Skills.
Give your AI a better way to work.
A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.
Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.
Category: Security
1,738 results · page 44 of 58
- View details
solidity-scannerSkillSecurity
Use when the user wants to audit Solidity smart contracts for security vulnerabilities, scan EVM-compatible contracts for reentrancy, oracle manipulation, access-control, or flash-loan issues, review DeFi protocols on Ethereum, Arbitrum, Optimism, Base, Polygon, or BSC, or generate security audit re
Ready to connect★ 60
- View details
static-analysisSkillSecurity
Lets your agent scan code for security vulnerabilities using CodeQL and Semgrep analysis.
Ready to connect★ 60
- View details
sui-scannerSkillSecurity
Use when the user wants to audit Sui Move smart contracts, scan Sui-specific patterns including object ownership, shared objects, or dynamic fields, review Sui DeFi protocols for object model security issues, or analyze Sui-specific transaction and consensus patterns.
Ready to connect★ 60
- View details
plc-code-analysisSkillSecurity
Standalone skill for multi-perspective PLC code security and quality analysis. Triggers on: "review", "audit", "analyze", "security check", "vulnerability scan", "code review", "check this code", "is this safe", "find issues" when combined with PLC, SCL, ST, LAD, FBD, Structured Text, or block conte
Ready to connect★ 59
- View details
routeros-mac-telnetSkillSecurity
MAC-Telnet protocol (MikroTik Layer-2 terminal/exec over UDP 20561) wire format, session handshake, and MD5 + MTWEI (EC-SRP) authentication. Use when: implementing or debugging a MAC-Telnet client/server, reaching a RouterOS device by MAC address without IP, parsing MAC-Telnet packets, understanding
Ready to connect★ 59
- View details
- View details
api-developmentSkillSecurity
Build REST and RPC APIs in Frappe including whitelisted methods, authentication, and permission handling. Use when creating custom endpoints, integrating with external systems, or exposing business logic via API.
Ready to connect★ 58
- View details
audit-securitySkillSecurity
Use when asked to audit or harden security in this repo — e.g. "security audit", "auditoría de seguridad", "revisa la seguridad", "is this secure", "hardening", "vulnerabilities". Audits code, config, workflows, and secrets exposure. Covers injection, secrets, TLS, untrusted input, dependency risk,
Ready to connect★ 58
- View details
mstar-auditSkillSecurity
Morning Star codebase audit — survey any repository and produce prioritized, self-contained improvement plans for the normal Prepare → Execute flow. Strictly read-only on source code. Use when asked to audit or survey a codebase, find improvement opportunities (bugs, security, performance, test gaps
Ready to connect★ 57
- View details
achieving-cmmc-level-2-complianceSkillSecurity
Prepare a defense-contractor environment for CMMC Level 2 certification: scope CUI and FCI, implement the 110 NIST SP 800-171 Rev 2 security requirements across 14 families, compute the SPRS score with the DoD Assessment Methodology, manage a compliant POA&M, and ready the organization for a C3PAO a
Ready to connect★ 57
- View details
agent-governanceSkillSecurity
Implement hooks for permission control and security in custom agents. Use when adding security controls, blocking dangerous operations, implementing audit trails, or designing permission governance.
Ready to connect★ 57
- View details
auditing-mcp-servers-for-tool-poisoningSkillSecurity
Scan Model Context Protocol servers and tool metadata for poisoning, SSRF, and unauthenticated exposure.
Ready to connect★ 57
- View details
auditing-uefi-firmware-with-chipsecSkillSecurity
Use Intel CHIPSEC to assess platform firmware configuration, SPI flash write protection, BIOS lock, SMM/SMRR, and Secure Boot variable state, dump SPI flash, and triage UEFI variables for firmware-level threats.
Ready to connect★ 57
- View details
codex-gpt-imageSkillSecurity
Generate or edit images with gpt-image-2 through Codex/ChatGPT subscription authentication instead of OPENAI_API_KEY. Use for text-to-image, reference-image editing, or visual assets when the user wants local Codex auth, especially when no native image tool is available. Do not use for official Open
Ready to connect★ 57
- View details
compare-expert-market-share-estimates-against-agency-dataSkillSecurity
Closes gaps in independent arithmetic verification of concentration calculations, identification of methodology differences that explain divergent results, and cross-examination vulnerability assessment.
Ready to connect★ 57
- View details
continuous-llm-red-teaming-with-promptfooSkillSecurity
Wire Promptfoo and DeepTeam into CI/CD for automated regression red-teaming of LLM apps against OWASP LLM Top 10 and OWASP Agentic presets, failing the build when jailbreak or injection vulnerabilities regress.
Ready to connect★ 57
- View details
correlating-security-events-in-qradarSkillSecurity
'Correlates security events in IBM QRadar SIEM using AQL (Ariel Query
Ready to connect★ 57
- View details
deobfuscating-javascript-malwareSkillSecurity
'Deobfuscates malicious JavaScript code used in web-based attacks, phishing
Ready to connect★ 57
- View details
deobfuscating-powershell-obfuscated-malwareSkillSecurity
Systematically deobfuscate multi-layer PowerShell malware using AST analysis,
Ready to connect★ 57
- View details
detecting-malicious-npm-packagesSkillSecurity
Triage npm packages for install-script malware, exfiltration, and worming behavior.
Ready to connect★ 57
- View details
detecting-process-injection-techniquesSkillSecurity
'Detects and analyzes process injection techniques used by malware including
Ready to connect★ 57
- View details
eradicating-malware-from-infected-systemsSkillSecurity
Systematically remove malware, backdoors, and attacker persistence mechanisms
Ready to connect★ 57
- View details
extracting-iocs-from-malware-samplesSkillSecurity
'Extracts indicators of compromise (IOCs) from malware samples including
Ready to connect★ 57
- View details
generating-and-analyzing-sbomsSkillSecurity
Produce and ingest CycloneDX and SPDX SBOMs and correlate them to vulnerability intelligence.
Ready to connect★ 57
- View details
hr-securitySkillSecurity
Help HR managers, recruiters, and talent acquisition teams understand Cybersecurity, Application Security, Cloud Security, Security Operations, Penetration Testing, and modern security engineering workflows. Use when asked to explain cybersecurity, screen security engineers, understand SOC or AppSec
Ready to connect★ 57
- View details
kafka-security-auditSkillSecurity
Audit Kafka security configuration across the codebase and live cluster using the Lenses MCP server. Checks authentication (SASL), encryption (SSL/TLS), authorisation (ACLs), secrets management and environment tier mismatches. Use when user says "audit Kafka security", "check security config", "is m
Ready to connect★ 57
- View details
pinned-tagSkillSecurity
Manage pinned tags and commit SHAs for GitHub Actions security, resolving mutable tags to immutable commit references. Use when the task involves `Unpinned tag for a non-immutable Action`, `pin GitHub Action to commit SHA`, `resolve git tag to SHA`, or `GitHub Actions security hardening`.
Ready to connect★ 57
- View details
application-security-reviewSkillSecurity
application-security-review — Review application repos for concrete security issues, especially trust-boundary failures, prompt-injection paths, auth/proxy mistakes, validation gaps, and risky dependencies.
Ready to connect★ 56
- View details
CrowdStrike Fusion Workflow BuilderSkillSecurity
Create, validate, import, execute, and export CrowdStrike Falcon Fusion SOAR workflows. CRITICAL: You MUST run action_search.py to get real 32-char hex action IDs BEFORE writing any YAML. NEVER write PLACEHOLDER values for action IDs — resolve every ID via the live API first. Templates and example f
Ready to connect★ 56
- View details
hermes-config-editingSkillSecurity
hermes-config-editing — Edit Hermes Agent configuration values — settings, compression, model config — with reliable patterns that work around security guards and CLI quirks.
Ready to connect★ 56
What is a skill?
A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.
52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.
Install one and every AI you use gets it
Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.
Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.