Skills.
Give your AI a better way to work.
A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.
Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.
Category: Security
1,738 results · page 36 of 58
- View details
apt-threat-huntSkillSecurity
Use when hunting for advanced persistent threat (APT) actor activity,
Ready to connect★ 84
- View details
basic-ioc-enrichmentSkillSecurity
Use when conducting initial reputation and threat intelligence lookups
Ready to connect★ 84
- View details
cloud-vulnerability-triageSkillSecurity
Use when triaging cloud security posture vulnerabilities and contextualizing
Ready to connect★ 84
- View details
detection-engineering-coverage-evaluationSkillSecurity
Use when evaluating threat detection opportunities (TDOs), generating synthetic UDM events, evaluating Chronicle rule coverage, and drafting YARA-L 2.0 rules.
Ready to connect★ 84
- View details
domain-get-gti-reportSkillSecurity
Use when fetching GTI threat reputation and WHOIS intelligence for a
Ready to connect★ 84
- View details
domain-get-secops-threat-intelSkillSecurity
Use when retrieving Chronicle SecOps threat intelligence and IOC matches
Ready to connect★ 84
- View details
enrich-iocSkillSecurity
Use when standardizing multi-source threat intelligence enrichment for
Ready to connect★ 84
- View details
group-casesSkillSecurity
Use when clustering related security cases by common entities, campaigns,
Ready to connect★ 84
- View details
hash-get-secops-threat-intelSkillSecurity
Use when retrieving SecOps threat intelligence matches for a SHA256,
Ready to connect★ 84
- View details
investigate-case-external-toolsSkillSecurity
Use when enriching and verifying case artifacts with external threat
Ready to connect★ 84
- View details
investigate-gti-collectionSkillSecurity
Use when investigating a Google Threat Intelligence (GTI) Collection
Ready to connect★ 84
- View details
ip-get-secops-threat-intelSkillSecurity
Use when querying Chronicle SecOps threat intelligence feeds for an IP
Ready to connect★ 84
- View details
pivot-on-ioc-gtiSkillSecurity
Use when pivoting on GTI campaign identifiers, threat actors, and related
Ready to connect★ 84
- View details
proactive-hunt-gti-campaignSkillSecurity
Use when initiating threat hunting operations driven by GTI threat campaign
Ready to connect★ 84
- View details
report-writing-guidelinesSkillSecurity
Use when structuring, formatting, and refining professional cybersecurity
Ready to connect★ 84
- View details
suspicious-login-triageSkillSecurity
Use when triaging anomalous or suspicious user authentication events,
Ready to connect★ 84
- View details
url-get-gti-reportSkillSecurity
Use when retrieving GTI threat classification and URL category intelligence.
Ready to connect★ 84
- View details
url-get-secops-threat-intelSkillSecurity
Use when querying SecOps threat intelligence indicators for a specific
Ready to connect★ 84
- View details
apache-druid-securitySkillSecurity
Security patching for Apache Druid - covers JavaScript execution vulnerabilities, sampler endpoint protection, and filter validation patterns.
Ready to connect★ 83
- View details
cvss-score-extractionSkillSecurity
Extract CVSS (Common Vulnerability Scoring System) scores from vulnerability data sources with proper fallback handling. This skill covers understanding CVSS v3, handling multiple score sources (NVD, GHSA, RedHat), implementing source priority logic, and dealing with missing scores in security repor
Ready to connect★ 83
- View details
druid-javascript-rceSkillSecurity
Apache Druid JavaScript RCE vulnerability (CVE-2021-25646) fix via @JacksonInject hardening and constructor validation.
Ready to connect★ 83
- View details
druid-javascript-securitySkillSecurity
Securing Apache Druid's JavaScript execution engine against code injection and security bypass attacks.
Ready to connect★ 83
- View details
gohighlevel-stingerSkillSecurity
GoHighLevel API authority - OAuth vs Private Integration Tokens, contacts/opportunities/calendars, inbound/outbound webhooks, rate limits, Marketplace apps. Use for GoHighLevel/HighLevel integration.
Ready to connect★ 83
- View details
jackson-inject-securitySkillSecurity
Preventing Jackson @JacksonInject override attacks where JSON input can replace server-side injected values.
Ready to connect★ 83
- View details
jackson-injection-securitySkillSecurity
Security considerations for Jackson @JacksonInject - preventing JSON input from overriding injected values, covering CVE patterns and defense strategies.
Ready to connect★ 83
- View details
java-patch-workflowSkillSecurity
Workflow for creating and applying patches to Java projects - diff format, patch application, and Maven rebuilds for security fixes.
Ready to connect★ 83
- View details
trivy-vulnerability-scanningSkillSecurity
Use Trivy vulnerability scanner in offline mode to detect CVEs in npm dependencies and generate structured JSON reports.
Ready to connect★ 83
- View details
laravelSkillSecurity
Use when building or extending a Laravel 11/12 app — Eloquent models, migrations and relationships, routing with controllers and Form Requests, queues and background jobs, framework-native security (validation, mass-assignment, policies, signed URLs, rate limiting), and Pest/PHPUnit feature tests. N
Ready to connect★ 82
- View details
b0SkillSecurity
Delegate tasks to AI agents via Box0. Use when the user asks to review code, check security, run tests, compare tools, get multiple perspectives, research a topic, analyze data, write docs, or any task that could benefit from specialized or parallel execution. Also use when the user mentions agent n
Ready to connect★ 81
- View details
elixir-security-reviewSkillSecurity
Reviews Elixir code for security vulnerabilities including code injection, atom exhaustion, and secret handling. Use when reviewing code handling user input, external data, or sensitive configuration.
Ready to connect★ 81
What is a skill?
A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.
52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.
Install one and every AI you use gets it
Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.
Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.