Skills.
Give your AI a better way to work.
A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.
Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.
Category: Security
1,738 results · page 45 of 58
- View details
javaSkillSecurity
Modern Java practices: design, errors, concurrency, security, testing, tooling. Targets Java 21 LTS baseline; Java 25 LTS features called out explicitly. Use when writing or reviewing Java code.
Ready to connect★ 56
- View details
maliciousSkillSecurity
A test fixture that intentionally triggers all security checks in skill-lab
Ready to connect★ 56
- View details
mobile-pro-maxSkillSecurity
Mobile development intelligence. 12 domains, 9 stacks, 250+ entries. Actions: plan, build, create, design, implement, review, fix, improve, optimize, enhance, refactor, check mobile code. Domains: pattern, package, error, perf, test, security, interface, arch, idiom, anti, tooling, dependency. Stack
Ready to connect★ 56
- View details
phpSkillSecurity
Modern PHP 8.5 practices: type system, OOP, security, architecture, async, testing, tooling. Use when writing or reviewing PHP code.
Ready to connect★ 56
- View details
php-pro-maxSkillSecurity
PHP development intelligence. 12 domains, 8 stacks, 300+ entries. Actions: plan, build, create, design, implement, review, fix, improve, optimize, enhance, refactor, check PHP code. Domains: pattern, package, error, perf, test, security, interface, arch, idiom, anti, tooling, dependency. Stacks: lar
Ready to connect★ 56
- View details
security-warnSkillSecurity
Use when you need to test a skill that produces a security warning (not block).
Ready to connect★ 56
- View details
ai-llm-security-reviewSkillSecurity
Use for AI/LLM security assessments, prompt injection, RAG security, agent/tool permissioning, model supply chain, LLM red teaming, AI governance, eval design, data leakage, jailbreak testing, and secure AI application review.
Ready to connect★ 54
- View details
ai-threat-testingSkillSecurity
Offensive AI security testing and exploitation framework. Systematically tests LLM applications for OWASP Top 10 vulnerabilities including prompt injection, model extraction, data poisoning, and supply chain attacks. Integrates with pentest workflows to discover and exploit AI-specific threats.
Ready to connect★ 54
- View details
ai-verifySkillSecurity
Use when work has to be verified — "verify the feature", "did we build what was asked", "review this diff", "is it ready to commit" — by choosing the right verification tier (standalone, embedded, or chain) and producing verdicts with evidence, not impressions. Not for milestone-declared security au
Ready to connect★ 55
- View details
analyzing-android-malware-with-apktoolSkillSecurity
Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source
Ready to connect★ 54
- View details
analyzing-apt-group-with-mitre-navigatorSkillSecurity
Analyze advanced persistent threat (APT) group techniques using MITRE
Ready to connect★ 54
- View details
analyzing-command-and-control-communicationSkillSecurity
'Analyzes malware command-and-control (C2) communication protocols to
Ready to connect★ 54
- View details
analyzing-ethereum-smart-contract-vulnerabilitiesSkillSecurity
Perform static and symbolic analysis of Solidity smart contracts using Slither and Mythril to detect reentrancy,
Ready to connect★ 54
- View details
analyzing-golang-malware-with-ghidraSkillSecurity
Reverse engineer Go-compiled malware using Ghidra with specialized scripts
Ready to connect★ 54
- View details
analyzing-ios-app-security-with-objectionSkillSecurity
'Performs runtime mobile security exploration of iOS applications using Objection, a Frida-powered toolkit that
Ready to connect★ 54
- View details
analyzing-linux-elf-malwareSkillSecurity
'Analyzes malicious Linux ELF (Executable and Linkable Format) binaries
Ready to connect★ 54
- View details
analyzing-malware-behavior-with-cuckoo-sandboxSkillSecurity
'Executes malware samples in Cuckoo Sandbox to observe runtime behavior
Ready to connect★ 54
- View details
analyzing-malware-family-relationships-with-malpediaSkillSecurity
Use the Malpedia platform and API to research malware family relationships,
Ready to connect★ 54
- View details
analyzing-malware-persistence-with-autorunsSkillSecurity
Use Sysinternals Autoruns to systematically identify and analyze malware
Ready to connect★ 54
- View details
analyzing-malware-sandbox-evasion-techniquesSkillSecurity
Detect sandbox evasion techniques in malware samples by analyzing timing
Ready to connect★ 54
- View details
analyzing-network-covert-channels-in-malwareSkillSecurity
Detect and analyze covert communication channels used by malware including
Ready to connect★ 54
- View details
analyzing-network-traffic-of-malwareSkillSecurity
'Analyzes network traffic generated by malware during sandbox execution
Ready to connect★ 54
- View details
analyzing-packed-malware-with-upx-unpackerSkillSecurity
'Identifies and unpacks UPX-packed and other packed malware samples to
Ready to connect★ 54
- View details
analyzing-supply-chain-malware-artifactsSkillSecurity
Investigate supply chain attack artifacts including trojanized software
Ready to connect★ 54
- View details
analyzing-threat-actor-ttps-with-mitre-navigatorSkillSecurity
'Map advanced persistent threat (APT) group tactics, techniques, and
Ready to connect★ 54
- View details
analyzing-threat-intelligence-feedsSkillSecurity
'Analyzes structured and unstructured threat intelligence feeds to extract
Ready to connect★ 54
- View details
analyzing-threat-landscape-with-mispSkillSecurity
Analyze the threat landscape using MISP (Malware Information Sharing
Ready to connect★ 54
- View details
analyzing-typosquatting-domains-with-dnstwistSkillSecurity
Detect typosquatting, homograph phishing, and brand impersonation domains
Ready to connect★ 54
- View details
auditing-cloud-with-cis-benchmarksSkillSecurity
'This skill details how to conduct cloud security audits using Center
Ready to connect★ 54
- View details
authorization-gateSkillSecurity
Use as the pre-flight authorization check before any offensive, intrusive, or simulation activity — pentest, red team, exploitation, phishing simulation, wireless attacks, social engineering, C2, scanning a target you don't own. Confirms written authorization, scope boundaries, lawful basis, and tar
Ready to connect★ 54
What is a skill?
A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.
52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.
Install one and every AI you use gets it
Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.
Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.