Skills.
Give your AI a better way to work.
A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.
Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.
Category: Security
1,738 results · page 4 of 58
- View details
trailofbits:diff-reviewSkillSecurity
Lets your agent review code changes for security problems by comparing what changed.
★ 7k
- View details
trailofbits:scan-apkSkillSecurity
Lets your agent scan Android APK files for Firebase security misconfigurations.
★ 7k
- View details
trailofbits:variantsSkillSecurity
Lets your agent scan code for patterns that match known vulnerability types to find similar security bugs.
★ 7k
- View details
active-directory-attackSkillSecurity
Lets your agent run Active Directory attack techniques like Kerberoasting, NTLM relay, and DCSync for security testing.
Ready to connect★ 7k
- View details
attack-surface-reconSkillSecurity
Lets your agent map a target's attack surface using passive and active recon tools like whois, subfinder, and nuclei.
Ready to connect★ 7k
- View details
blockchain-contract-attackSkillSecurity
Lets your agent audit smart contracts for vulnerabilities like reentrancy and access control flaws.
Ready to connect★ 7k
- View details
cyberstrike-eino-demoSkillSecurity
Demonstrates how to structure an agent skill package and verify Eino skill and HTTP package paths for security testing.
Ready to connect★ 7k
- View details
initial-access-phishingSkillSecurity
Lets your agent run phishing and social-engineering attacks like credential spraying and OAuth consent phishing.
Ready to connect★ 7k
- View details
pentest-output-standardsSkillSecurity
Formats penetration test results into Chinese-language reports with findings, reasoning chains, and change ledgers.
Ready to connect★ 7k
- View details
pentest-verificationSkillSecurity
Helps your agent verify security findings with evidence instead of speculation, logging both confirmed and negative results.
Ready to connect★ 7k
- View details
proxy-tool-bootstrapSkillSecurity
Lets your agent find working proxies and self-provision Python tools when requests are blocked or tools are missing.
Ready to connect★ 7k
- View details
redteam-opsecSkillSecurity
Lets your agent follow operational security practices like IP ban evasion, traffic obfuscation, and minimal traces.
Ready to connect★ 7k
- View details
source-code-huntingSkillSecurity
Lets your agent hunt for leaked source code, exposed secrets, and supply-chain issues in codebases.
Ready to connect★ 7k
- View details
unlimited-attack-scopeSkillSecurity
Lets your agent follow a no-limits rule for security testing across web, APK, cloud, AI, wireless, and social engineering.
Ready to connect★ 7k
- View details
web-attack-methodsSkillSecurity
Gives your agent a reference of web attack techniques like SQL injection, XSS, and auth bypass for security testing.
Ready to connect★ 7k
- View details
wireless-hardware-attackSkillSecurity
Lets your agent run wireless and hardware attack techniques like WiFi cracking, Evil Twin, BLE, NFC, SDR, and UART/JTAG exploits.
Ready to connect★ 7k
- View details
zero-day-discoverySkillSecurity
Guides your agent through finding unknown software vulnerabilities using variant analysis, patch diffing, fuzzing, and exploit reasoning.
Ready to connect★ 7k
- View details
code-reviewSkillSecurity
Lets your agent review code for quality, security issues, and best practices.
Ready to connect★ 6k
- View details
magicblockSkillSecurity
Helps your agent design, build, and debug MagicBlock apps on Solana, including ephemeral rollups and security.
Ready to connect★ 6k
- View details
mppxSkillSecurity
Lets your agent add payment handling to apps, managing paywall responses with services like Stripe and Tempo.
Ready to connect★ 6k
- View details
okx-agent-payments-protocolSkillSecurity
Lets your agent handle paywalled web requests by recognizing payment-required responses and paying them automatically.
Ready to connect★ 6k
- View details
openserv-clientSkillSecurity
Guides your agent through managing OpenServ platform agents, workflows, triggers, and tasks via its API.
Ready to connect★ 6k
- View details
PrivySkillSecurity
Lets your agent set up crypto wallets, log users in, and send blockchain transactions when building financial apps.
Ready to connect★ 6k
- View details
prSkillSecurity
Lets your agent review your pull requests against a security and testing checklist before you submit them.
Ready to connect★ 5k
- View details
configure-authSkillSecurity
Guides your agent to add login, roles, and page-level access control to a Blazor web app.
Ready to connect★ 5k
- View details
template-smart-defaultsSkillSecurity
Fills in sensible default options for .NET project creation commands, keeping related settings consistent without overriding your choices.
Ready to connect★ 5k
- View details
next-taskSkillSecurity
Lets your agent run one autonomous coding task: pick a queued issue, build it on a branch, and open a PR.
Ready to connect★ 5k
- View details
extracting-sdohSkillSecurity
Lets your agent find social factors like housing or food insecurity in clinical notes and map them to ICD-10 Z-codes.
Ready to connect★ 5k
- View details
authSkillSecurity
Lets your agent work on Epicenter's auth code, including OAuth sessions, identity state, and hosted sign-in.
Ready to connect★ 5k
- View details
bb-methodologySkillSecurity
Guides your agent through a structured bug bounty hunting workflow with phases and critical thinking steps.
Ready to connect★ 5k
What is a skill?
A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.
52,524 of the 52,958 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.
Install one and every AI you use gets it
Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.
Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.