Skills.

Give your AI a better way to work.

A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.

Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.

Category: Security

1,738 results · page 14 of 58

  • manage-headersSkillSecurity

    Inspects and configures the security headers a Power Pages site sends to browsers — Content Security Policy, frame and clickjacking protection, cross-origin sharing, cookie behavior, and related site settings. Identifies gaps and walks the user through fixes. Use when the user wants to review header

    Ready to connect★ 859

    github.com/microsoft/power-platform-skills867 stars

    View details
  • scan-codeSkillSecurity

    Scans a Power Pages site project for security issues in source code and dependencies. Runs static analysis and dependency scanning, then surfaces findings by category (code patterns, vulnerable packages, secrets, license issues). Use when the user wants to review code for security problems, check fo

    Ready to connect★ 859

    github.com/microsoft/power-platform-skills867 stars

    View details
  • setup-authSkillSecurity

    Use when the user asks to "set up authentication", "add login", "add logout", "add sign in", "enable auth", "add role-based access", "add authorization", "protect routes", "configure identity provider", "configure Entra ID", "configure Entra External ID", "configure OpenID Connect", "add OIDC", "set

    Ready to connect★ 859

    github.com/microsoft/power-platform-skills867 stars

    View details
  • ms365-tenant-managerSkillSecurity

    Guides your agent through Microsoft 365 admin tasks like setting up tenants, managing users, and writing security policies.

    Ready to connect★ 861

    github.com/alirezarezvani/claude-code-skill-factory862 stars

    View details
  • tech-stack-evaluatorSkillSecurity

    Lets your agent compare frameworks, cloud providers, and stacks with cost, security, and ecosystem scoring.

    Ready to connect★ 861

    github.com/alirezarezvani/claude-code-skill-factory862 stars

    View details
  • skill-installationSkillSecurity

    Use when reviewing, installing, configuring, activating, verifying, updating, or rolling back an AgentDock Skill; handles source verification, security assessment, environment configuration, and acceptance of installed versions.

    Ready to connect★ 859

    github.com/uvwt/agentdock859 stars

    View details
  • code-review-webSkillSecurity

    Review web application code for bugs, security issues, performance problems, and stack-specific anti-patterns. Use this skill whenever the user wants to review code, debug a production issue, investigate a build failure, audit security, or check a PR before merging. Triggers on code review, review m

    Ready to connect★ 841

    github.com/rampstackco/claude-skills854 stars

    View details
  • dependency-managementSkillSecurity

    Manage third-party libraries, runtimes, and SaaS dependencies. Use this skill when setting an update cadence, responding to security advisories, dealing with deprecated dependencies, evaluating new dependencies, auditing what's installed, or unblocking a dependency upgrade. Triggers on dependency, p

    Ready to connect★ 841

    github.com/rampstackco/claude-skills854 stars

    View details
  • dep-auditorSkillSecurity

    Audit dependency vulnerabilities, version health, and license facts for Node.js, Python, Go, Rust, JVM, and Ruby projects; use when the user asks to inspect package., lockfiles, requirements, go.mod, Cargo.toml, pom.xml, or Gemfile.lock, or to generate an audit report in Chinese without changing dep

    Ready to connect★ 832

    github.com/laolaoshiren/claude-code-skills-zh839 stars

    View details
  • skill-curatorSkillSecurity

    Chinese-language Skill intake evaluator. Used to assess whether Claude Code, Codex, Agent Skills, Plugin, MCP, CLI, or Agent workflows on GitHub are worth adding to a curated list; it verifies real assets, installation methods, activity, duplicates, and security boundaries, and generates categories,

    Ready to connect★ 832

    github.com/laolaoshiren/claude-code-skills-zh839 stars

    View details
  • commit-push-prSkillSecurity

    Commit changes, push to GitHub, and open a PR. Includes quality checks (security, patterns, simplification). Use --quick to skip checks.

    Ready to connect★ 838

    github.com/llama-farm/llamafarm837 stars

    View details
  • electron-skillsSkillSecurity

    Electron patterns for LlamaFarm Desktop. Covers main/renderer processes, IPC, security, and packaging.

    Ready to connect★ 838

    github.com/llama-farm/llamafarm837 stars

    View details
  • python-skillsSkillSecurity

    Shared Python best practices for LlamaFarm. Covers patterns, async, typing, testing, error handling, and security.

    Ready to connect★ 838

    github.com/llama-farm/llamafarm837 stars

    View details
  • redteamSkillSecurity

    Use when the user wants to test their LLM/agent application for safety and security vulnerabilities — jailbreaks, prompt injection, PII extraction, harmful content generation, or evaluator gaming. Also use when the user mentions security testing, adversarial testing, red teaming, safety evaluation,

    Ready to connect★ 830

    github.com/agentscope-ai/openjudge830 stars

    View details
  • creating-claude-hooksSkillSecurity

    Use when creating or publishing Claude Code hooks - covers executable format, event types, JSON I/O, exit codes, security requirements, and PRPM package structure

    Ready to connect★ 822

    github.com/agentworkforce/relay822 stars

    View details
  • github-oauth-nango-integrationSkillSecurity

    Use when implementing GitHub OAuth + GitHub App authentication with Nango - provides two-connection pattern for user login and repo access with webhook handling

    Ready to connect★ 822

    github.com/agentworkforce/relay822 stars

    View details
  • connectSkillSecurity

    Guide the connection of a known MCP integration to the plugin — looks up the connector registry via connector-status.py, checks current status, and returns transport-specific setup steps (OAuth for HTTP connectors, env-var credentials plus the exact .mcp.json block for npx connectors), verification

    Ready to connect★ 814

    github.com/indranilbanerjee/digital-marketing-pro814 stars

    View details
  • CTF • Malware AnalysisSkillSecurity

    For malware-style CTF challenges involving obfuscated scripts, malicious samples, custom encryption protocols, C2 traffic, PE/.NET binaries, RC4/AES communications, YARA, shellcode, process injection, and anti-analysis; trigger name: ctf-malware

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • CTF•Beginner Entry PointSkillSecurity

    A unified entry point for Chinese users and beginners, keeping the original two modes: 1) automatic routing, 2) brainstorming first, then routing. Routing targets can be either ctf-* or, during the web/API/vulnerability verification phase, enhanced to strix-*; suited for cases where the user doesn't

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • CTF•Reverse EngineeringSkillSecurity

    For reverse-engineering CTF challenges involving binaries, APKs, WASM, firmware, custom VMs, bytecode, game clients, malware-like loaders, and anti-debugging/anti-analysis logic; trigger word: ctf-reverse

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • CTF•Super HubSkillSecurity

    A unified master-control skill for CTF beginners and mixed challenges. Keeps the original two main modes: 1) automatic triage, 2) brainstorm first, then triage. Triage targets can be ctf-*, and can also be escalated to strix-* during Web/API/vulnerability verification stages; suitable for users who

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • develop-timeline-studio-pluginSkillSecurity

    Design, evaluate, implement, or review image and video generation connectors for Timeline Studio. Use when adding a provider plugin, extracting the generation plugin host or registry, or checking a connector against Timeline Studio's authentication, output, localization, and My assets contract. Do n

    Ready to connect★ 808

    github.com/martindelophy/ai-video-editor808 stars

    View details
  • Strix•Beginner EntrySkillSecurity

    A unified entry point for Chinese users and beginners to Strix Lite: first determines which strix-* tool or vulnerability testing skill to use, then provides minimal getting-started steps; suited for situations in web security testing, toolchain usage, or vulnerability verification when unsure which

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • Strix•Business Logic VulnerabilitiesSkillSecurity

    Strix playbook for business logic vulnerability testing, covering flow bypass, state manipulation, and domain constraint violations; trigger word: strix-business-logic

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • Strix•httpx UsageSkillSecurity

    Manual for Strix httpx probe commands, covering probe parameters, output formats, and automated security usage; trigger name: strix-httpx

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • Strix•JWT Authentication TestingSkillSecurity

    Strix JWT and OIDC security testing playbook, covering token forgery, algorithm confusion, and claim tampering; trigger name: strix-authentication-jwt

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • Strix•Open RedirectSkillSecurity

    Strix open redirect testing playbook covering phishing redirects, OAuth token theft, and whitelist bypasses; trigger: strix-open-redirect

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • Strix•Quick ScanSkillSecurity

    Strix quick security assessment mode, for time-limited testing targeting high-impact vulnerabilities; trigger word: strix-quick

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • Strix•Standard ScanSkillSecurity

    Strix standard security assessment mode, balancing thoroughness and coverage; trigger name: strix-standard

    Ready to connect★ 808

    github.com/asdfgh1445/ctf-super-hub808 stars

    View details
  • Flow Nexus AuthSkillSecurity

    Flow Nexus authentication and user management

    ★ 804

    github.com/ruvnet/agentic-flow770 stars

    View details

What is a skill?

A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.

52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.

Install one and every AI you use gets it

Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.

Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.

See how to connect your AI