Security skills.
2,241 security skills, including defi-amm-security, fastapi-patterns and hipaa-compliance, are listed on ahel today. Each one has a page of its own that says what it does and whether ahel can serve it in Claude, Claude Code, ChatGPT, Codex and Cursor.
Category: Security
2,241 results · page 68 of 75
- View details
compliance-mapperSkillSecurity
Map the codebase and controls against security standards - OWASP ASVS, CIS Benchmarks, SOC 2, ISO 27001, PCI-DSS - producing a gap analysis with evidence and remediation. Use for /comply, audit prep, or "are we compliant with X?" questions.
Ready to connect
- View details
copilot-github-actionsSkillSecurity
Automate GitHub Copilot CLI in GitHub Actions workflows. USE FOR: installing/running `copilot -p` in workflow steps, choosing GITHUB_TOKEN vs a personal access token (COPILOT_GITHUB_TOKEN) for authentication, setting the copilot-requests write permission, minimal-permission tool allowlisting (--allo
Ready to connect
- View details
github-issuesSkillSecurity
Read, summarize, and triage GitHub issues and pull requests for a repository using the authenticated GitHub MCP server. Invoke whenever the user asks about open issues, wants a repo's issues summarized or triaged, asks to find issues by label or author, or asks to draft an issue.
Ready to connect
- View details
mobile-security-coderSkillSecurity
Gives your agent expert guidance on writing secure mobile code, covering input validation and WebView safety.
Ready to connect
- View details
oauth-2-0-setupSkillSecurity
Implement OAuth 2.0 authentication flows including authorization code with PKCE, client credentials, and device code for secure API integration.
Ready to connect
- View details
oauth-providersSkillSecurity
Debug OAuth sign-in failures and add new OAuth providers to Keating (web + CLI). Use when a provider's "Sign in with …" flow fails, when adding a new OAuth provider, or when changing redirect URIs, token exchange, or refresh behavior.
Ready to connect
- View details
objection-handlerSkillSecurity
Build and use objection response playbooks - price, security, integration, competition, status quo. Use to prepare answers and battlecards for sales conversations.
Ready to connect
- View details
odylith-security-hardeningSkillSecurity
Apply Odylith security-hardening guidance to bounded product changes.
Ready to connect
- View details
qa-code-reviewerSkillSecurity
An independent review step in the second-to-last stage of the QA process. After qa-test-runner completes, it reviews the code itself from an independent perspective—checking architecture, security, concurrency correctness, data consistency, regression risk, and test coverage gaps—without being influ
Ready to connect
- View details
assess-github-repo-securitySkillSecurity
Read-only audit of a GitHub repository's security posture. Gathers ref protection (rulesets AND classic branch protection), Actions token permissions, code and supply-chain features (Dependabot, secret scanning, push protection, CodeQL), and repo hygiene toggles via `gh api`, then classifies finding
Ready to connect
- View details
awarenessSkillSecurity
AI situational awareness — internal threat detection for hallucination risk, scope creep, and context degradation. Maps Cooper color codes to reasoning states and OODA loop to real-time decisions. Use during any task where reasoning quality matters, when operating in unfamiliar territory, after dete
Ready to connect
- View details
bugbountyrulesSkillSecurity
Use for ANY bug bounty, penetration test, or web/API/mobile security assessment: recon, testing endpoints, analyzing Burp traffic or any bug-bounty platform's MCP (HackerOne, Intigriti, Bugcrowd, YesWeHack, Immunefi), reviewing APKs, bypassing a WAF, enforcing scope, hunting a specific vuln class, v
Ready to connect
- View details
code-reviewer-agentSkillSecurity
Code quality and security reviewer. Checks for bugs, security issues, and maintainability.
Ready to connect
- View details
dependency-rebase-rulesSkillSecurity
Guidelines for working with rebase rules related to package.json dependencies, versions, and overrides. Covers CVE pins, version conflict detection, and package-lock.json handling. Referenced by rebase, fix-rebase-rules, validate-rebase-rules, and add-rebase-rules skills.
Ready to connect
- View details
ai-generated-business-code-reviewSkillSecurity
Use when reviewing or scoring AI-generated business/application code quality in any language, especially when a numeric score, risk level, or must-fix checklist is requested, or when C++ code must comply with OpenHarmony C++ and security standards
Ready to connect
- View details
arkweb-committer-reviewSkillSecurity
ArkWeb Committer code review. Reviews code quality, architecture compliance, security, and performance risks from a Committer's perspective. Runs as an independent subagent. Trigger words: 代码检视, Committer review, 代码审查.
Ready to connect
- View details
arkweb-security-patch-conflictSkillSecurity
Resolve ArkWeb patch merge conflicts while preserving upstream security fix intent.
Ready to connect
- View details
arkweb-security-patch-fetchSkillSecurity
Fetch and normalize the exact upstream Chromium security patch for ArkWeb integration.
Ready to connect
- View details
arkweb-security-patch-impactSkillSecurity
Determine whether ArkWeb M144 or configured baseline is affected by an upstream Chromium vulnerability.
Ready to connect
- View details
arkweb-security-patch-intakeSkillSecurity
Parse ArkWeb security issue inputs such as CVE, Chromium bug, Gerrit CL, PR, and advisory links into an auditable vulnerability intelligence report.
Ready to connect
- View details
arkweb-security-patch-judgeSkillSecurity
Judge ArkWeb state-machine step outputs and produce strict verdict JSON for state transitions.
Ready to connect
- View details
arkweb-security-patch-mergeSkillSecurity
Apply upstream Chromium patches into ArkWeb with deterministic patch normalization, batch planning, issue-scoped diff checks, and controlled manual merge fallback.
Ready to connect
- View details
arkweb-security-patch-reportSkillSecurity
Produce final ArkWeb archive or auto merge report from workflow outputs.
Ready to connect
- View details
arkweb-security-patch-reviewSkillSecurity
Review merged ArkWeb security patches for correctness, vulnerability coverage, and regression risk.
Ready to connect
- View details
arkweb-security-patch-riskSkillSecurity
Assess residual risk after ArkWeb security patch merge, review, and build verification.
Ready to connect
- View details
audio_pr_createSkillSecurity
Use when managing GitCode repositories with the oh-gc CLI — including authentication, issues, PRs, reviewers, testers, labels, releases, and repository configuration. Use this skill when the user wants to commit code, create an ISSUE, create a PR, update a PR, or perform other GitCode web operations
Ready to connect
- View details
defense-in-depthSkillSecurity
Apply layered security architecture. Use when designing security controls, hardening systems, or reviewing security posture. Covers multiple security layers.
Ready to connect
- View details
fastly-ngwafSkillSecurity
Performs an internal audit of Fastly Next-Gen WAF (NGWAF) workspaces to audit that critical templated protection rules are configured and enabled. Use when auditing NGWAF workspace security posture, checking for missing or disabled login protection rules (LOGINDISCOVERY, LOGINATTEMPT, LOGINSUCCESS,
Ready to connect
- View details
identity-accessSkillSecurity
Implement identity and access management. Use when designing authentication, authorization, or user management. Covers OAuth2, OIDC, and RBAC.
Ready to connect
- View details
oh-distributed-security-design-reviewSkillSecurity
A skill specialized for security code review of OpenHarmony distributed systems. Triggered when the user asks to "review code security implementation", "code security review", "security code review", or makes a similar distributed system code security review request. This skill provides detailed rev
Ready to connect
Looking for something else?
Security is one category of skills on ahel. Browse all skills, or open another category above.