Security skills.
2,241 security skills, including defi-amm-security, fastapi-patterns and hipaa-compliance, are listed on ahel today. Each one has a page of its own that says what it does and whether ahel can serve it in Claude, Claude Code, ChatGPT, Codex and Cursor.
Category: Security
2,241 results · page 63 of 75
- View details
clean-finreport-enhancerSkillSecurity
Summarise a parsed financial statement table into year-on-year deltas using exact decimal arithmetic. Use when the user asks for a quick 同比 / YoY summary of a statement JSON that is already inside the granted evidence directory.
Ready to connect★ 51
- View details
deep-security-scanSkillSecurity
Use when the user asks for a deep, exhaustive, multi-pass, or variance-reducing repository-wide or scoped-path Codex Security scan. Run repeated complete independent Standard scans with the Codex Security deep-scan tool, which aggregates their validated findings and prepares the canonical artifacts;
Ready to connect★ 51
- View details
define-security-policySkillSecurity
Define, review, or update SECURITY.md guidance for a repository or component. Use when the user wants to clarify what Codex Security should review, what is out of scope, which security properties must hold, or whether existing guidance still matches the code.
Ready to connect★ 51
- View details
finding-discoverySkillSecurity
Use when Codex is already in the finding-discovery phase of a security scan or the user explicitly asks to discover candidate security findings in a repository or code change. Do not use as the primary trigger for full PR, commit, branch, patch, or repository scans.
Ready to connect★ 51
- View details
fix-findingSkillSecurity
Use only when the user explicitly asks to fix and verify a validated or plausible security vulnerability. Do not use for ordinary bug fixes, correctness or design review findings, general validation, or full PR, commit, branch, patch, or repository scans.
Ready to connect★ 51
- View details
golang-cli-reviewSkillSecurity
Comprehensive code review for Golang CLI applications. Produces an actionable checklist covering error handling, CLI framework patterns (Cobra/urfave), testing, performance, security, and Go idioms.
Ready to connect★ 51
- View details
- View details
loop-workerSkillSecurity
Lets your agent autonomously work through a pending milestone list, implementing and shipping each item until done.
Ready to connect★ 51
- View details
merge-upstream-mainSkillSecurity
Merge the public openai/codex-security main branch into this fork's main branch and push the result to the fork remote. Use when asked to sync or merge upstream main for this repository.
Ready to connect★ 51
- View details
- View details
- View details
- View details
security-diff-scanSkillSecurity
Review a pull request, commit, branch diff, or working-tree patch for security vulnerabilities.
Ready to connect★ 51
- View details
shipSkillSecurity
Safely bring main up to date, commit intended pending changes, and push to origin/main. Use when the user explicitly asks to ship the current main branch or invokes the repository's ship workflow.
Ready to connect★ 51
- View details
test-specSkillSecurity
Generate BDD test specifications for story in 6 categories (API, UI, Load, Infrastructure, Security, Integration). Use when user wants to create test cases or mentions /test-spec command.
Ready to connect★ 51
- View details
track-findingsSkillSecurity
Track validated Codex Security findings in Linear, Jira, GitHub issues, or draft GitHub security advisories. Use it for one finding or an explicitly selected batch of up to 25 findings tracked as Linear, Jira, or GitHub issues. Includes duplicate checks, exact previews, approval-gated writes, and re
Ready to connect★ 51
- View details
triage-findingSkillSecurity
Use when the user supplies or imports existing security findings, vulnerability reports, or security/vulnerability Jira/Linear tickets from scanners, advisories, GitHub, Atlassian Rovo, Linear, or similar backlog sources and wants static repo-impact triage. Do not use for discovery, duplicate-bug tr
Ready to connect★ 51
- View details
validationSkillSecurity
Use when Codex is already in the validation phase of a security scan or the user explicitly asks to determine whether one or more candidate security findings are valid. Do not use as the primary trigger for full PR, commit, branch, patch, or repository scans.
Ready to connect★ 51
- View details
verify-fixSkillSecurity
Use only when the user explicitly requests verification that a security fix remediates a reported vulnerability. Do not invoke automatically while implementing fixes, reviewing ordinary code changes, or running tests. Do not use for non-security fixes, candidate finding validation, or full repositor
Ready to connect★ 51
- View details
- View details
detection-engineerSkillSecurity
Create detection rules and hunting queries from malware analysis findings. Use when you need to write Sigma rules for SIEM, Suricata rules for network IDS, defang IOCs for safe sharing, or convert analysis findings into actionable detection content for SOC teams and threat hunters.
Ready to connect★ 50
- View details
secscanSkillSecurity
In-session, token-efficient LLM security scan of a repo (SAST triage). A lightweight, native Claude Code pipeline — survey → threat-model → deep-dive → adversarial-verify → report — using Read/Grep/Glob (and optional subagents), no external tooling. Use when asked to "security scan", "find vulnerabi
Ready to connect★ 50
- View details
swot-analysis-generatorSkillSecurity
Generates structured SWOT (Strengths, Weaknesses, Opportunities, Threats) analyses with strategic combination strategies (SO, WO, ST, WT) and prioritized action recommendations. Supports company-level, product-level, and competitive SWOT variants. Use when asked to 'do a SWOT analysis', 'SWOT for th
Ready to connect★ 50
- View details
vulnerability-report-summarizerSkillSecurity
Transforms raw vulnerability scan output (Nessus, Qualys, OWASP ZAP, or similar) into executive-ready security reports. Scores findings by Common Vulnerability Scoring System (CVSS), maps to MITRE ATT&CK where applicable, prioritizes remediation, and produces both technical and executive summaries.
Ready to connect★ 50
- View details
ad-attackSkillSecurity
Active Directory exploitation after domain credentials exist: Kerberos (AS-REP/Kerberoast including cracking the ticket then using the account), delegation, NTLM coercion/relay, lateral movement, ACL abuse, ADCS ESC1-ESC17 and CVE paths, dMSA/BadSuccessor, Kerberos reflection, identity confusion, ma
Ready to connect
- View details
shellSkillSecurity
Shell and session operations after an attack module already established command execution, a raw shell, webshell channel, container/runner shell, or remote session. This module does not own exploitation and should not pull SSH/WinRM/RDP authentication or vulnerability-to-shell chains out of Web/AD/C
Ready to connect
- View details
3CX API PatternsSkillSecurity
3CX's native PBX MCP server: the per-PBX endpoint shape (every PBX is its own FQDN and its own OAuth authorization server — there is no shared mcp.3cx.com), the Admin Console + client setup flow, the permission model (fully inherited from the 3CX account that approved the connection), and how to dis
Ready to connect
- View details
Abnormal Security ThreatsSkillSecurity
Abnormal Security threat detection: threat types (BEC, phishing, malware, socially-engineered attacks, spam, graymail, credential theft), attack vectors, severity assessment, remediation actions, and investigation workflows.
Ready to connect
- View details
Blackpoint Multi-Tenant OperationsSkillSecurity
Partner-level Blackpoint Cyber (CompassOne) operations: the partner-tenant hierarchy, enumerating customer tenants, sweeping detections and vulnerabilities across all of them, spotting volume anomalies, and building per-tenant scorecards.
Ready to connect
- View details
Blackpoint Vulnerability ManagementSkillSecurity
Blackpoint Cyber (CompassOne) exposure data across four lenses: host vulnerability findings and the filters that matter (CVE, severity, patch and exploit availability), scan history, dark-web credential and data leaks, and internet-facing external exposures — plus how to combine them into a prioriti
Ready to connect
Looking for something else?
Security is one category of skills on ahel. Browse all skills, or open another category above.