Security skills.
2,241 security skills, including defi-amm-security, fastapi-patterns and hipaa-compliance, are listed on ahel today. Each one has a page of its own that says what it does and whether ahel can serve it in Claude, Claude Code, ChatGPT, Codex and Cursor.
Category: Security
2,241 results · page 66 of 75
- View details
composio-cliSkillSecurity
Help users operate the published Composio CLI to find the right tool, connect accounts, inspect schemas, execute tools, subscribe to trigger events with `composio listen`, script workflows with `composio run`, and call authenticated app APIs with `composio proxy`. Use when the user asks how to do so
Ready to connect
- View details
dopplerSkillSecurity
Doppler CLI workflows for secrets management in this workspace. Covers creating projects non-interactively (agent-friendly), renaming the default envs to development/preview/production, uploading secrets, type-safe env access in TypeScript apps, CI integration via GitHub Actions, and syncing secrets
Ready to connect
- View details
- View details
sec-agentshield-wrapperSkillSecurity
Pre-flight security analysis before code changes — identifies trust boundary risks, dangerous patterns, and provides proceed/caution/block advisory before implementation starts
Ready to connect
- View details
alice-aiSkillSecurity
Progressive routing for AI security testing (LLM / prompt injection / MCP / RAG / Agent security testing). Trigger words: LLM/prompt injection/MCP/RAG/Agent/model security testing; first select the domain index, then choose modules by task match and score; reading all domains at once is forbidden.
Ready to connect
- View details
alice-pentestSkillSecurity
Progressive routing for web security (Web / API / asset discovery / vulnerability verification / cloud and network security). Trigger words: Web/API/asset discovery/ports/vulnerability verification/cloud and network security; first select the domain index, then pick modules by task relevance and sco
Ready to connect
- View details
competition-mailbox-abuseSkillSecurity
Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for enterprise mail abuse, OAuth consent, inbox or forwarding rules, transport rules, shared mailbox access, phishing chains, and token-to-mailbox side effects. Use when the user asks to trace mailbox rules, OAuth consent g
Ready to connect
- View details
competition-malware-configSkillSecurity
Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for malware configuration recovery, staged payload boundaries, beacon parameter extraction, and IOC decoding. Use when the user asks to recover a malware config, decode C2 or beacon fields, unpack staged payloads, extract b
Ready to connect
- View details
competition-oauth-oidc-chainSkillSecurity
Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for OAuth, OIDC, redirect flows, state or nonce handling, PKCE, token exchange, refresh logic, claim mapping, and accepted login paths. Use when the user asks to trace redirects, callback parameters, scopes, state, nonce, P
Ready to connect
- View details
eni-license-securitySkillSecurity
全局自动路由 | License, activation, subscription, card-key (卡密), entitlement, and device-binding security design and reverse audit. Covers online and offline verification, signed licenses, key issuance, activation APIs, replay, clock rollback, shared-secret extraction, client patching, device identity, re
Ready to connect
- View details
eni-pentest-workflowSkillSecurity
Evidence-driven authorized penetration and attack-surface validation for local, owned, or explicitly authorized systems, with OWASP, Nuclei, and ZAP method adapters.
Ready to connect
- View details
Web Application Security TestingSkillSecurity
Lets your agent test websites for common security flaws and write up vulnerability findings.
Ready to connect
- View details
aspnet-identitySkillSecurity
ASP.NET Core Identity for authentication, roles, claims, and external providers. Covers Identity setup, customization, and token-based auth.
Ready to connect
- View details
ios-signing-doctorSkillSecurity
Diagnose and fix iOS code-signing, provisioning, and entitlement failures — the "no signing certificate / no profiles / doesn't match / get-task-allow" family, using codesign/security to inspect what's actually signed. Use when an archive, upload, or CI build fails on signing.
Ready to connect
- View details
kb-agentcore-identitySkillSecurity
Knowledge of AgentCore Identity (outbound authentication). Covers 3LO/M2M/decorator separation/callback, etc.
Ready to connect
- View details
mcp-server-managerSkillSecurity
Configure and manage MCP (Model Context Protocol) servers in Claude Code CLI. Use this skill when adding, removing, listing, or troubleshooting MCP servers, or when questions arise about MCP configuration, transport types, scopes, or authentication. Essential for connecting Claude Code to external t
Ready to connect
- View details
oauth2SkillSecurity
OAuth 2.0 authorization framework. Covers flows, tokens, and provider integration. Use for third-party authentication.
Ready to connect
- View details
particle-swarm-simSkillSecurity
Generate 20,000+ particle swarm simulators in two modes: sandbox (complete Three.js host runtime with gesture controls, security validation, code injection pipeline) and sim (behavior function bodies that position/color particles via a sandboxed API). The AI writes ONLY a function body — the host ha
Ready to connect
- View details
sh-pr-reviewSkillSecurity
Security-review a GitHub pull request, post the result as inline review comments on the PR, and set a pass/fail commit status that branch protection can enforce. Fails the PR for vulnerabilities it introduces or makes worse; passes with a warning for pre-existing ones. Triages the diff first and sca
Ready to connect
- View details
sh-routerSkillSecurity
Entry point / dispatcher for the security-harness. Use when the user asks for any application-security work - 'security review', 'audit this codebase', 'pentest', 'find vulnerabilities', 'check for SQLi/XSS/IDOR/SSRF', 'generate a security report/SARIF'. Interprets the request and routes it to the f
Ready to connect
- View details
spring-authorization-serverSkillSecurity
Spring Authorization Server for building OAuth 2.1 and OpenID Connect providers.
Ready to connect
- View details
spring-bootSkillSecurity
Spring Boot 3 Java framework with enterprise patterns. Covers REST controllers, services, repositories, JPA entities, MapStruct mappers, Lombok, JWT security, Flyway migrations, and global exception handling.
Ready to connect
- View details
spring-graphqlSkillSecurity
Spring for GraphQL - building GraphQL APIs with Spring Boot. Covers queries, mutations, subscriptions, @BatchMapping, DataLoader, and security.
Ready to connect
- View details
spring-ldapSkillSecurity
Spring LDAP for LDAP/Active Directory integration and authentication. Covers LdapTemplate, @Entry mapping, LdapRepository, and Spring Security integration.
Ready to connect
- View details
spring-profilesSkillSecurity
Configuration and profiles management in Spring Boot 3.x. Covers @Profile, @ConfigurationProperties, property sources, YAML/properties, external configuration, secrets management, and environment-specific beans.
Ready to connect
- View details
spring-securitySkillSecurity
Spring Security JWT authentication for Spring Boot 3. Covers SecurityFilterChain, JWT filter, authentication, authorization, CORS, rate limiting, and security headers.
Ready to connect
- View details
webauthnSkillSecurity
WebAuthn/FIDO2 passwordless authentication. Passkeys, registration and authentication ceremonies, SimpleWebAuthn library, resident credentials, and platform/cross-platform authenticators.
Ready to connect
- View details
bump-transitiveSkillSecurity
Surgically bump a vulnerable transitive dependency to its latest patch per major using pnpm.overrides, then clean up without leaving override traces in package.json.
Ready to connect
- View details
plugin-architectureSkillSecurity
Build pluggable authentication features using the plugin system with initialization, migrations, routes, and service registration.
Ready to connect
- View details
skill-checkSkillSecurity
Validate Claude Code skills against Anthropic guidelines. Use when user says "check skill", "skillcheck", "validate SKILL.md", or asks to find issues in skill definitions. Covers structural and semantic validation. Do NOT use for anti-slop detection, security scanning, token analysis, enterprise che
Ready to connect
Looking for something else?
Security is one category of skills on ahel. Browse all skills, or open another category above.