SKILL.md packages that extend Claude Code, Cursor, Copilot, and other AI agents.
Tags

claude-plugins
Provides expert guidance for modern Rust systems programming: cargo workflows, ownership, async/concurrency (Tokio), testing, profiling, and tooling best practi

ai-factory
Generate production-ready Agent Skills and skill packages (SKILL.md, scripts, references, templates) following the Agent Skills spec; includes security scanning

gsd-skill-creator
Security hygiene guidelines for self-modifying agent systems: path sanitization, safe YAML handling, data poisoning checks, and staging/quarantine practices to

inertia-rails-skills
Practical guide for adding authentication and authorization to Inertia + Rails apps — covers Devise, has_secure_password, session sharing, permission props, and

claude-skills
Provides concrete guidance and code examples to implement authentication, authorization, input validation, and other defenses against OWASP Top 10 vulnerabiliti

frappe_claude_skill_package
Guidance and deterministic patterns for implementing Frappe/ERPNext permissions: roles, user permissions, perm levels, hooks, and data masking.

ai-safe2-framework
A governance and security copilot that applies the AI SAFE2 v3.0 framework to design, review, and govern agentic AI systems — mapping controls, scoring risk, an

solana-vibes-kit
Phase-based adversarial security audit pipeline for Solana/Anchor codebases: scan, analyze, strategize, investigate, and report with parallel auditors and a str

MITRE ATT&CK Agent Skills
Defensive analysis and guidance for MITRE ATT&CK technique T1098 (Account Manipulation): detection, triage, hunting, and mitigation planning for enterprise envi

auditware
Multi-framework AST generator and static analysis tool for smart contracts (Rust/Anchor/Stylus and Solidity/Foundry) with a template DSL for writing detection r

aiwg
Orchestrate automated SDLC gate validations with specialist subagents and synthesize a clear pass/fail report.

file-organizer-mcp
Developer guide and patterns for building and testing the File Organizer MCP server: secure path validation, tools, tests, and safe file operations.

marketplace
Comprehensive guide and practical snippets to design and harden APIs: authentication, input validation, rate limiting, data protection, and testing patterns to

claude-skills
Guides creation, configuration, publishing, and security best practices for GitHub Actions (JavaScript, Docker, and composite).

MITRE ATT&CK Agent Skills
Defensive analysis aid for MITRE ATT&CK T1564.001 to help triage, detection engineering, hunting, and incident response around hidden files and directories.

claude-code-templates
Guidance and patterns for creating event-driven hooks (PreToolUse, PostToolUse, Stop, SessionStart, etc.) for Claude Code plugins and projects.

droid-tings
Integrate Vercel Blob for secure file uploads, client-side presigned uploads, multipart transfers, and CDN-delivered assets in Next.js projects.

openclaw-security-monitor
Proactive security monitoring, threat scanning and automated remediation for OpenClaw deployments.

bug-hunter
Run an adversarial, sequential-first pipeline (Recon → Hunter → Skeptic → Referee) to find, verify, and optionally auto-fix runtime bugs and security issues acr

saas-security
Comprehensive SaaS security audit skill: run domain-based audits, generate checklists, classify risks, and produce prioritized remediation reports.

claude-skill-registry
Expert WordPress development guidance covering self-hosted setup (Docker/Nginx), theme and plugin development, performance tuning, and security hardening for pr

claude-code-security-skills
Three-phase code security audit: broad audit, false-positive filtering, and a concise report with prioritized fixes and confidence-scored findings.

hermes-skills
Use the Bitwarden Secrets Manager CLI (bws) to read, list, and inject secrets as environment variables or dotenv files for automated workflows.

openclaw-backup
Create, download, upload, and restore full OpenClaw instance backups (workspace, credentials, skills, agent history) with an optional local HTTP UI. Requires ca

awesome-omni-skills
Generate an evidence-backed, repository-specific threat model that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and prioritized miti

autonomous-dev
Patterns and safe templates for calling external APIs and CLI tools: subprocess safety, retries, auth handling, and rate-limit management.

openclaw-master-skills
Secure key-management patterns and operational guardrails for AI agents that need to handle private keys, session keys, and secrets safely.

claude-qq-channel
Manage QQ bot channel access: approve pairings, edit allowlists, and configure DM policy safely from a local terminal session.

comeonoliver
Practical security practices for Anthropic Claude integrations: API key management, input validation, prompt-injection defenses, and output scanning.

claude-mcp-sentinel
Security monitoring and runtime protection for Claude Skills and MCP servers: static scans, update-diff analysis, threat intelligence, and an optional PreToolUs