Security skills.

2,241 security skills, including defi-amm-security, fastapi-patterns and hipaa-compliance, are listed on ahel today. Each one has a page of its own that says what it does and whether ahel can serve it in Claude, Claude Code, ChatGPT, Codex and Cursor.

Category: Security

2,241 results · page 65 of 75

  • oma-imageSkillSecurity

    Multi-vendor AI image generation with authentication-aware parallel dispatch. Routes to Codex (gpt-image-2 via ChatGPT OAuth), Antigravity (gemini-2.5-flash-image aka nano-banana via `agy` CLI + Gemini Code Assist), and Pollinations (flux/zimage, free with signup). Use for image generation, image cr

    Ready to connect

    github.com/gracefullight/krds46 stars

    View details
  • output-escapingSkillSecurity

    Use when echoing or printing any dynamic value in WordPress PHP or templates — into HTML, attributes, URLs, inline JavaScript, or textareas. Escapes at the point of output with esc_html, esc_attr, esc_url, esc_js, esc_textarea, or wp_kses_post, including the i18n variants (esc_html__, esc_attr_e). P

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • rest-api-securitySkillSecurity

    Use when registering WordPress REST API routes with register_rest_route or building custom endpoints. Sets a real permission_callback (never __return_true for writes), defines args with sanitize_callback and validate_callback, enforces capabilities and per-object checks, and escapes any HTML in resp

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • scaffold-apiSkillSecurity

    Generate a new authenticated Next.js API route following RDO project conventions

    Ready to connect

    github.com/theastrelo/claude-pipeline46 stars

    View details
  • sddf-netSkillSecurity

    An operating system designed from the core up for agents and agentic security requirements. Built on seL4 microkernel with capability-based security and agent-native vibe-coding.

    Ready to connect

    github.com/jordanhubbard/agentos43 stars

    View details
  • security-auditing-code-reviewSkillSecurity

    Use when auditing or code-reviewing an existing WordPress plugin or theme for security issues, triaging a vulnerability report, or hardening inherited code. Provides a systematic methodology — locate trust boundaries, inventory sensitive sinks, trace their controls and data flows, then triage confir

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • security-headers-cspSkillSecurity

    Use when adding HTTP response headers to a WordPress site or plugin: Content-Security-Policy (or Report-Only), X-Content-Type-Options, frame protection (X-Frame-Options or frame-ancestors), Referrer-Policy, Permissions-Policy, HSTS, Secure/HttpOnly/SameSite cookie flags, or CORS on REST responses. C

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • sel4-platformSkillSecurity

    An operating system designed from the core up for agents and agentic security requirements. Built on seL4 microkernel with capability-based security and agent-native vibe-coding.

    Ready to connect

    github.com/jordanhubbard/agentos43 stars

    View details
  • settings-options-securitySkillSecurity

    Use when building an options or settings page with the WordPress Settings API - register_setting, add_settings_field, settings_fields, an options.php form, or update_option / get_option on plugin data. Attaches a sanitize_callback to every setting, gates the page with manage_options, relies on Setti

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • shortcode-block-securitySkillSecurity

    Use when registering a shortcode with add_shortcode or a dynamic block with a render_callback, or processing shortcode / block attributes. Normalizes attributes with shortcode_atts, validates against allowlists, and escapes all rendered output for its context with esc_html, esc_attr, esc_url, or wp_

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • tdmcp-quality-auditSkillSecurity

    Run or maintain the full tdmcp repo quality-audit team: command sweeps, all package/Makefile/CI gates, security review, usability/flow review, refactor/test-gap analysis, coverage hardening, QA, and follow-up fix waves. Use whenever the user asks for a complete audit, improve repo/code quality, test

    Ready to connect

    github.com/pantani/tdmcp39 stars

    View details
  • virtio-deviceSkillSecurity

    An operating system designed from the core up for agents and agentic security requirements. Built on seL4 microkernel with capability-based security and agent-native vibe-coding.

    Ready to connect

    github.com/jordanhubbard/agentos43 stars

    View details
  • woocommerce-securitySkillSecurity

    Use when a plugin extends WooCommerce - reading or writing orders, customer data, or hooking checkout, REST, or the Store API. Sanitizes input with wc_clean, gates shop actions with WooCommerce capabilities like edit_shop_orders, minimizes stored payment data, and escapes customer PII on output. Pre

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • wp-cli-securitySkillSecurity

    Use when registering a WP-CLI command with WP_CLI::add_command or writing command logic. Validates and sanitizes positional and associative arguments, does not assume a logged-in user or capability context, avoids printing secrets, and confirms destructive operations. Prevents injection and unsafe a

    Ready to connect

    github.com/wpultimatesecurity/wordpress-security-skills46 stars

    View details
  • apple-firmware-inspectorSkillSecurity

    Apple firmware: inspect and reverse-engineer IPSWs, kernelcaches, dyld shared caches, private headers, entitlements, Mach-O binaries, KEXTs, and security internals with `ipsw`.

    Ready to connect

    github.com/xopoko/build-swift-apps45 stars

    View details
  • verificationSkillSecurity

    Full agent verification suite. Runs security, patterns, quality, and language-specific checks. Use when asked to "verify agent", "verify my agent", "audit agent", or "full verification".

    Ready to connect

    github.com/aurite-ai/agent-verifier45 stars

    View details
  • verify-securitySkillSecurity

    Verify code for security issues including hardcoded secrets, input validation, error exposure, and dependency vulnerabilities. Use when asked to "verify security", "check for secrets", or "scan for vulnerabilities".

    Ready to connect

    github.com/aurite-ai/agent-verifier45 stars

    View details
  • ci-cd-reliability-architectureSkillSecurity

    Establishes idempotency, self-containment, immutable artifacts, self-healing, zero-downtime, and zero-knowledge security for CI/CD pipelines, including delivery-strategy choice, evidence-gated release, and production promotion. Use this skill when designing, auditing, or debugging any workflow, rele

    Ready to connect

    github.com/l-gevity/l-gevity-skills43 stars

    View details
  • inbound-triageSkillSecurity

    Maintainer-only. Use when triaging inbound GitHub issues and pull requests on skyf0xx/hedgehog — "triage the issues", "check the PRs", "review inbound", "what's in the queue". Reads each item read-only, judges it for security and for whether it is real, then fixes and closes or comments and closes.

    Ready to connect

    github.com/skyf0xx/hedgehog44 stars

    View details
  • review-advancedSkillSecurity

    Rigorous sequential-audit code review with a dedicated security block and cited pedagogical lessons. Customize for your project.

    Ready to connect

    github.com/dgouron/review-flow42 stars

    View details
  • review-fullstackSkillSecurity

    Complete code review of a fullstack MR/PR with 8 sequential audits (Clean Architecture, DDD, React Best Practices, SOLID, Testing, Code Quality, Security, Performance). The audit set is the deduplicated union of review-front and review-back — no audit runs twice. An orchestrator runs each audit one

    Ready to connect

    github.com/dgouron/review-flow42 stars

    View details
  • storybook-pentestSkillSecurity

    Pentest Storybook components two ways. Whether they break under stress, and whether they actually do their job well. Test one story, a component group, or the whole Storybook, and write every finding into an OKF bundle with screenshots, severity, and a reproducible URL. The break pass probes extreme

    Ready to connect

    github.com/saschb2b/okf-studio34 stars

    View details
  • wordpress-mcp-devSkillSecurity

    Build and maintain modern WordPress plugins and MCP servers, including hybrid WordPress+MCP products. Use when implementing plugin architecture (PHP, REST API, Gutenberg/admin/page-builder integrations), MCP tooling (TypeScript/Python, stdio/HTTP transport), security hardening, licensing/updates, an

    Ready to connect

    github.com/respira-press/agent-skills-wordpress44 stars

    View details
  • wordpress-security-reviewSkillSecurity

    Use when the user asks 'is my site secure', 'run a security audit', 'check for vulnerabilities', 'was my site hacked', or 'fix the vulnerable plugins'. Runs the Respira security audit, reads its indicators, coverage and known vulnerabilities honestly, never calls a partial scan clean, and fixes what

    Ready to connect

    github.com/respira-press/agent-skills-wordpress44 stars

    View details
  • wordpress-site-dnaSkillSecurity

    Use when the user says 'analyze my wordpress site', 'what is running on my site', 'site dna', or 'what plugins are on my site'. Detects every page builder, audits active versus dead-weight plugins, maps content structure, finds orphaned shortcodes, and checks performance and security posture.

    Ready to connect

    github.com/respira-press/agent-skills-wordpress44 stars

    View details
  • aide-ci-diagnosticsSkillSecurity

    Diagnose GitHub Actions failures on AnonymousNomad/aide-sovereign-workbench WITHOUT authentication — no-auth evidence channels (::error annotations, job summaries via the check-runs API), harvest commands, flake-vs-real triage, and the veritas gate map. Use whenever CI is red, a run's conclusion mus

    Ready to connect

    github.com/anonymousnomad/covert-coder43 stars

    View details
  • aide-security-hardeningSkillSecurity

    Security hardening for AIDE — secret detection pre-commit, vulnerability scanning via Semgrep integration, SBOM generation, secure coding SOPs, and supply-chain audit. Use when implementing security features, auditing code for vulnerabilities, or building the security layer of the IDE.

    Ready to connect

    github.com/anonymousnomad/covert-coder43 stars

    View details
  • analyzing-activist-investor-vulnerabilitiesSkillSecurity

    Evaluates corporate vulnerability to shareholder activism with governance assessment, valuation gaps, and operational improvement opportunities. Use when assessing activist risk, identifying vulnerabilities, or preparing defensive analyses.

    Ready to connect

    github.com/casemark/skills40 stars

    View details
  • analyzing-competitive-landscapesSkillSecurity

    Maps competitive dynamics with market positioning, feature comparison, funding histories, and differentiation assessment. Use when analyzing startup competition, mapping market landscapes, or identifying competitive threats.

    Ready to connect

    github.com/casemark/skills40 stars

    View details
  • analyzing-sovereign-credit-riskSkillSecurity

    Evaluates sovereign creditworthiness with fiscal analysis, external vulnerability, political risk, and institutional quality assessment. Use when analyzing sovereign risk, assessing country credit, or evaluating government bond exposure.

    Ready to connect

    github.com/casemark/skills40 stars

    View details

Looking for something else?

Security is one category of skills on ahel. Browse all skills, or open another category above.

See how to connect your AI