153 skills found · Page 5 of 6
meltedinhex / writing-a-malware-analysis-reportAn open agent-skills library for malware analysis, reverse engineering, and threat hunting - 118 curated, runnable skills mapped to MITRE ATT&CK, D3FEND, and CAR.
Theycallmeholla / code-auditPerform a structured audit of a codebase covering security, code quality, performance, dependencies, architecture, and testing hygiene, then produce a prioritized findings report.
aurainfosec / ec2AWS EC2 virtual machine management for instances, AMIs, and networking
cloudthinker-ai / managing-filestack☁️ CloudSkills — Open-source skill collection by CloudThinker for VibeOps and AIOps. Community-driven operational intelligence modules for autonomous cloud infrastructure management across AWS, GCP, and Azure.
badowhp / senior-devops-engineerOperate infrastructure, CI/CD, and production safely. Use for IaC, cloud, containers, Kubernetes, observability, CDN/edge caching, rollout, rollback, reliability, and cost; use security-engineer for threats.
ajtazer / network-network-reconYou are helping a penetration tester perform network reconnaissance and service
tody-agent / cm-sprint-busUse to run the full sprint pipeline: brainstorm → plan → design → tdd → build → review → qa → security → ship → monitor → retro.
orcasecurity / orca-skillsSkills and plugins to accelerate security workflows with the Orca Cloud Platform
A MCP (Model Context Protocol) server to allow code security reviews using https://osv.dev (Open Source Vulnerabilities Database)
quantDIY / extensionsThis is the raw dev repo for "QuanuX" (Quant-Linux). Official releases are available via @QuanuX org. Quantitative Framework for Research, Development and Deployment of Proprietary Trading Strategies. Website under development.
iHildy / zodThis rule provides comprehensive guidelines for using the Zod library effectively, covering code organization, performance, security, and testing to ensure robust and maintainable type validation.
pufflyai / create-proposalCreate a proposal ticket. Use for new features, large refactors, breaking API or schema changes, architecture changes, security changes, or when the user asks to save a plan as a proposal.
dmauser / flow-analysisNetwork Desk - GitHub Copilot CLI extension pack: 20 specialist AI agents for cloud networking (Azure/AWS/GCP), firewalls (14 vendors), and report generation
rwi001 / mobile-security-coderExpert in secure mobile coding practices specializing in input validation, WebView security, and mobile-specific security patterns.
iHildy / zodThis rule provides comprehensive guidelines for using the Zod library effectively, covering code organization, performance, security, and testing to ensure robust and maintainable type validation.
Tomo-53 / security認可(ACL)・入力出力・機密情報の最優先セキュリティ規約(全セッション適用)
AgentsID-dev / agentsid-scannerSecurity scanner for MCP servers. Grades auth, permissions, injection risks, and tool safety. The Lighthouse of agent security.
carbonefederico / ai-telco-chatbot"dev:no-security": "NO_SECURITY=true node scripts/start-all.js", "dev:portal": "npm --workspace @telco-demo/portal run dev", "dev:agent": "npm --workspace @telco-demo/agent run dev", "dev:mcp": "npm --workspace @telco-demo/mcp-server run dev", "start:portal": "npm --workspace @telco-demo/portal star…
Cyreslab-AI / scan-mcpStatic security scanner for MCP servers — detects tool poisoning, injection, secrets, Dockerfile and dependency issues.
peixl / ifq-design-skillsAgent-native design skill: ordinary prompts -> verified HTML-first prototypes, decks, dashboards, motion demos, and export-ready visuals.
24601 / surreal-skillsExpert SurrealDB 3 skill for AI coding agents (Claude, Codex, Amp, Gemini CLI, Copilot, Cursor). SurrealQL, multi-model data modeling, graph queries, vector search, WASM extensions, and full ecosystem.
Raftersecurity / rafter-cliMulti-language CLI for Rafter — the security toolkit built for AI coding agents and the developers who use them.
majiayu000 / firebase-apk-scannerScans Android APKs for Firebase security misconfigurations including open databases, storage buckets, authentication issues, and exposed cloud functions
rosendolu / code-reviewReviews pull request diffs for correctness, security, maintainability, and test coverage
jazzmind / 003-zero-trust-authenticationA self-hosted AI platform that keeps your data on your infrastructure. Busibox integrates document processing, semantic search, AI agents, and custom applications into a single platform — running on Docker with enterprise-grade security baked in. Think of it as a Linux distribution for AI.
devopstales / skillgrid-gitnexusThe agent harness performance optimization system. Skills, instincts, memory, security, and research-first development for ai-agents.
MAEMO1 / 30-security-authVGM Website - Islamic community platform with Iftar map, mosque finder, and community features
henzard / RULEPayment processing with Stripe, security, PCI compliance, and transaction handling
TheAstrelo / qbTool-agnostic 13-phase AI development pipeline — turns a task description into reviewed, committed code through automated design, adversarial review, security, test, and code-review gates. One bash engine, balanced Opus/Sonnet routing, self-healing commit review.
TheAstrelo / qfTool-agnostic 13-phase AI development pipeline — turns a task description into reviewed, committed code through automated design, adversarial review, security, test, and code-review gates. One bash engine, balanced Opus/Sonnet routing, self-healing commit review.