Skills.

Give your AI a better way to work.

A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.

Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.

Category: Security

1,738 results · page 44 of 58

  • solidity-scannerSkillSecurity

    Use when the user wants to audit Solidity smart contracts for security vulnerabilities, scan EVM-compatible contracts for reentrancy, oracle manipulation, access-control, or flash-loan issues, review DeFi protocols on Ethereum, Arbitrum, Optimism, Base, Polygon, or BSC, or generate security audit re

    Ready to connect★ 60

    github.com/0x-shashi/web3-audit-skills57 stars

    View details
  • static-analysisSkillSecurity

    Lets your agent scan code for security vulnerabilities using CodeQL and Semgrep analysis.

    Ready to connect★ 60

    github.com/0x-shashi/web3-audit-skills57 stars

    View details
  • sui-scannerSkillSecurity

    Use when the user wants to audit Sui Move smart contracts, scan Sui-specific patterns including object ownership, shared objects, or dynamic fields, review Sui DeFi protocols for object model security issues, or analyze Sui-specific transaction and consensus patterns.

    Ready to connect★ 60

    github.com/0x-shashi/web3-audit-skills57 stars

    View details
  • plc-code-analysisSkillSecurity

    Standalone skill for multi-perspective PLC code security and quality analysis. Triggers on: "review", "audit", "analyze", "security check", "vulnerability scan", "code review", "check this code", "is this safe", "find issues" when combined with PLC, SCL, ST, LAD, FBD, Structured Text, or block conte

    Ready to connect★ 59

    github.com/czarnak/totally-integrated-claude59 stars

    View details
  • routeros-mac-telnetSkillSecurity

    MAC-Telnet protocol (MikroTik Layer-2 terminal/exec over UDP 20561) wire format, session handshake, and MD5 + MTWEI (EC-SRP) authentication. Use when: implementing or debugging a MAC-Telnet client/server, reaching a RouterOS device by MAC address without IP, parsing MAC-Telnet packets, understanding

    Ready to connect★ 59

    github.com/tikoci/routeros-skills58 stars

    View details
  • sshSkillSecurity

    SSH management and security

    Ready to connect★ 59

    github.com/chaterm/terminal-skills59 stars

    View details
  • api-developmentSkillSecurity

    Build REST and RPC APIs in Frappe including whitelisted methods, authentication, and permission handling. Use when creating custom endpoints, integrating with external systems, or exposing business logic via API.

    Ready to connect★ 58

    github.com/lubusin/frappe-skills58 stars

    View details
  • audit-securitySkillSecurity

    Use when asked to audit or harden security in this repo — e.g. "security audit", "auditoría de seguridad", "revisa la seguridad", "is this secure", "hardening", "vulnerabilities". Audits code, config, workflows, and secrets exposure. Covers injection, secrets, TLS, untrusted input, dependency risk,

    Ready to connect★ 58

    github.com/sazardev/networking-with-go57 stars

    View details
  • mstar-auditSkillSecurity

    Morning Star codebase audit — survey any repository and produce prioritized, self-contained improvement plans for the normal Prepare → Execute flow. Strictly read-only on source code. Use when asked to audit or survey a codebase, find improvement opportunities (bugs, security, performance, test gaps

    Ready to connect★ 57

    github.com/btspoony/mstar-harness58 stars

    View details
  • achieving-cmmc-level-2-complianceSkillSecurity

    Prepare a defense-contractor environment for CMMC Level 2 certification: scope CUI and FCI, implement the 110 NIST SP 800-171 Rev 2 security requirements across 14 families, compute the SPRS score with the DoD Assessment Methodology, manage a compliant POA&M, and ready the organization for a C3PAO a

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • agent-governanceSkillSecurity

    Implement hooks for permission control and security in custom agents. Use when adding security controls, blocking dangerous operations, implementing audit trails, or designing permission governance.

    Ready to connect★ 57

    github.com/diegosouzapw/awesome-omni-skill57 stars

    View details
  • auditing-mcp-servers-for-tool-poisoningSkillSecurity

    Scan Model Context Protocol servers and tool metadata for poisoning, SSRF, and unauthenticated exposure.

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • auditing-uefi-firmware-with-chipsecSkillSecurity

    Use Intel CHIPSEC to assess platform firmware configuration, SPI flash write protection, BIOS lock, SMM/SMRR, and Secure Boot variable state, dump SPI flash, and triage UEFI variables for firmware-level threats.

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • codex-gpt-imageSkillSecurity

    Generate or edit images with gpt-image-2 through Codex/ChatGPT subscription authentication instead of OPENAI_API_KEY. Use for text-to-image, reference-image editing, or visual assets when the user wants local Codex auth, especially when no native image tool is available. Do not use for official Open

    Ready to connect★ 57

    github.com/ningzimu/codex-gpt-image57 stars

    View details
  • compare-expert-market-share-estimates-against-agency-dataSkillSecurity

    Closes gaps in independent arithmetic verification of concentration calculations, identification of methodology differences that explain divergent results, and cross-examination vulnerability assessment.

    Ready to connect★ 57

    github.com/sunyifeisb-art/legalwork56 stars

    View details
  • continuous-llm-red-teaming-with-promptfooSkillSecurity

    Wire Promptfoo and DeepTeam into CI/CD for automated regression red-teaming of LLM apps against OWASP LLM Top 10 and OWASP Agentic presets, failing the build when jailbreak or injection vulnerabilities regress.

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • correlating-security-events-in-qradarSkillSecurity

    'Correlates security events in IBM QRadar SIEM using AQL (Ariel Query

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • deobfuscating-javascript-malwareSkillSecurity

    'Deobfuscates malicious JavaScript code used in web-based attacks, phishing

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • deobfuscating-powershell-obfuscated-malwareSkillSecurity

    Systematically deobfuscate multi-layer PowerShell malware using AST analysis,

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • detecting-malicious-npm-packagesSkillSecurity

    Triage npm packages for install-script malware, exfiltration, and worming behavior.

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • detecting-process-injection-techniquesSkillSecurity

    'Detects and analyzes process injection techniques used by malware including

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • eradicating-malware-from-infected-systemsSkillSecurity

    Systematically remove malware, backdoors, and attacker persistence mechanisms

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • extracting-iocs-from-malware-samplesSkillSecurity

    'Extracts indicators of compromise (IOCs) from malware samples including

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • generating-and-analyzing-sbomsSkillSecurity

    Produce and ingest CycloneDX and SPDX SBOMs and correlate them to vulnerability intelligence.

    Ready to connect★ 57

    github.com/adriannoes/awesome-agentic-ai57 stars

    View details
  • hr-securitySkillSecurity

    Help HR managers, recruiters, and talent acquisition teams understand Cybersecurity, Application Security, Cloud Security, Security Operations, Penetration Testing, and modern security engineering workflows. Use when asked to explain cybersecurity, screen security engineers, understand SOC or AppSec

    Ready to connect★ 57

    github.com/tuanductran/hr-skills54 stars

    View details
  • kafka-security-auditSkillSecurity

    Audit Kafka security configuration across the codebase and live cluster using the Lenses MCP server. Checks authentication (SASL), encryption (SSL/TLS), authorisation (ACLs), secrets management and environment tier mismatches. Use when user says "audit Kafka security", "check security config", "is m

    Ready to connect★ 57

    github.com/lensesio/agentic-engineering-for-apache-kafka57 stars

    View details
  • pinned-tagSkillSecurity

    Manage pinned tags and commit SHAs for GitHub Actions security, resolving mutable tags to immutable commit references. Use when the task involves `Unpinned tag for a non-immutable Action`, `pin GitHub Action to commit SHA`, `resolve git tag to SHA`, or `GitHub Actions security hardening`.

    Ready to connect★ 57

    github.com/dallay/agentsync57 stars

    View details
  • application-security-reviewSkillSecurity

    application-security-review — Review application repos for concrete security issues, especially trust-boundary failures, prompt-injection paths, auth/proxy mistakes, validation gaps, and risky dependencies.

    Ready to connect★ 56

    github.com/atlasomnia/hermes-custom-pack55 stars

    View details
  • CrowdStrike Fusion Workflow BuilderSkillSecurity

    Create, validate, import, execute, and export CrowdStrike Falcon Fusion SOAR workflows. CRITICAL: You MUST run action_search.py to get real 32-char hex action IDs BEFORE writing any YAML. NEVER write PLACEHOLDER values for action IDs — resolve every ID via the live API first. Templates and example f

    Ready to connect★ 56

    github.com/eth0izzle/security-skills56 stars

    View details
  • hermes-config-editingSkillSecurity

    hermes-config-editing — Edit Hermes Agent configuration values — settings, compression, model config — with reliable patterns that work around security guards and CLI quirks.

    Ready to connect★ 56

    github.com/atlasomnia/hermes-custom-pack55 stars

    View details

What is a skill?

A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.

52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.

Install one and every AI you use gets it

Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.

Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.

See how to connect your AI