Skills.
Give your AI a better way to work.
A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.
Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.
Category: Security
1,738 results · page 14 of 58
- View details
manage-headersSkillSecurity
Inspects and configures the security headers a Power Pages site sends to browsers — Content Security Policy, frame and clickjacking protection, cross-origin sharing, cookie behavior, and related site settings. Identifies gaps and walks the user through fixes. Use when the user wants to review header
Ready to connect★ 859
- View details
scan-codeSkillSecurity
Scans a Power Pages site project for security issues in source code and dependencies. Runs static analysis and dependency scanning, then surfaces findings by category (code patterns, vulnerable packages, secrets, license issues). Use when the user wants to review code for security problems, check fo
Ready to connect★ 859
- View details
setup-authSkillSecurity
Use when the user asks to "set up authentication", "add login", "add logout", "add sign in", "enable auth", "add role-based access", "add authorization", "protect routes", "configure identity provider", "configure Entra ID", "configure Entra External ID", "configure OpenID Connect", "add OIDC", "set
Ready to connect★ 859
- View details
ms365-tenant-managerSkillSecurity
Guides your agent through Microsoft 365 admin tasks like setting up tenants, managing users, and writing security policies.
Ready to connect★ 861
- View details
tech-stack-evaluatorSkillSecurity
Lets your agent compare frameworks, cloud providers, and stacks with cost, security, and ecosystem scoring.
Ready to connect★ 861
- View details
skill-installationSkillSecurity
Use when reviewing, installing, configuring, activating, verifying, updating, or rolling back an AgentDock Skill; handles source verification, security assessment, environment configuration, and acceptance of installed versions.
Ready to connect★ 859
- View details
code-review-webSkillSecurity
Review web application code for bugs, security issues, performance problems, and stack-specific anti-patterns. Use this skill whenever the user wants to review code, debug a production issue, investigate a build failure, audit security, or check a PR before merging. Triggers on code review, review m
Ready to connect★ 841
- View details
dependency-managementSkillSecurity
Manage third-party libraries, runtimes, and SaaS dependencies. Use this skill when setting an update cadence, responding to security advisories, dealing with deprecated dependencies, evaluating new dependencies, auditing what's installed, or unblocking a dependency upgrade. Triggers on dependency, p
Ready to connect★ 841
- View details
dep-auditorSkillSecurity
Audit dependency vulnerabilities, version health, and license facts for Node.js, Python, Go, Rust, JVM, and Ruby projects; use when the user asks to inspect package., lockfiles, requirements, go.mod, Cargo.toml, pom.xml, or Gemfile.lock, or to generate an audit report in Chinese without changing dep
Ready to connect★ 832
- View details
skill-curatorSkillSecurity
Chinese-language Skill intake evaluator. Used to assess whether Claude Code, Codex, Agent Skills, Plugin, MCP, CLI, or Agent workflows on GitHub are worth adding to a curated list; it verifies real assets, installation methods, activity, duplicates, and security boundaries, and generates categories,
Ready to connect★ 832
- View details
commit-push-prSkillSecurity
Commit changes, push to GitHub, and open a PR. Includes quality checks (security, patterns, simplification). Use --quick to skip checks.
Ready to connect★ 838
- View details
electron-skillsSkillSecurity
Electron patterns for LlamaFarm Desktop. Covers main/renderer processes, IPC, security, and packaging.
Ready to connect★ 838
- View details
python-skillsSkillSecurity
Shared Python best practices for LlamaFarm. Covers patterns, async, typing, testing, error handling, and security.
Ready to connect★ 838
- View details
redteamSkillSecurity
Use when the user wants to test their LLM/agent application for safety and security vulnerabilities — jailbreaks, prompt injection, PII extraction, harmful content generation, or evaluator gaming. Also use when the user mentions security testing, adversarial testing, red teaming, safety evaluation,
Ready to connect★ 830
- View details
creating-claude-hooksSkillSecurity
Use when creating or publishing Claude Code hooks - covers executable format, event types, JSON I/O, exit codes, security requirements, and PRPM package structure
Ready to connect★ 822
- View details
github-oauth-nango-integrationSkillSecurity
Use when implementing GitHub OAuth + GitHub App authentication with Nango - provides two-connection pattern for user login and repo access with webhook handling
Ready to connect★ 822
- View details
connectSkillSecurity
Guide the connection of a known MCP integration to the plugin — looks up the connector registry via connector-status.py, checks current status, and returns transport-specific setup steps (OAuth for HTTP connectors, env-var credentials plus the exact .mcp.json block for npx connectors), verification
Ready to connect★ 814
- View details
CTF • Malware AnalysisSkillSecurity
For malware-style CTF challenges involving obfuscated scripts, malicious samples, custom encryption protocols, C2 traffic, PE/.NET binaries, RC4/AES communications, YARA, shellcode, process injection, and anti-analysis; trigger name: ctf-malware
Ready to connect★ 808
- View details
CTF•Beginner Entry PointSkillSecurity
A unified entry point for Chinese users and beginners, keeping the original two modes: 1) automatic routing, 2) brainstorming first, then routing. Routing targets can be either ctf-* or, during the web/API/vulnerability verification phase, enhanced to strix-*; suited for cases where the user doesn't
Ready to connect★ 808
- View details
CTF•Reverse EngineeringSkillSecurity
For reverse-engineering CTF challenges involving binaries, APKs, WASM, firmware, custom VMs, bytecode, game clients, malware-like loaders, and anti-debugging/anti-analysis logic; trigger word: ctf-reverse
Ready to connect★ 808
- View details
CTF•Super HubSkillSecurity
A unified master-control skill for CTF beginners and mixed challenges. Keeps the original two main modes: 1) automatic triage, 2) brainstorm first, then triage. Triage targets can be ctf-*, and can also be escalated to strix-* during Web/API/vulnerability verification stages; suitable for users who
Ready to connect★ 808
- View details
develop-timeline-studio-pluginSkillSecurity
Design, evaluate, implement, or review image and video generation connectors for Timeline Studio. Use when adding a provider plugin, extracting the generation plugin host or registry, or checking a connector against Timeline Studio's authentication, output, localization, and My assets contract. Do n
Ready to connect★ 808
- View details
Strix•Beginner EntrySkillSecurity
A unified entry point for Chinese users and beginners to Strix Lite: first determines which strix-* tool or vulnerability testing skill to use, then provides minimal getting-started steps; suited for situations in web security testing, toolchain usage, or vulnerability verification when unsure which
Ready to connect★ 808
- View details
Strix•Business Logic VulnerabilitiesSkillSecurity
Strix playbook for business logic vulnerability testing, covering flow bypass, state manipulation, and domain constraint violations; trigger word: strix-business-logic
Ready to connect★ 808
- View details
Strix•httpx UsageSkillSecurity
Manual for Strix httpx probe commands, covering probe parameters, output formats, and automated security usage; trigger name: strix-httpx
Ready to connect★ 808
- View details
Strix•JWT Authentication TestingSkillSecurity
Strix JWT and OIDC security testing playbook, covering token forgery, algorithm confusion, and claim tampering; trigger name: strix-authentication-jwt
Ready to connect★ 808
- View details
Strix•Open RedirectSkillSecurity
Strix open redirect testing playbook covering phishing redirects, OAuth token theft, and whitelist bypasses; trigger: strix-open-redirect
Ready to connect★ 808
- View details
Strix•Quick ScanSkillSecurity
Strix quick security assessment mode, for time-limited testing targeting high-impact vulnerabilities; trigger word: strix-quick
Ready to connect★ 808
- View details
Strix•Standard ScanSkillSecurity
Strix standard security assessment mode, balancing thoroughness and coverage; trigger name: strix-standard
Ready to connect★ 808
- View details
What is a skill?
A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.
52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.
Install one and every AI you use gets it
Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.
Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.