Skills.

Give your AI a better way to work.

A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.

Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.

Category: Security

1,738 results · page 12 of 58

  • graphql-auditSkillSecurity

    GraphQL API security specialist. Use for introspection analysis, query complexity attacks, injection testing, authorization bypass, and batching abuse on GraphQL endpoints.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • huntSkillSecurity

    Active vulnerability hunting on a target. Loads scope, reads brain, detects tech stack, runs targeted tests with concrete payloads. Usage: /hunt target.com [--vuln-class idor|xss|ssrf|sqli|ssti|oauth|rce|race|graphql|upload|business-logic|llm-ai]

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • hunt-info-disclosureSkillSecurity

    Hunting skill for Information Disclosure / Sensitive Data Exposure (CWE-200 / CWE-209 / CWE-215 / CWE-538 / CWE-668 / CWE-798). Built from 106 corpus reports plus 8K shared-platform reports across HackerOne, Bugcrowd, Huntr, GitHub Security Advisories, plus 2024-2026 meta verified against NVD — Spri

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • hunt-llm-aiSkillSecurity

    Hunting skill for LLM and Agentic AI vulnerabilities — direct + indirect prompt injection, ASCII smuggling data exfil, agentic tool-use abuse, system prompt leakage, vector DB cross-tenant, model server RCE, insecure output handling. Built from public bug bounty reports across HackerOne, Huntr, Proj

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • hunt-xssSkillSecurity

    Hunting skill for Cross-Site Scripting (XSS) — DOM-based, stored, reflected, mutation-based (mXSS), and modern variants. Built from public bug bounty reports across HackerOne, Intigriti, Bugcrowd, Huntr, and GitHub Security Advisories, plus 2024-2026 meta verified against NVD — DOMPurify nesting mXS

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • hunting-methodologySkillSecurity

    Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw — 48 agents, 26 commands, 19 CLI tools, 2 MCP servers, autonomous hunt loops, exploit chain builder.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • idor-hunterSkillSecurity

    IDOR / BOLA specialist (H1 #55, OWASP API1:2023). Use for testing insecure direct object references and broken object level authorization across web apps, APIs, GraphQL endpoints, multi-tenant SaaS, mobile, automotive/IoT, and AI inference servers.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • learnSkillSecurity

    Record a platform response and update learning. Usage: /learn <report_id> <status> [--bounty 500] [--vuln-type XSS]

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • llm-ai-hunterSkillSecurity

    LLM and Agentic AI vulnerability specialist. Covers OWASP LLM Top 10 v2025 (LLM01-LLM10) and OWASP Agentic AI Top 10 (AA-01..AA-10). Dispatcher passes subtype — 'prompt-injection', 'indirect-injection', 'tool-abuse', 'rag-poisoning', 'vector-idor', 'mcp', 'model-server', 'output-handling', or 'ascii

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • mindmapSkillSecurity

    Generate a text-based attack surface mindmap. Shows tech stack → vuln class → endpoint relationships. Usage: /mindmap <target>

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • newSkillSecurity

    Create a new engagement workspace. Usage: /new <platform> <program> [--type web-app|api|mobile|smart-contract]

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • nuclei-writerSkillSecurity

    Custom nuclei template builder. Use when you've found a pattern that should be checked across multiple targets or when existing templates miss a specific vulnerability. Provide the vulnerability details and detection logic.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • oauth-hunterSkillSecurity

    OAuth 2.0 / 2.1, OpenID Connect (OIDC), SAML SSO, and JWT specialist. Dispatcher passes subtype — 'oauth', 'oidc', 'saml', or 'jwt' — in the task; falls back to inference. Use for redirect_uri / returnTo flaws, state/nonce/PKCE bypass, alg confusion (none/HS-with-RS-key/kid/jku), SAML XSW + comment

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • open-redirectSkillSecurity

    Open Redirect specialist (H1 #38). Use for testing URL redirect parameters, login/logout flows, OAuth callbacks, and any endpoint that redirects based on user input.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • pentest-agents-hunting-methodologySkillSecurity

    Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw — 48 agents, 26 commands, 19 CLI tools, 2 MCP servers, autonomous hunt loops, exploit chain builder.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • pentest-agents-recon-methodologySkillSecurity

    Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw — 48 agents, 26 commands, 19 CLI tools, 2 MCP servers, autonomous hunt loops, exploit chain builder.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • pipelineSkillSecurity

    Prepare the battlefield — recon, scanning, and surface ranking. Stops before hunting. Run /hunt or /autopilot after. Usage: /pipeline or /pipeline <target>

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • poc-builderSkillSecurity

    Writes proof-of-concept exploit code and tests to demonstrate a confirmed security vulnerability.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • privilege-escalationSkillSecurity

    Privilege Escalation specialist (H1 #26). Use for testing vertical and horizontal privilege escalation, role manipulation, admin endpoint access, and permission boundary violations.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • qualitySkillSecurity

    Score a report draft before submission. Usage: /quality <draft-path-or-finding-description>

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • quality-checkSkillSecurity

    Report quality scorer. Use BEFORE submitting any report to validate completeness, clarity, title strength, CVSS accuracy, PoC quality, and overall report grade. Provide the draft report path or content.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • quickscanSkillSecurity

    Run a quick security scan on a target. Consults the Brain first, validates scope, runs passive recon + vuln scan in parallel.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • race-conditionSkillSecurity

    Race Condition specialist (H1 #29). Use for testing TOCTOU flaws, double-spend, parallel request abuse on balance operations, coupon redemption, and any non-idempotent state changes.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • rce-hunterSkillSecurity

    Remote Code Execution specialist (H1 #70). Use for testing command injection, template injection (SSTI), deserialization, expression language injection, and any vector that achieves server-side code execution.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • recon-rankerSkillSecurity

    Attack surface ranker. Takes recon output + brain data, produces P1/P2/Kill prioritized attack plan with concrete curl commands for each P1 target. Use after recon to decide what to test first.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • reportSkillSecurity

    Generate submission-ready reports for all confirmed findings. Runs dedup, PoC builder, quality check, and report writer. Usage: /report bounty or /report pentest

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • report-writingSkillSecurity

    Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw — 48 agents, 26 commands, 19 CLI tools, 2 MCP servers, autonomous hunt loops, exploit chain builder.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • sast-devils-advocateSkillSecurity

    Adversarial validator for SAST findings. Your ONLY job is to DISPROVE the candidate. Find every reason it's not exploitable. If you can't disprove it, it survives. Use via /sast command.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • sast-exploit-builderSkillSecurity

    Builds working exploits from confirmed SAST findings. Takes a confirmed crash, develops it into a full exploit. Tier 1 (DoS) → Tier 5 (code execution). Use via /sast command after PoC confirmation.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details
  • sast-gap-analyzerSkillSecurity

    Analyzes validation gaps in data flows. Takes traced flows and identifies where checks are missing, insufficient, or bypassable. The 'interaction reasoning' step — finds bugs that exist in the gaps between individually correct-looking code. MUST run on Opus. Use via /sast command.

    Ready to connect★ 908

    github.com/h-mmer/pentest-agents816 stars

    View details

What is a skill?

A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.

52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.

Install one and every AI you use gets it

Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.

Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.

See how to connect your AI