Skills.

Give your AI a better way to work.

A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.

Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.

Category: Security

1,840 results · page 23 of 62

  • threat-huntingSkillSecurity

    Use when hunting threats or engineering detections — ATT&CK Detection-Strategies, Sigma + correlation with Detection-as-Code CI, Windows endpoint hunting (Sysmon/ETW/LSASS/LOLBins), network C2 hunting (JA4+, beaconing, DNS tunneling), cloud-identity hunting, Atomic Red Team purple-team validation

    Ready to connect★ 363

    github.com/hypnguyen1209/offensive-claude362 stars

    View details
  • threat-model-disciplineSkillSecurity

    Use when starting an engagement, before exploitation, or whenever the attack surface changes — build/validate the threat model and detect drift (new unreviewed surface) before advancing

    Ready to connect★ 363

    github.com/hypnguyen1209/offensive-claude362 stars

    View details
  • using-offensive-claudeSkillSecurity

    Use when starting any offensive-security engagement or task — establishes how to find and invoke the right skill before any action (including clarifying questions, recon, exploitation, or reporting)

    Ready to connect★ 363

    github.com/hypnguyen1209/offensive-claude362 stars

    View details
  • web-pentestSkillSecurity

    Use when pentesting a web application or API — injection, XSS/CSP, SSRF/cloud-metadata, HTTP desync & cache poisoning, SSTI/prototype-pollution/deserialization, JWT/OAuth/GraphQL/IDOR, business logic & single-packet race

    Ready to connect★ 363

    github.com/hypnguyen1209/offensive-claude362 stars

    View details
  • windows-boundariesSkillSecurity

    Use when crossing a Windows security boundary or escaping a sandbox — kernel/user crossing (win32k/dxgkrnl UAF CVE-2025-24983), BYOVD kernel R/W, UAC/COM elevation, AppContainer/LPAC & Chromium-Mojo sandbox escape (CVE-2025-2783), PPL bypass, RPC/ALPC & named-pipe impersonation

    Ready to connect★ 363

    github.com/hypnguyen1209/offensive-claude362 stars

    View details
  • owasp-securitySkillSecurity

    Use when reviewing code for security vulnerabilities, implementing authentication/authorization, handling user input, or discussing web application security. Covers OWASP Top 10:2025, ASVS 5.0, LLM Top 10 (2025), and Agentic AI security (2026).

    Ready to connect★ 361

    github.com/agamm/claude-code-owasp361 stars

    View details
  • auto-loginSkillSecurity

    Launch the WooCommerce app on a simulator already authenticated into a given store (site credentials, application password, or WPCom), skipping the manual login UI. Meant to be referenced by other skills/workflows that need a logged-in session fast, but also directly runnable.

    Ready to connect★ 359

    github.com/woocommerce/woocommerce-ios360 stars

    View details
  • robotics-securitySkillSecurity

    Security hardening and best practices for robotic systems, covering SROS2 DDS security, network segmentation, secrets management, secure boot, and the physical-cyber safety intersection. Use this skill when securing ROS2 communications, configuring DDS encryption and access control, hardening robot

    Ready to connect★ 358

    github.com/arpitg1304/robotics-agent-skills358 stars

    View details
  • V3 Security OverhaulSkillSecurity

    Complete security architecture overhaul for claude-flow v3. Addresses critical CVEs (CVE-1, CVE-2, CVE-3) and implements secure-by-default patterns. Use for security-first v3 implementation.

    Ready to connect★ 357

    github.com/spencermarx/open-code-review357 stars

    View details
  • V3 Swarm CoordinationSkillSecurity

    15-agent hierarchical mesh coordination for v3 implementation. Orchestrates parallel execution across security, core, and integration domains following 10 ADRs with 14-week timeline.

    Ready to connect★ 357

    github.com/spencermarx/open-code-review357 stars

    View details
  • nextjs-authenticationSkillSecurity

    Provides authentication implementation patterns for Next.js 15+ App Router using Auth.js 5 (NextAuth.js). Use when setting up authentication flows, implementing protected routes, managing sessions in Server Components and Server Actions, configuring OAuth providers, implementing role-based access co

    Ready to connect★ 345

    github.com/giuseppe-trisciuoglio/developer-kit345 stars

    View details
  • react-patternsSkillSecurity

    Provides comprehensive React 19 patterns for Server Components, Server Actions, useOptimistic, useActionState, useTransition, concurrent features, Suspense boundaries, and TypeScript integration. Generates executable code patterns, validates security for public endpoints, and optimizes performance w

    Ready to connect★ 345

    github.com/giuseppe-trisciuoglio/developer-kit345 stars

    View details
  • spring-boot-rest-api-standardsSkillSecurity

    Provides REST API design standards and best practices for Spring Boot projects. Use when creating or reviewing REST endpoints, DTOs, error handling, pagination, security headers, HATEOAS and architecture patterns.

    Ready to connect★ 345

    github.com/giuseppe-trisciuoglio/developer-kit345 stars

    View details
  • unit-test-security-authorizationSkillSecurity

    Provides patterns for unit testing Spring Security with `@PreAuthorize`, `@Secured`, `@RolesAllowed`. Validates role-based access control and authorization policies. Use when testing security configurations and access control logic.

    Ready to connect★ 345

    github.com/giuseppe-trisciuoglio/developer-kit345 stars

    View details
  • api-authenticationSkillSecurity

    Implement secure API authentication with JWT, OAuth 2.0, API keys, and session management. Use when securing APIs, managing tokens, or implementing user authentication flows.

    Ready to connect★ 339

    github.com/aj-geddes/useful-ai-prompts330 stars

    View details
  • api-security-hardeningSkillSecurity

    Secure REST APIs with authentication, rate limiting, CORS, input validation, and security middleware. Use when building or hardening API endpoints against common attacks.

    Ready to connect★ 339

    github.com/aj-geddes/useful-ai-prompts330 stars

    View details
  • code-review-analysisSkillSecurity

    Perform comprehensive code reviews with best practices, security checks, and constructive feedback. Use when reviewing pull requests, analyzing code quality, checking for security vulnerabilities, or providing code improvement suggestions.

    Ready to connect★ 339

    github.com/aj-geddes/useful-ai-prompts330 stars

    View details
  • competitor-analysisSkillSecurity

    Analyze competitive landscape to identify strengths, weaknesses, opportunities, and threats. Inform product strategy and positioning based on market insights.

    Ready to connect★ 339

    github.com/aj-geddes/useful-ai-prompts330 stars

    View details
  • configuration-managementSkillSecurity

    Manage application configuration including environment variables, settings management, configuration hierarchies, secret management, feature flags, and 12-factor app principles. Use for config, environment setup, or settings management.

    Ready to connect★ 339

    github.com/aj-geddes/useful-ai-prompts330 stars

    View details
  • authentication-patternsSkillSecurity

    Provides auth patterns for API keys, OAuth, and token management. Use when implementing or reviewing service authentication and credential handling.

    Ready to connect★ 337

    github.com/athola/claude-night-market337 stars

    View details
  • Create HookSkillSecurity

    Create hooks with brainstorming and security-first design

    ★ 337

    github.com/athola/claude-night-market319 stars

    View details
  • hook-authoringSkillSecurity

    Guide creating Claude Code hooks with security-first design. Use for validation and enforcement.

    Ready to connect★ 337

    github.com/athola/claude-night-market337 stars

    View details
  • hooks-evalSkillSecurity

    Evaluate hook security, performance, and SDK compliance. Use for audits.

    Ready to connect★ 337

    github.com/athola/claude-night-market337 stars

    View details
  • provider-setupSkillSecurity

    Reports which delegation CLIs are installed and authenticated, installs missing ones, and stores the result. Use before delegating or when a provider errors.

    Ready to connect★ 337

    github.com/athola/claude-night-market337 stars

    View details
  • Validate HookSkillSecurity

    Validate hooks for security, performance, and SDK compliance

    ★ 337

    github.com/athola/claude-night-market319 stars

    View details
  • supply-chainSkillSecurity

    Use when auditing security and supply chain in any codebase — trust boundaries, credential handling, injection surfaces, update/release integrity, CI permissions, dependency pinning. Assess by default, harden on request; provenance or it didn't happen.

    Ready to connect★ 336

    github.com/automagik-dev/genie334 stars

    View details
  • disclosureSkillSecurity

    Drive responsible disclosure of a proven finding to a CVE. Package the report, find the vendor contact, report privately, coordinate a timeline, request the CVE (vendor CNA / GitHub / MITRE), and publish an advisory. Closes the research loop. Triggers - "disclose", "request a cve", "report this to t

    Ready to connect★ 322

    github.com/encod3d-sec/torch322 stars

    View details
  • ndaySkillSecurity

    N-day / patch-diff workflow - given a CVE/advisory or a suspicious patch, diff pre- vs post-patch to locate the fixed bug, build a PoC for the unpatched version, and run variant analysis for a fresh bug. Triggers - "n-day", "patch diff", "diff the patch", "bindiff".

    Ready to connect★ 322

    github.com/encod3d-sec/torch322 stars

    View details
  • pt-workflowSkillSecurity

    Autonomous pentest campaign driver. Runs a scoped engagement end to end with no operator approvals - the deterministic driver (scripts/campaign.py) owns pass state, generates the killchain board from recon, and prints the exact next action (Skill + tool) every turn. Use when starting or resuming a p

    Ready to connect★ 322

    github.com/encod3d-sec/torch322 stars

    View details
  • screenshotSkillSecurity

    Capture web-page / PoC screenshots into the engagement evidence (targets/<eng>/poc/) and embed them in walkthrough.md. Live pages + authenticated/exploited states (post-login dashboard, the flag page, an SSTI/cmdi render). Runs chromium on the Kali tooling host (VPN path to targets); hands off to th

    Ready to connect★ 322

    github.com/encod3d-sec/torch322 stars

    View details

What is a skill?

A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.

54,764 of the 55,196 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.

Install one and every AI you use gets it

Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.

Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.

See how to connect your AI