Skills.

Give your AI a better way to work.

A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.

Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.

Category: Security

1,738 results · page 36 of 58

  • apt-threat-huntSkillSecurity

    Use when hunting for advanced persistent threat (APT) actor activity,

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • basic-ioc-enrichmentSkillSecurity

    Use when conducting initial reputation and threat intelligence lookups

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • cloud-vulnerability-triageSkillSecurity

    Use when triaging cloud security posture vulnerabilities and contextualizing

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • detection-engineering-coverage-evaluationSkillSecurity

    Use when evaluating threat detection opportunities (TDOs), generating synthetic UDM events, evaluating Chronicle rule coverage, and drafting YARA-L 2.0 rules.

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • domain-get-gti-reportSkillSecurity

    Use when fetching GTI threat reputation and WHOIS intelligence for a

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • domain-get-secops-threat-intelSkillSecurity

    Use when retrieving Chronicle SecOps threat intelligence and IOC matches

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • enrich-iocSkillSecurity

    Use when standardizing multi-source threat intelligence enrichment for

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • group-casesSkillSecurity

    Use when clustering related security cases by common entities, campaigns,

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • hash-get-secops-threat-intelSkillSecurity

    Use when retrieving SecOps threat intelligence matches for a SHA256,

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • investigate-case-external-toolsSkillSecurity

    Use when enriching and verifying case artifacts with external threat

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • investigate-gti-collectionSkillSecurity

    Use when investigating a Google Threat Intelligence (GTI) Collection

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • ip-get-secops-threat-intelSkillSecurity

    Use when querying Chronicle SecOps threat intelligence feeds for an IP

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • pivot-on-ioc-gtiSkillSecurity

    Use when pivoting on GTI campaign identifiers, threat actors, and related

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • proactive-hunt-gti-campaignSkillSecurity

    Use when initiating threat hunting operations driven by GTI threat campaign

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • report-writing-guidelinesSkillSecurity

    Use when structuring, formatting, and refining professional cybersecurity

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • suspicious-login-triageSkillSecurity

    Use when triaging anomalous or suspicious user authentication events,

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • url-get-gti-reportSkillSecurity

    Use when retrieving GTI threat classification and URL category intelligence.

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • url-get-secops-threat-intelSkillSecurity

    Use when querying SecOps threat intelligence indicators for a specific

    Ready to connect★ 84

    github.com/dandye/adk_runbooks82 stars

    View details
  • apache-druid-securitySkillSecurity

    Security patching for Apache Druid - covers JavaScript execution vulnerabilities, sampler endpoint protection, and filter validation patterns.

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • cvss-score-extractionSkillSecurity

    Extract CVSS (Common Vulnerability Scoring System) scores from vulnerability data sources with proper fallback handling. This skill covers understanding CVSS v3, handling multiple score sources (NVD, GHSA, RedHat), implementing source priority logic, and dealing with missing scores in security repor

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • druid-javascript-rceSkillSecurity

    Apache Druid JavaScript RCE vulnerability (CVE-2021-25646) fix via @JacksonInject hardening and constructor validation.

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • druid-javascript-securitySkillSecurity

    Securing Apache Druid's JavaScript execution engine against code injection and security bypass attacks.

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • gohighlevel-stingerSkillSecurity

    GoHighLevel API authority - OAuth vs Private Integration Tokens, contacts/opportunities/calendars, inbound/outbound webhooks, rate limits, Marketplace apps. Use for GoHighLevel/HighLevel integration.

    Ready to connect★ 83

    github.com/legioncodeinc/vibe-coding-tools79 stars

    View details
  • jackson-inject-securitySkillSecurity

    Preventing Jackson @JacksonInject override attacks where JSON input can replace server-side injected values.

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • jackson-injection-securitySkillSecurity

    Security considerations for Jackson @JacksonInject - preventing JSON input from overriding injected values, covering CVE patterns and defense strategies.

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • java-patch-workflowSkillSecurity

    Workflow for creating and applying patches to Java projects - diff format, patch application, and Maven rebuilds for security fixes.

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • trivy-vulnerability-scanningSkillSecurity

    Use Trivy vulnerability scanner in offline mode to detect CVEs in npm dependencies and generate structured JSON reports.

    Ready to connect★ 83

    github.com/cxcscmu/skilllearnbench83 stars

    View details
  • laravelSkillSecurity

    Use when building or extending a Laravel 11/12 app — Eloquent models, migrations and relationships, routing with controllers and Form Requests, queues and background jobs, framework-native security (validation, mass-assignment, policies, signed URLs, rate limiting), and Pest/PHPUnit feature tests. N

    Ready to connect★ 82

    github.com/ericrisco/rsc-harness82 stars

    View details
  • b0SkillSecurity

    Delegate tasks to AI agents via Box0. Use when the user asks to review code, check security, run tests, compare tools, get multiple perspectives, research a topic, analyze data, write docs, or any task that could benefit from specialized or parallel execution. Also use when the user mentions agent n

    Ready to connect★ 81

    github.com/risingwavelabs/box081 stars

    View details
  • elixir-security-reviewSkillSecurity

    Reviews Elixir code for security vulnerabilities including code injection, atom exhaustion, and secret handling. Use when reviewing code handling user input, external data, or sensitive configuration.

    Ready to connect★ 81

    github.com/existential-birds/beagle81 stars

    View details

What is a skill?

A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.

52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.

Install one and every AI you use gets it

Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.

Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.

See how to connect your AI