SKILL.md packages that extend Claude Code, Cursor, Copilot, and other AI agents.
Tags

comeonoliver
Practical security practices for Anthropic Claude integrations: API key management, input validation, prompt-injection defenses, and output scanning.

claude-mcp-sentinel
Security monitoring and runtime protection for Claude Skills and MCP servers: static scans, update-diff analysis, threat intelligence, and an optional PreToolUs

pi
Manage Node.js packages and common npm workflows: install, run scripts, versioning, publish, and audits with safe dry-run guidance.

agent-skills
Provides expert guidance for Azure External Attack Surface Management (EASM): quotas, configuration, integrations, and exporting inventory to analytics platform

skills
Full CLI integration for Caido: search HTTP history, replay and edit requests, manage scopes, create findings, export curl PoCs, and control intercepts via the

claude-code-plugins-plus-skills
Security best practices for integrating Speak: API key management, audio data privacy, student data protection, and COPPA/FERPA compliance for production deploy

ai-toolkit
Project-specific Kotlin coding standards covering naming, null-safety, coroutines, testing, frameworks (Ktor, Spring), and security best practices.

agent-skills
Tauri v2 guidance for building small, secure desktop and mobile apps with web frontends and Rust backends — covers IPC, plugins, packaging, signing, and distrib

My CC Harness
Performs a dual-pass code review of the current branch using Codex (GPT) and Claude, producing structured findings and severity classifications.

cryptoskill
Comprehensive Ethereum (EVM) guidance for building, auditing, testing, and operating smart contracts, dApps, and onchain services.

MITRE ATT&CK Agent Skills
Defensive analysis skill for MITRE ATT&CK T1633.001 (System Checks) — aids triage, detection engineering, hunting, and emulation planning for mobile platforms.

uniswapv4-hooks-skill
Guides secure development, review, and auditing of Uniswap v4 hook contracts with threat models, permission guidance, and safe templates.

agent-bom
Monitor an agent fleet, surface trust scores, and run a local dashboard to inspect lifecycle and security signals.

claude-bughunter
Guided hunting methodology for server-side request forgery (SSRF): detection, OOB validation, payloads, bypass techniques, and escalation chains.

decepticon
High-volume codebase scanner that shards work, ranks suspicious locations, and promotes a concise set of candidates for deeper analysis.

nethereum
Practical examples and snippets for generating keys, creating accounts, and encrypting/decrypting keystores using Nethereum for .NET applications.

MITRE ATT&CK Agent Skills
Defensive analysis skill for MITRE ATT&CK T1560.003: helps map observations, produce detection ideas, and create triage and mitigation briefs for custom archive

openagentscontrol
Automated code review guidance focusing on security, correctness, and maintainability; used to validate changes before committing.

clawsec
Generate deterministic runtime attestations and perform fail-closed drift detection for Hermes-managed infrastructure.

cowork-os
Run a consensus-style multi-agent review of a pull request and produce severity-ranked findings and actionable remediation steps.

claudefiles
Run a 3-agent adversarial bug hunt (Hunter, Skeptic, Referee) to find and verify real bugs in a codebase.

openclaw-master-skills
Provides agents a funded identity (wallet, email) plus paid API tools: web search, image/video/music generation, SMS/voice, email, and an LLM gateway — useful w

agent-skills
Expert reference for Azure Database for MySQL: troubleshooting, architecture, security, configuration, migrations, backups, and deployment best practices.

skills
Scans codebases for rate-limiting and API throttling anti-patterns, producing actionable reports and CI-friendly output to prevent brute-force, retry storms, an

Prism Scanner
Open-source security scanner that detects malicious code, supply-chain risks, and residue in AI Agent skills, plugins, and MCP servers.

red-team-blue-team-agent-fabric
A comprehensive, defensive test suite that runs protocol and decision-layer security checks against AI agent systems to surface vulnerabilities before deploymen

joshft
Turn a feature idea into a structured, testable specification with configurable intensity, research, and STRIDE-backed invariants.

MITRE ATT&CK Agent Skills
Defensive analysis skill for MITRE ATT&CK T1569.001 (Launchctl): detection, triage, and mitigation guidance for macOS adversary activity.

reverse-engineering-assistant
Framework and playbook for discovering and exploiting memory-corruption vulnerabilities (buffer overflows, format strings, heap exploits, ROP) to capture CTF fl

claude-code-production-grade-plugin
Generates production-grade DevOps artifacts: containerization, CI/CD pipelines, Terraform IaC, monitoring, and security best-practices for autonomous deployment