SKILL.md packages that extend Claude Code, Cursor, Copilot, and other AI agents.
Tags

copilot-prompts
Perform structured C# code reviews covering naming, performance, security, readability, and .NET best practices.

asdfgh1445
A comprehensive quick-reference skill for CTF binary exploitation: buffer overflows, format strings, heap techniques, ROP, ret2libc, shellcode, kernel exploits

ai-helpers
Run a six-specialist reviewer panel on an Architectural Decision Record (ADR) and produce a consolidated PDF report and PPTX slide deck to surface risks, recomm

orchestkit
Deep pull-request code review using parallel specialized agents (quality, security, tests, architecture, performance) and synthesized review reports for approve

orchestkit
Run comprehensive verification: parallel agents for tests, security, coverage, grading and improvement suggestions; produces evidence-backed verification report

audit-flow
Interactive system flow tracing with SQLite persistence and Mermaid export for security audits, debugging, architecture reviews and post-mortems.

Claude Code Workflows
Opinionated, language-agnostic principles for writing maintainable, readable, and secure code — use when implementing features, refactoring, or reviewing code q

EloPhanto (React agent)
Opinionated Solana dApp and program development skill: wallet UX, Anchor/Pinocchio programs, testing (LiteSVM/Surfpool), and migration/security checklists for p

xianzhi-research
A structured vulnerability research framework distilled from 5600+ security docs, covering web injection, deserialization, binary exploitation, domain pentest,

vibe-check
Present fixable issues from a vibe-check assessment and apply agent-assisted fixes only after explicit user approval.

agent-skills-standard
Opinionated REST API design conventions: HTTP verbs, status codes, URL patterns, versioning, pagination, and OpenAPI requirements for reliable, versioned APIs.

comeonoliver
Guidelines and CLI recipes for safely adding, upgrading, auditing and managing Go dependencies, including govulncheck, go.mod practices, vendoring, and automate

dotfiles
Performs multi-axis code review (correctness, readability, architecture, security, performance) and provides a structured checklist and severity-labelled feedba

agent-toolkit-for-aws
Verified corrections and edge-case guidance for AWS IAM, STS, Organizations, SAML, and policy evaluation to avoid common authorization mistakes.

skills
Returns docs-grounded guidance and exact GitHub docs links for writing, explaining, migrating, securing, or troubleshooting GitHub Actions workflows.

ctf-skills
Generate a concise, reproducible submission-style CTF writeup with a one-path solution script, metadata, and a short checklist for fast verification.

developer-docs
Comprehensive developer integration guide for World ID (IDKit) to add proof-of-human, document verification, or selfie checks into apps across web and native pl

claude-code-templates
Guides creating Hookify rule files (.claude/hookify.*.local.md) to detect patterns (dangerous commands, secrets, debug logs) and show warnings or block actions.

crucible
Adversarial review skill: iteratively attack artifacts (designs, plans, code, docs) and surface fatal/significant issues until clean or escalation.

ethskills
Practical guide and patterns for smart contract tests using Foundry: unit tests, fuzzing, fork tests, and invariants to catch economic and integration bugs.

scv-scan
Audit Solidity smart contract codebases for security vulnerabilities using a structured cheatsheet-driven sweep and selective deep validation, producing severit

ai-agents
Structured multi-step codebase analysis producing prioritized findings with file:line evidence for architecture, security and quality reviews

aws-agent-skills
面向代理的 AWS S3 使用指南:创建/配置桶、对象操作、生命周期策略、权限与预签名 URL 等常见运维与开发模式的操作模板。

borda
Comprehensive multi-agent code review of local Python files or git diffs.

agent-toolkit-for-aws
Verified guidance on AWS IAM edge-cases, pitfalls, and gotchas for agents working with roles, policies, STS, Organizations, and SAML/MFA.

ctf-skills
Reference of cryptographic attack techniques and tools for CTF challenges (RSA, AES, ECC, lattices, PRNGs, padding oracles, and more).

clawsec
Automated, multi-engine vulnerability scanner for agent platforms that runs dependency scans, SAST, CVE enrichment and agent-specific DAST harnesses to surface

springboot-skills-marketplace
Run focused, evidence-based code reviews for Java 25 and Spring Boot 4 projects — migration risks, architecture boundaries, null-safety (JSpecify), security, an

crypto-project-security-skill
Run a structured risk analysis of a DeFi protocol covering smart contracts, governance/admin keys, oracle design, economic mechanisms, and incident history.

opentelemetry-skill
Expert OpenTelemetry observability skill for designing collectors, pipelines, sampling, cardinality management, security, and production-ready deployment patter