agentleFS
Sign inSign up

Claude skills and agent skills

Skills real projects publish on GitHub, most starred first. Each one says what it will make an agent do before you copy it.

Best matches · from page 20Worked for most · soon
gtrabancoSkill

review-security

gtrabanco/agentic-workflow/skills/review-security/SKILL.md

Internal security review pass of the agentic-workflow review pack — composed in-turn by review-change and product-audit; not a menu entry. Checks secrets, input validation, injection, authn/authz, PII exposure, and dependency risk on the changed surface. Findings only; never edits code.

218d agoDiscuss
jim60105Skill

python-security

jim60105/copilot-prompt/skills/python-security/SKILL.md

Guideline for designing, implementing, and verifying secure Python applications following OWASP Top 10 best practices. Use when the user wants to: (1) review Python code for security vulnerabilities, (2) design a secure Python application architecture, (3) implement security features (authentication, authorization, cryptography, input validation), (4) audit Python dependencies for known vulnerabilities, (5) create security checklists or verification plans, (6) fix security bugs or harden existing Python code, (7) set up security testing and static analysis (bandit, safety, semgrep), or (8) handle any Python security concern including injection prevention, secure deserialization, SSRF protection, secrets management, and secure deployment.

213d agoReads credentialsDiscuss
wintermeyerSkill

heinzel-security

wintermeyer/heinzel/.claude/skills/heinzel-security/SKILL.md

Run a heinzel security audit on a server — SSH

9111d agoDiscuss
EyadkellehSkill

security-patterns

Eyadkelleh/awesome-skills-security/skills/security-patterns/SKILL.md

Sensitive data patterns for security testing: API keys, credit cards, emails, SSNs, phone numbers, IPs, and more. Use for data discovery and validation.

3844mo agoDiscuss
EyadkellehSkill

security-payloads

Eyadkelleh/awesome-skills-security/skills/security-payloads/SKILL.md

Essential exploitation payloads: anti-virus test files, file name exploits, malicious files. Curated for testing.

3844mo agoDiscuss
0xlayerghostSkill

solidity-security

0xlayerghost/solidity-agent-kit/skills/solidity-security/SKILL.md

[AUTO-INVOKE] MUST be invoked BEFORE writing or modifying any Solidity contract (.sol files). Covers private key handling, access control, reentrancy prevention, gas safety, and pre-audit checklists. Trigger: any task involving creating, editing, or reviewing .sol source files.

47mo agoReads credentialsDiscuss
AGMO-IncSkill

security-audit

AGMO-Inc/agmo-everywhere/skills/security-audit/SKILL.md

Use to perform a security audit of the codebase. Triggers on "보안 점검", "security audit". Delegates to architect agent.

47mo agoReads credentialsDiscuss
brunobracaioliSkill

security-check

brunobracaioli/business_dossie/.claude/skills/security-check/SKILL.md

Auditoria de segurança Security by Design. Use quando o usuário pedir "audite a segurança", "security review", "verifique vulnerabilidades", ou antes de subir feature pra produção. Cobre OWASP Top 10, gestão de secrets, AuthN/AuthZ, supply chain e logs.

45mo agoReads credentialsDiscuss
cdmx-inSkill

security-audit

cdmx-in/security-review/security-audit/SKILL.md

Use when the user asks for a security review, security audit, vulnerability scan, secret scan, dependency or CVE check, OWASP review, pentest review, compliance evidence, or asks "is this safe to ship". Runs real scanners (Semgrep, gitleaks, TruffleHog, Trivy, osv-scanner) over code, full git history, dependencies, IaC, and Supabase/Firebase row-level security, verifies each finding against source, and writes one severity-ranked report.

455d agoPipes a download into a shellDiscuss
claude-worldSkill

security-audit

claude-world/claude-agent/.claude/skills/security-audit/SKILL.md

Audit host security using built-in system tools (netstat, lsof, ss, ufw, systemctl, ps, who, last). Check open ports, running services, listening processes, firewall rules, and recent logins. No external CLI needed. Use when user says "security audit", "check open ports", "harden server", or "what's listening on my machine".

46mo agoDiscuss
Cogni-AI-OUSkill

security-audit

Cogni-AI-OU/cogni-ai-agent-skills/security-audit/SKILL.md

Commands, step-by-step procedures, and mechanical execution for performing deep security audits, vulnerability assessments, and report generation on codebases and configurations. You MUST load this skill when performing security audits or validation.

45mo agoDiscuss
gabrieldabbahSkill

security-audit

gabrieldabbah/genesis/skills/security-audit/SKILL.md

Audit a surface for security problems, score them honestly, and turn each into a task with a fix. Use before declaring work done, after wiring an integration, before a deploy handoff, or when the user says \"/security-audit\", \"check security\", \"audit this\", \"is this safe\". Builds the checklist from general application-security concerns plus the per-integration items in the integrations registry. Reports findings with severity, file:line and evidence; states which fixes it applied and which need a human decision; never prints secrets.

42mo agoDiscuss
gonimarSkill

security-audit

gonimar/claude-web-studio/skills/security-audit/SKILL.md

Audits the application against OWASP Top 10:2025 / ASVS for the project's stack — code review by appsec-engineer, tooling (vulnerability, secret and SAST scanners), CVSS-scored findings with fixes in docs/security/security-audit-<date>.md; modes full, quick, api, auth, infra, <path>. Required before release; use for 'security audit', 'is this secure', 'OWASP check', 'review the auth code'.

44d agoDiscuss
jLAM-ERRSkill

security-audit

jLAM-ERR/corp-llm-gateway/.claude/skills/security-audit/SKILL.md

Whole-repo leak-surface security audit of corp-llm-gateway against its zero-leak criterion and the 6 CLAUDE.md invariants — sanitizer coverage, NEVER-gate, auth/tokens, placeholder bijection, egress/DLP. Produces CONFIRMED/SUSPECTED findings with file:line + fixes. Use for "security audit", "sec-audit", "find leak paths", "do the invariants still hold". For reviewing a pending diff instead, use the built-in security-review.

43mo agoDiscuss
kelgirechandrakant-cpuSkill

security-audit

kelgirechandrakant-cpu/vibe-coding-playbook/skills/security-audit/SKILL.md

Security audit methodology. OWASP Top 10 + STRIDE threat model with zero-noise false positive filtering. Checks API key exposure, database rules, XSS vectors, CSRF, auth bypass. Use when handling user data or preparing for production.

445d agoDiscuss
kevinaimonsterSkill

security-audit

kevinaimonster/skill-hub/skills/security-audit/SKILL.md

帮用户对代码和项目进行全面的安全审计,覆盖 OWASP Top 10、依赖漏洞、敏感信息泄露、认证授权等。 触发词:安全审计、安全检查、漏洞扫描、安全评估、帮我查安全问题、这段代码安全吗、 security audit、OWASP、vulnerability scan、security review、安全漏洞检测、 依赖安全检查、敏感信息检查、代码安全分析、check security、find vulnerabilities。 输出结构化安全报告(高危/中危/低危 + 修复建议),逐项给出具体修复方案。

47mo agoReads credentialsDiscuss
KirillTrubitsynSkill

security-audit

KirillTrubitsyn/kirilltrubitsyn-claude-skills/.claude/skills/security-audit/SKILL.md

Комплексный аудит безопасности приложений, API, репозиториев, AI/agent-систем, MCP-интеграций, инфраструктуры и цепочки поставок. Использовать при явном запросе — «аудит безопасности», «security audit», «проверь на уязвимости», «security review», «threat model», «hardening», «проверка перед продакшеном», «prompt injection», «MCP security», — а также при secure-design review или планировании авторизованного пентеста. Не использовать для обычного code review, отладки или рефакторинга без запроса о безопасности.

440d agoDiscuss
KnowledgeXLabSkill

security-audit

KnowledgeXLab/preflight-skill/SKILL.md

Pre-release / open-source security audit. Scans for hardcoded credentials, dependency vulnerabilities, .gitignore gaps, and missing required files. Produces phased interactive results with a final archivable report.

46mo agoReads credentialsDiscuss
saitarrunSkill

security-audit

saitarrun/Devforge-ai/skills/security-audit/SKILL.md

This skill should be used when the user mentions keywords related to security-audit.

43mo agoDiscuss
senoritadeveloper01Skill

spring-security

senoritadeveloper01/claude-skills/.claude/skills/spring-security/SKILL.md

Use this skill when implementing or reviewing security in a Spring Boot application. Covers authentication, authorization, input validation, secure configuration, and API security best practices.

46mo agoDiscuss
CLAUDE.md vs AGENTS.md

About skills

What is a Claude skill?

A folder with a SKILL.md file: a name, a description of when to use it, and instructions. Claude loads a skill only when the task matches its description.

How do I use one I find here?

Copy the folder into your project's .claude/skills/ directory, or into your own skills folder to use it everywhere.

What do the warnings mean?

We read each file for commands that read secrets, delete things or pipe downloads into a shell, and say so before you copy it. No warning is not a promise that a file is safe.

Which skills worked for people?

Open a skill to see its discussion. Reports from people and their agents are coming.