143 agent skills
Best Security agent skills
Agent skills for security review, threat modelling, vulnerability scanning and secure coding. The most starred security agent skills are Wizard, Postgres Patterns and Ponytail Audit.
Updated Oct 7, 2026
Wizard
mattpocock/skills
Generate an interactive bash wizard that walks a human through steps only they can perform.
SecurityShellPostgres Patterns
affaan-m/ECC
PostgreSQL database patterns for query optimization, schema design, indexing, and security.
SecurityJavaScriptPonytail Audit
DietrichGebert/ponytail
Whole-repo audit for over-engineering. Like ponytail-review, but scans the entire codebase instead of a diff: a ranked list of what to delete, simplify, or replace with stdlib/native equivalents.
SecurityJavaScriptNext Bundle Optimizer
vercel/next.js
Audit and reduce Next.js browser initial-load work.
OfficialSecurityJavaScriptCloud
browser-use/browser-use
Documentation reference for using Browser Use Cloud — the hosted API and SDK for browser automation.
OfficialSecurityPythonSecurity And Hardening
addyosmani/agent-skills
Hardens code against vulnerabilities. Use when auditing an input handler for vulnerabilities, when handling user input, authentication, data storage, or external integrations, or when checking a…
SecurityJavaScriptDoubt Driven Development
addyosmani/agent-skills
Subjects every non-trivial decision to a fresh-context adversarial review before it stands.
SecurityJavaScriptBrowser Auth Flow
ruvnet/ruflo
Probe a site's authentication flow for redirect leaks, missing CSRF, weak session cookies, and OAuth misconfiguration; produces an auth findings.md.
SecurityTypeScriptBrowser Login
ruvnet/ruflo
Drive an authentication flow once, sanitize cookies through AIDefence, and vault a reusable cookie handle in browser-cookies for future sessions.
SecurityTypeScriptHyperframes CLI
heygen-com/hyperframes
Use the HyperFrames CLI development loop: init, add, catalog, capture, lint, check, snapshot, compare, grade-compare, preview, play, present, beats, keyframes, single or batch render, publish…
SecurityTypeScript007
sickn33/agentic-awesome-skills
Security audit, hardening, threat modeling (STRIDE/PASTA), Red/Blue Team, OWASP checks, code review, incident response, and infrastructure security for any project.
SecurityPythonAccesslint Diff
sickn33/agentic-awesome-skills
Diff a live page's accessibility violations against a baseline — by default compares uncommitted changes (stash-based), or pass --branch [] to diff against a branch.
SecurityPythonNature Response
Yuan1z0825/nature-skills
Draft, audit, or revise responses to peer review, revision cover letters, and marked-manuscript or LaTeX revision packages.
SecurityPythonOpen Code Review
alibaba/open-code-review
Performs AI-powered code review on Git changes using the ocr CLI from alibaba/open-code-review.
SecurityGoImprove Animations
emilkowalski/skills
Survey a codebase's animation and motion code as a senior motion advisor, then produce a prioritized audit and self-contained implementation plans for other agents (or cheaper models) to execute.
SecurityMarkdownAgent Owasp Compliance
github/awesome-copilot
Check any AI agent codebase against the OWASP Agentic Security Initiative (ASI) Top 10 risks.
OfficialSecurityJavaScriptClaude Md Improver
anthropics/claude-plugins-official
Audit and improve CLAUDE.md files in repositories.
OfficialSecurityPythonClaude Security
anthropics/claude-plugins-official
Claude Security: scan the codebase (the whole repository or a scoped part of it), scan changes (this branch's or a pull request's diff, or one commit), or suggest patches (findings turned into…
OfficialSecurityPythonOmp Roles
agentscope-ai/QwenPaw
Use this skill whenever you need the allowedtools / skills preset for a sub-agent role before calling spawnsubagent.
SecurityTypeScriptAgentmemory Config
rohitg00/agentmemory
Set up and diagnose local agentmemory, including MCP, environment variables, ports, and feature flags.
SecurityTypeScriptKnowledge Ops
alirezarezvani/claude-skills
Use when a Head of Ops, Knowledge Manager, or TPM-Internal needs to author, validate, or clean up company SOPs and internal runbooks (procurement intake, vendor offboarding, incident-comms cascade…
SecurityPythonCode Review
phuryn/pm-skills
Review code for actionable defects. Correctness is the core; performance and security are optional sub-cases of the same engine.
SecurityShipping Artifacts
phuryn/pm-skills
The durable documentation set that makes an AI-built (vibe-coded) app reviewable before shipping.
SecuritySecurity Audit
cloudflare/security-audit-skill
Security guidance and vulnerability review for codebases, APIs, services, CLI tools, libraries, and daemons.
OfficialSecurityJavaScriptLark Shared
larksuite/cli
Use for lark-cli setup/auth tasks: auth login/status/logout, user vs bot identity, business-domain permissions (--domain, including all/docs/drive), missing scopes, revoking authorization, or…
SecurityGoLark Mail
larksuite/cli
飞书邮箱:Use when user mentions 起草邮件、写邮件、草稿、发送/回复/转发邮件、查阅邮件、看邮件、搜索邮件、邮件文件夹、邮件标签、邮件联系人、监听新邮件、邮件收信规则等;use for mail/email intent only.
SecurityGoAnalyzing Ethereum Smart Contract Vulnerabilities
tradecatlabs/vibe-coding-cn
Perform static and symbolic analysis of Solidity smart contracts using Slither and Mythril to detect reentrancy, integer overflow, access control, and other vulnerability classes before deployment…
SecurityPythonAuditing Foundry Smart Contract Security
tradecatlabs/vibe-coding-cn
Pre-deployment security audit of Solidity smart contracts in a Foundry project.
SecurityPythonWeb3 Solidity Audit MCP
tradecatlabs/vibe-coding-cn
MCP server integrating Slither + Aderyn + SWC patterns into Claude Code for smart contract auditing.
SecurityPythonExperiment Audit
wanshuiyin/Auto-claude-code-research-in-sleep
Audit experiment integrity before claiming results.
SecurityPythonLean Formalize
wanshuiyin/Auto-claude-code-research-in-sleep
Develop and verify a mathematical proof in Lean, continue an incomplete Lean project, or audit whether it proves the original statement.
SecurityPythonMeta Apply
wanshuiyin/Auto-claude-code-research-in-sleep
Privileged applier that LANDS meta-optimize / corpus-audit patches the user approved — the ONLY skill permitted to mutate the skill corpus from a self-modification proposal, with cross-model jury…
SecurityPythonSkill Security Auditor
eigent-ai/eigent
Security auditing for code, configs, and infrastructure.
SecurityTypeScriptPrompt Guard
Orchestra-Research/AI-Research-SKILLs
Meta's 86M prompt injection and jailbreak detector.
SecurityTeXJava Architect
Jeffallan/claude-skills
Use when building, configuring, or debugging enterprise Java applications with Spring Boot 3.x, microservices, or reactive programming.
SecurityPythonChatgpt App Builder
mcp-use/mcp-use
Build, modify, debug, migrate, review, or verify TypeScript MCP servers and MCP Apps with mcp-use.
OfficialSecurityTypeScriptMCP Apps Builder
mcp-use/mcp-use
Build, modify, debug, migrate, review, or verify TypeScript MCP servers and MCP Apps with mcp-use.
OfficialSecurityTypeScriptMCP Builder
mcp-use/mcp-use
Build, modify, debug, migrate, review, or verify TypeScript MCP servers and MCP Apps with mcp-use.
OfficialSecurityTypeScriptOpenapi To MCP
mcp-use/mcp-use
Build and deploy an MCP server from an OpenAPI / Swagger spec using the mcp-use TypeScript SDK.
OfficialSecurityTypeScriptGsd Eval Review
open-gsd/gsd-core
Audit an executed AI phase's evaluation coverage and produce an EVAL-REVIEW.md remediation plan.
SecurityJavaScriptFixing Metadata
ibelick/ui-skills
Audit and fix HTML metadata including page titles, meta descriptions, canonical URLs, Open Graph tags, Twitter cards, favicons, JSON-LD structured data, and robots directives.
SecurityTypeScriptLeanback To Compose Tv Migration
android/skills
Provides instructions and architectural patterns for migrating Android TV applications from legacy Leanback UI Toolkit, Android Views, or Support Fragments to Jetpack Compose for TV (androidx.tv).
SecurityPythonAndroid Permissions Security
android/skills
Audits, detects gaps, and remediates Android permissions and IPC component security vulnerabilities.
SecurityPythonIssue Root Resolution
Gentleman-Programming/gentle-ai
Trigger: root audit, atacar la raíz, issue roots, backlog roots, mechanism map, deletion-driven fix, resolver issues de raíz, close outdated issues.
SecurityGoSkill Improver
Gentleman-Programming/gentle-ai
Trigger: improve skills, audit skills, refactor skills, skill quality.
SecurityGoAlgorand Vulnerability Scanner
trailofbits/skills
Scans Algorand smart contracts for 11 common vulnerabilities including rekeying attacks, unchecked transaction fees, missing field validations, and access control issues.
OfficialSecurityPythonAudit Prep Assistant
trailofbits/skills
Prepares codebases for security review using Trail of Bits' checklist.
OfficialSecurityPythonCairo Vulnerability Scanner
trailofbits/skills
Scans Cairo/StarkNet smart contracts for 6 critical vulnerabilities including felt252 arithmetic overflow, L1-L2 messaging issues, address conversion problems, and signature replay.
OfficialSecurityPython
Showing the top 48 of 143 by GitHub stars. Every entry is listed in the sitemap and the JSON API.
What is the best security agent skill?
By GitHub stars, Wizard is the most popular (278,361 stars), followed by Postgres Patterns and Ponytail Audit. Compare install options and required API keys on each page.
How are these agent skills chosen?
Skills come from skills.sh, the GitHub topics claude-skills, agent-skills, claude-code-skills and skills, and the major awesome lists. A skill is listed only if its SKILL.md has a valid name and a description of 80+ characters, it has a license (the repository's or its own), the repository has a commit in the last six months, and the repository has 100+ stars or the skill is listed on skills.sh. This first batch is curated for developers (coding, testing, DevOps, data, security, frontend and technical docs) and capped at about 1,000 skills, at most 25 per repository; more categories are coming.