agent skills for Claude Code. 80+ skills and personas for ZKP, decentralized identity, dual-agent architecture, and sovereign AI
medy-gribkov/arcana/skills/security-review Skill
1★ repoUniversal AI development toolkit. 74 production-ready skills for every coding agent. Works with Claude Code, Cursor, Codex.
Siddharth00/agent-revamp-skills/skills/02-strategize/risk-assessment Skill
1★ repoProduction-grade migration skills for AI coding agents. Revamp any product, module, or feature from one stack to another.
Implementing attack surface management
pinkpixel-dev/skills-collection-2/SKILLS/implementing-attack-surface-management Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
Implementing threat modeling with mitre attack
pinkpixel-dev/skills-collection-2/SKILLS/implementing-threat-modeling-with-mitre-attack Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
Legal risk assessment anthropic
pinkpixel-dev/skills-collection-2/SKILLS/legal-risk-assessment-anthropic Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
Legal risk assessment zacharie laik
pinkpixel-dev/skills-collection-2/SKILLS/legal-risk-assessment-zacharie-laik Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
Performing serverless function security review
pinkpixel-dev/skills-collection-2/SKILLS/performing-serverless-function-security-review Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
Performing threat modeling with owasp threat dragon
pinkpixel-dev/skills-collection-2/SKILLS/performing-threat-modeling-with-owasp-threat-dragon Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
pinkpixel-dev/skills-collection-2/SKILLS/security-review-openai Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
pinkpixel-dev/skills-collection-2/SKILLS/security-threat-model Skill
1★ repoPart 2 of the AI and agent skills collection, with 650+ skill folders focused on reusable workflows, security playbooks, cloud implementation guides, scripts, references, and assets for builders and operators.
chuyentn/coachai/.agent/skills/skills/cc-skill-security-review Skill
no license1★ repoVibe Code Course Online By Victor Chuyen
chuyentn/coachai/.agent/skills/skills/stride-analysis-patterns Skill
no license1★ repoVibe Code Course Online By Victor Chuyen
chuyentn/coachai/.agent/skills/skills/threat-modeling-expert Skill
no license1★ repoVibe Code Course Online By Victor Chuyen
Detecting ai model prompt injection attacks
henriquescastilho/my-claude/.claude/skills/detecting-ai-model-prompt-injection-attacks Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
Implementing attack surface management
henriquescastilho/my-claude/.claude/skills/implementing-attack-surface-management Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
Implementing threat modeling with mitre attack
henriquescastilho/my-claude/.claude/skills/implementing-threat-modeling-with-mitre-attack Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
Performing serverless function security review
henriquescastilho/my-claude/.claude/skills/performing-serverless-function-security-review Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
Performing threat modeling with owasp threat dragon
henriquescastilho/my-claude/.claude/skills/performing-threat-modeling-with-owasp-threat-dragon Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
henriquescastilho/my-claude/.codex/vendor_imports/claude/marketplaces/claude-code-templates/cli-tool/components/skills/development/cc-skill-security-review Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
henriquescastilho/my-claude/.codex/vendor_imports/claude/marketplaces/claude-code-templates/cli-tool/components/skills/security/security-threat-model Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
henriquescastilho/my-claude/.codex/vendor_imports/skills/skills/.curated/security-threat-model Skill
no license1★ repoSetup público e sanitizado de um Claude Code full-stack: 8 sub-agents com roteamento por modelo, 792 skills, hooks de segurança, MCP servers e metodologia opinativa. Desenhado para um agente de IA se auto-configurar.
ulpi-io/plugin-marketplace/plugins/affaan-m/skills/security-review Skill
no license1★ repoA curated collection of 7,800+ agent skills for Claude Desktop, sourced from skills.sh
ulpi-io/plugin-marketplace/plugins/aj-geddes/skills/risk-assessment Skill
no license1★ repoA curated collection of 7,800+ agent skills for Claude Desktop, sourced from skills.sh
ulpi-io/plugin-marketplace/plugins/alirezarezvani/skills/senior-security Skill
no license1★ repoA curated collection of 7,800+ agent skills for Claude Desktop, sourced from skills.sh
ulpi-io/plugin-marketplace/plugins/anthropics/skills/legal-risk-assessment Skill
no license1★ repoA curated collection of 7,800+ agent skills for Claude Desktop, sourced from skills.sh