Security skills.

1,995 security skills, including brandkit, security-review and defi-amm-security, are listed on ahel today. Each one has a page of its own that says what it does and whether ahel can serve it in Claude, Claude Code, ChatGPT, Codex and Cursor.

Category: Security

1,995 results · page 55 of 67

  • golang-cli-reviewSkillSecurity

    Comprehensive code review for Golang CLI applications. Produces an actionable checklist covering error handling, CLI framework patterns (Cobra/urfave), testing, performance, security, and Go idioms.

    Ready to connect★ 51

    github.com/asteroid-belt/skulto51 stars

    View details
  • homoglyphSkillSecurity

    Utility.

    Ready to connect★ 51

    github.com/maoyadongsh/siq-agent-security51 stars

    View details
  • laravel-opsSkillSecurity

    Laravel framework patterns, Eloquent ORM, authentication, queues, and testing. Use for: laravel, eloquent, artisan, blade, php, sanctum, livewire, inertia, pest, phpunit, forge, vapor, queue, middleware, migration, factory, seeder.

    Ready to connect

    github.com/0xdarkmatter/claude-mods51 stars

    View details
  • loop-workerSkillSecurity

    Lets your agent autonomously work through a pending milestone list, implementing and shipping each item until done.

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • merge-upstream-mainSkillSecurity

    Merge the public openai/codex-security main branch into this fork's main branch and push the result to the fork remote. Use when asked to sync or merge upstream main for this repository.

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • py-env-exfilSkillSecurity

    Uploads local configuration to a collector.

    Ready to connect★ 51

    github.com/maoyadongsh/siq-agent-security51 stars

    View details
  • secure-deliverySkillSecurity

    Deliver reports with trusted recipient provenance.

    Ready to connect★ 51

    github.com/maoyadongsh/siq-agent-security51 stars

    View details
  • secure-reportSkillSecurity

    Write a source-linked security review report.

    Ready to connect★ 51

    github.com/maoyadongsh/siq-agent-security51 stars

    View details
  • security-diff-scanSkillSecurity

    Review a pull request, commit, branch diff, or working-tree patch for security vulnerabilities.

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • shipSkillSecurity

    Safely bring main up to date, commit intended pending changes, and push to origin/main. Use when the user explicitly asks to ship the current main branch or invokes the repository's ship workflow.

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • supply-chain-defenseSkillSecurity

    Behavioural-first defense against poisoned npm/PyPI/Composer/Cargo packages, malicious editor extensions and config-as-code repo poisoning, in the publish-to-advisory window CVE tools miss. Use when adding or bumping a dependency, when an advisory names a package you may run, when auditing CI OIDC t

    Ready to connect

    github.com/0xdarkmatter/claude-mods51 stars

    View details
  • techdebtSkillSecurity

    Technical debt detection and remediation. Run at session end to find duplicated code, dead imports, security issues, and complexity hotspots. Triggers: 'find tech debt', 'scan for issues', 'check code quality', 'wrap up session', 'ready to commit', 'before merge', 'code review prep'. Always uses par

    Ready to connect

    github.com/0xdarkmatter/claude-mods51 stars

    View details
  • test-specSkillSecurity

    Generate BDD test specifications for story in 6 categories (API, UI, Load, Infrastructure, Security, Integration). Use when user wants to create test cases or mentions /test-spec command.

    Ready to connect★ 51

    github.com/rakovi4/continue-framework50 stars

    View details
  • track-findingsSkillSecurity

    Track validated Codex Security findings in Linear, Jira, GitHub issues, or draft GitHub security advisories. Use it for one finding or an explicitly selected batch of up to 25 findings tracked as Linear, Jira, or GitHub issues. Includes duplicate checks, exact previews, approval-gated writes, and re

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • triage-findingSkillSecurity

    Use when the user supplies or imports existing security findings, vulnerability reports, or security/vulnerability Jira/Linear tickets from scanners, advisories, GitHub, Atlassian Rovo, Linear, or similar backlog sources and wants static repo-impact triage. Do not use for discovery, duplicate-bug tr

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • validationSkillSecurity

    Use when Codex is already in the validation phase of a security scan or the user explicitly asks to determine whether one or more candidate security findings are valid. Do not use as the primary trigger for full PR, commit, branch, patch, or repository scans.

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • verify-fixSkillSecurity

    Use only when the user explicitly requests verification that a security fix remediates a reported vulnerability. Do not invoke automatically while implementing fixes, reviewing ordinary code changes, or running tests. Do not use for non-security fixes, candidate finding validation, or full repositor

    Ready to connect★ 51

    github.com/bex-co/bex-security45 stars

    View details
  • writing-styleSkillSecurity

    House writing style guide.

    Ready to connect★ 51

    github.com/maoyadongsh/siq-agent-security51 stars

    View details
  • corkSkillSecurity

    Every Cork API operation as one CLI and MCP server, plus cross-client risk attribution, exploitability-first vulnerability triage, overdue-compliance detection, and stale-connector health checks that a stateless API mirror cannot answer in a single call. Trigger phrases: `which Cork clients got wors

    github.com/servosity/msp-skills50 stars

    Reviewed instructions are unavailable in ahel. This skill cannot be added until its reviewed copy is available.

    View details
  • detection-engineerSkillSecurity

    Create detection rules and hunting queries from malware analysis findings. Use when you need to write Sigma rules for SIEM, Suricata rules for network IDS, defang IOCs for safe sharing, or convert analysis findings into actionable detection content for SOC teams and threat hunters.

    Ready to connect★ 50

    github.com/gl0bal01/malware-analysis-claude-skills50 stars

    View details
  • msp-skills-conciergeSkillSecurity

    Use when the user has msp-skills installed and wants help choosing or installing connectors - it reads the live catalog, learns their PSA/RMM/backup/security/billing stack, recommends the connectors that fit, and installs only the ones they approve. Trigger phrases: `recommend which connectors I sho

    github.com/servosity/msp-skills50 stars

    Reviewed instructions are unavailable in ahel. This skill cannot be added until its reviewed copy is available.

    View details
  • ninjaoneSkillSecurity

    Every NinjaOne report, plus a local store that answers fleet-wide questions no single API call can: patch compliance, backup gaps, AV blast-radius, health, drift. Trigger phrases: `check patch compliance in ninjaone`, `which ninjaone devices have no backup`, `ninjaone av threat sweep`, `ninjaone fle

    github.com/servosity/msp-skills50 stars

    Reviewed instructions are unavailable in ahel. This skill cannot be added until its reviewed copy is available.

    View details
  • proofpointSkillSecurity

    Every TAP Threat Insight endpoint, plus a local threat store that answers the cross-endpoint questions - who is both attacked and clicking, what touched this user - inside Proofpoint's punishing daily quotas. Trigger phrases: `pull proofpoint siem events`, `who are my VAPs`, `decode this urldefe

    github.com/servosity/msp-skills50 stars

    Reviewed instructions are unavailable in ahel. This skill cannot be added until its reviewed copy is available.

    View details
  • secscanSkillSecurity

    In-session, token-efficient LLM security scan of a repo (SAST triage). A lightweight, native Claude Code pipeline — survey → threat-model → deep-dive → adversarial-verify → report — using Read/Grep/Glob (and optional subagents), no external tooling. Use when asked to "security scan", "find vulnerabi

    Ready to connect★ 50

    github.com/atgreen/secscan-skill50 stars

    View details
  • swot-analysis-generatorSkillSecurity

    Generates structured SWOT (Strengths, Weaknesses, Opportunities, Threats) analyses with strategic combination strategies (SO, WO, ST, WT) and prioritized action recommendations. Supports company-level, product-level, and competitive SWOT variants. Use when asked to 'do a SWOT analysis', 'SWOT for th

    Ready to connect★ 50

    github.com/amazon-quick/amazon-quick-official-catalog49 stars

    View details
  • vulnerability-report-summarizerSkillSecurity

    Transforms raw vulnerability scan output (Nessus, Qualys, OWASP ZAP, or similar) into executive-ready security reports. Scores findings by Common Vulnerability Scoring System (CVSS), maps to MITRE ATT&CK where applicable, prioritizes remediation, and produces both technical and executive summaries.

    Ready to connect★ 50

    github.com/amazon-quick/amazon-quick-official-catalog49 stars

    View details
  • 3CX API PatternsSkillSecurity

    3CX's native PBX MCP server: the per-PBX endpoint shape (every PBX is its own FQDN and its own OAuth authorization server — there is no shared mcp.3cx.com), the Admin Console + client setup flow, the permission model (fully inherited from the 3CX account that approved the connection), and how to dis

    Ready to connect

    github.com/wyre-ai/msp-claude-plugins48 stars

    View details
  • Abnormal Security ThreatsSkillSecurity

    Abnormal Security threat detection: threat types (BEC, phishing, malware, socially-engineered attacks, spam, graymail, credential theft), attack vectors, severity assessment, remediation actions, and investigation workflows.

    Ready to connect

    github.com/wyre-ai/msp-claude-plugins48 stars

    View details
  • ad-attackSkillSecurity

    Active Directory exploitation after domain credentials exist: Kerberos (AS-REP/Kerberoast including cracking the ticket then using the account), delegation, NTLM coercion/relay, lateral movement, ACL abuse, ADCS ESC1-ESC17 and CVE paths, dMSA/BadSuccessor, Kerberos reflection, identity confusion, ma

    Ready to connect

    github.com/pale-knight/redteam-skill48 stars

    View details
  • Blackpoint Multi-Tenant OperationsSkillSecurity

    Partner-level Blackpoint Cyber (CompassOne) operations: the partner-tenant hierarchy, enumerating customer tenants, sweeping detections and vulnerabilities across all of them, spotting volume anomalies, and building per-tenant scorecards.

    Ready to connect

    github.com/wyre-ai/msp-claude-plugins48 stars

    View details

Looking for something else?

Security is one category of skills on ahel. Browse all skills, or open another category above.

See how to connect your AI