Security skills.
2,241 security skills, including defi-amm-security, fastapi-patterns and hipaa-compliance, are listed on ahel today. Each one has a page of its own that says what it does and whether ahel can serve it in Claude, Claude Code, ChatGPT, Codex and Cursor.
Category: Security
2,241 results · page 70 of 75
- View details
healthbankoneSkillSecurity
Pull verified medical records and digital-identity context from Health Bank One (https://www.healthbankone.com) via their MCP server. HBO uses OAuth 2.x with per-consumer authorization, so this skill drives an authorization-code grant first, then runs the MCP pull, then ingests the redacted bundle i
Ready to connect
- View details
healthcheckSkillSecurity
Use when auditing or hardening the host running CrawClaw, including security posture review, exposure assessment, firewall or SSH hardening, periodic host audits, or version checks.
Ready to connect
- View details
laravel-apiSkillSecurity
Use when creating API endpoints, transforming responses with API Resources, or handling API authentication, rate limiting, or versioning.
Ready to connect
- View details
laravel-authSkillSecurity
Use when implementing user authentication, API tokens, social login, or authorization in Laravel 13.
Ready to connect
- View details
plan-tddSkillSecurity
Turn a plain-language feature or module description into a reviewed TDD plan. Ask clarifying questions when context is missing, then design behavior cycles and assertions with edge, error, and security scenarios made explicit, and emit a self-contained HTML brief plus a machine-readable YAML plan th
Ready to connect
- View details
security-audit-cliSkillSecurity
TricorderKit security audit: secret scanning, dependency audit vs CVE, permission checks, risky pattern analysis, anonymization verification before public release. Triggers: audit securite, scan secrets, verifie les fuites, check anonymisation, security scan.
Ready to connect
- View details
ad-security-reviewerSkillSecurity
Use when a task needs Active Directory security review across identity boundaries, delegation, GPO exposure, or directory hardening.
Ready to connect
- View details
emergency_triageSkillSecurity
Use this skill as the FIRST action in clinic_agent whenever any symptom could indicate a life-threatening emergency. Triggered by keywords like 胸痛, 呼吸困难, 意识丧失, 大出血, 口眼歪斜, 抽搐, 过敏, 高烧40度 or similar red-flag language. Produces a mandatory safety check that must be shown to the user before any other res
Ready to connect
- View details
kaggleSkillSecurity
Build/extend grounded Kaggle Jupytext notebooks for training, EDA, inference, or resume workflows, grounding schema and submission format through the authenticated kaggle CLI.
Ready to connect
- View details
powershell-security-hardeningSkillSecurity
Use when a task needs PowerShell-focused hardening across script safety, admin automation, execution controls, or Windows security posture.
Ready to connect
- View details
reviewerSkillSecurity
Use when a task needs PR-style review focused on correctness, security, behavior regressions, and missing tests.
Ready to connect
- View details
android-e2eSkillSecurity
Run the Android sandbox E2E script in dev after every modification to hub/android or shared sandbox behavior affecting Android. Verify Android boot, authenticated ADB, app persistence, security boundaries and supervisor restart against the published image.
Ready to connect
- View details
atprotoSkillSecurity
Guide for building on the AT Protocol (the "atmosphere") -- authoring Lexicons, building app views, consuming the firehose, working with identity (DIDs, handles), repositories, records, XRPC endpoints, and OAuth. Use this skill whenever the user is building anything on atproto/Bluesky/the atmosphere
Ready to connect
- View details
code-qualitySkillSecurity
Multi-language code quality standards and review for TypeScript, Python, Go, and Rust. Enforces type safety, security, performance, and maintainability. Use when writing, reviewing, or refactoring code. Includes review process, checklist, and Python PEP 8 deep-dive.
Ready to connect
- View details
djangoSkillSecurity
Use when building Django applications. Covers ORM query performance, model design, migrations, Django REST Framework, security defaults, and testing.
Ready to connect
- View details
inngest-apiSkillSecurity
Use when the user explicitly asks for the Inngest REST API v2, raw HTTP, OpenAPI, API docs, API authentication, or an endpoint that the Inngest CLI does not expose. Covers api-docs.inngest.com, llms.txt, the OpenAPI v2 spec, Bearer authentication with API keys or signing keys, production and local b
Ready to connect
- View details
prismatic-apiSkillSecurity
Prismatic API access patterns and GraphQL reference. Covers the two-tier access hierarchy (MCP tools → Prism CLI), CLI usage rules, GraphQL query patterns, pagination, authentication, and managing platform resources programmatically.
Ready to connect
- View details
secure-codingSkillSecurity
Use when writing code that handles untrusted input, authentication, or sensitive data. Covers injection prevention, authentication and session handling, authorization, cryptography, and the defaults that make code safe by construction.
Ready to connect
- View details
system-architectSkillSecurity
System architecture skill for designing scalable, maintainable software systems. Covers microservices/monolith decisions, API design, DB selection, caching, security, and scalability planning.
Ready to connect
- View details
trailofbits-securitySkillSecurity
Security-focused static analysis and code auditing skills from Trail of Bits. Includes CodeQL deep analysis, Semgrep scanning, and SARIF result processing. Use when performing security audits, running static analysis, scanning for vulnerabilities, or processing scan results.
Ready to connect
- View details
audit-algorandSkillSecurity
Perform structured security audits and adversarial reviews of TypeScript Algorand applications and LogicSigs compiled with PuyaTs. Use for vulnerability assessments, threat models, exploit analysis, mainnet-readiness reviews, security findings, and remediation guidance involving AVM contracts, gener
Ready to connect
- View details
better-auth-setupSkillSecurity
Guide implementation of OAuth 2.1 / OIDC authentication using Better Auth with the OIDC Provider plugin. Use this skill when setting up centralized authentication for multiple apps, implementing SSO across a platform, creating an OAuth authorization server, or integrating Better Auth as an identity
Ready to connect
- View details
better-auth-ssoSkillSecurity
Integrate with Better Auth SSO for OAuth2/OIDC authentication. Use this skill when implementing SSO login flows, PKCE authentication, token management, JWKS verification, or global logout in Next.js applications connecting to a Better Auth server.
Ready to connect
- View details
building-chat-interfacesSkillSecurity
Build AI chat interfaces with custom backends, authentication, and context injection. Use when integrating chat UI with AI agents, adding auth to chat, injecting user/page context, or implementing httpOnly cookie proxies. Covers ChatKitServer, useChatKit, and MCP auth patterns. NOT when building sim
Ready to connect
- View details
bump-dependencySkillSecurity
Research and safely apply npm dependency version bumps across the Plumber monorepo (root, backend, frontend, types). Use when the user asks to bump/update/upgrade a package, asks whether a version bump has breaking changes, or wants a dependency security patch applied.
Ready to connect
- View details
configuring-better-authSkillSecurity
Implement OAuth 2.1 / OIDC authentication using Better Auth with MCP assistance. Use when setting up a centralized auth server (SSO provider), implementing SSO clients in Next.js apps, configuring PKCE flows, or managing tokens with JWKS verification. Uses Better Auth MCP for guided setup. NOT when
Ready to connect
- View details
control-coverage-mappingSkillSecurity
Use when you need to answer "which attacker techniques do our controls actually stop, and how well?", "what controls should I have for this threat?", or "what telemetry should I collect to detect it?" — joining a customer's or your own security control baseline to ATT&CK techniques using a public, v
- View details
crowdstrike-apiSkillSecurity
CrowdStrike Falcon Intelligence (Intel API) reference. OAuth2 auth, Falcon Query Language, indicator (IOC) lookups, threat-actor entities, intel reports, MITRE ATT&CK mappings, malware families, vulnerabilities, rule sets.
- View details
horizon-scanningSkillSecurity
Use when the user asks "what is coming next?", wants strategic forecasting, or is hunting weak signals of emerging threats before they materialise. Covers signal identification, trend analysis, and scenario development.
- View details
intelligence-writingSkillSecurity
Use when writing a finished intelligence product, the user asks for a flash-report / threat-assessment / briefing / FINTEL template, or wants the BLUF + active-voice + clear-sourcing conventions. Covers all product types.
Ready to connect
Looking for something else?
Security is one category of skills on ahel. Browse all skills, or open another category above.