Skills.
Give your AI a better way to work.
A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.
Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.
Category: Security
1,840 results · page 31 of 62
- View details
deliberation-debate-red-teamingSkillSecurity
Challenges plans, designs, and decisions from multiple adversarial perspectives to surface blind spots, hidden assumptions, and vulnerabilities before they cause real damage. Use when testing plans or decisions for blind spots, need adversarial review before launch, validating strategy against worst
Ready to connect★ 159
- View details
myrqenSkillSecurity
Run an authorized, local-first application security assessment on the current project using this agent's own reasoning. Use when the user invokes Myrqen, asks to security-test or pentest the app they are building, asks whether their app has real vulnerabilities before shipping, wants a Myrqen findin
Ready to connect★ 158
- View details
deep-reviewSkillSecurity
Performs a three-dimension parallel review of staged changes (security, performance, style) and synthesizes a prioritized summary of findings.
Ready to connect★ 156
- View details
supply-chain-securitySkillSecurity
SBOM generation, CVE scanning, supply chain attack detection, license compliance, dependency pinning, and artifact verification.
Ready to connect★ 156
- View details
laravel:specifying-constraintsSkillSecurity
Define clear constraints—performance, security, testing, architecture, dependencies—so AI generates code that meets your project standards
Ready to connect★ 154
- View details
ai-pentestingSkillSecurity
Run autonomous AI-driven penetration tests on web applications using tools like Shannon, PentAGI, and similar frameworks. Use when tasks involve setting up automated penetration testing pipelines, combining AI agents with security tools (nmap, subfinder, nuclei, sqlmap), building autonomous exploit
Ready to connect★ 150
- View details
airtableSkillSecurity
Build integrations with the Airtable Web API — bases, tables, records, fields, views, webhooks, and OAuth. Use when tasks involve reading or writing Airtable data, syncing external sources with Airtable bases, building automations triggered by record changes, or migrating data to/from Airtable.
Ready to connect★ 150
- View details
api-testerSkillSecurity
Test REST and GraphQL API endpoints with structured assertions and reporting. Use when a user asks to test an API, hit an endpoint, check if an API works, validate a response, debug an API call, test authentication flows, or verify API contracts. Supports GET, POST, PUT, PATCH, DELETE with headers,
Ready to connect★ 150
- View details
apollo-clientSkillSecurity
You are an expert in Apollo Client, the comprehensive GraphQL client for React applications. You help developers fetch data with GraphQL queries and mutations, manage local and remote state with Apollo's normalized cache, implement optimistic UI updates, handle pagination, and configure authenticati
Ready to connect★ 150
- View details
auth-system-setupSkillSecurity
When the user wants to set up authentication and authorization for a web application. Use when the user mentions "auth," "login," "OAuth," "SSO," "single sign-on," "role-based access," "RBAC," "permissions," "user roles," "access control," "authentication," or "authorization." Covers OAuth 2.0 provi
Ready to connect★ 150
- View details
better-authSkillSecurity
Add authentication to any framework with Better Auth. Use when a user asks to implement auth, set up login/signup, add OAuth providers, implement session management, or choose between auth libraries for TypeScript apps.
Ready to connect★ 150
- View details
burp-suiteSkillSecurity
Test web application security with Burp Suite. Use when a user asks to intercept HTTP traffic, test for web vulnerabilities, fuzz API endpoints, analyze authentication flows, or perform manual web application pentesting.
Ready to connect★ 150
- View details
canvaSkillSecurity
Automate Canva from an agent — via the AI Connector MCP server (generate, find, edit, export designs in natural language) or the Connect REST API (OAuth 2.0 + PKCE, brand template autofill, asset uploads, exports, folders, comments). Use when: connecting an agent to Canva, batch-producing social pos
Ready to connect★ 150
- View details
dt-sec-contextualizationSkillSecurity
Resolve security signals, IoC matches, or Smartscape nodes to runtime Dynatrace entities and connect findings on different entity levels through a shared runtime entity. Covers identity-to-Smartscape mapping (incl. container-image digest/ID to workload), cross-level topology (K8s pod detection vs. n
Ready to connect★ 142
- View details
dt-sec-semantic-mappingSkillSecurity
Suggest and validate semantic dictionary (SD) mappings for new security integrations using vendor API samples or live events. Use when: mapping a new security vendor data to Dynatrace SD; checking required fields; validating namespaces; highlighting discrepancies vs the semantic dictionary; proposin
Ready to connect★ 142
- View details
specializeSkillSecurity
Author a new built-in Lagune sub-skill inside the Lagune source, not a scaffolded `.lagune/` target. Use when adding or refining a security knowledge module that ships with Lagune, against the native layout (`spec/skills/*.md` plus the catalog).
Ready to connect★ 148
- View details
- View details
ai-code-securitySkillSecurity
Security vulnerabilities in AI-generated code and LLM applications, covering OWASP Top 10 for LLMs, secure coding patterns, and AI-specific threat modelsUse when "ai code security, llm vulnerabilities, ai generated code review, owasp llm, secure ai development, security, ai, llm, owasp, code-review,
Ready to connect★ 147
- View details
alibabacloud-ecs-sec-kernelSkillSecurity
A Linux kernel-mode CVE vulnerability detection and PoC verification tool designed for AI Agents. Includes 88 kernel CVE detectors (2003-2026) covering local privilege escalation (LPE) vulnerabilities in subsystems such as Netfilter/eBPF/TLS/io_uring/xfrm. Uses a CTF challenge mode to objectively ve
Ready to connect★ 147
- View details
alibabacloud-ecs-sec-userspaceSkillSecurity
Linux userspace security intrusion detection and forensics tool, designed for AI Agents. Automatically determines whether a server has been compromised and provides a complete evidence chain and actionable remediation recommendations. 51 security analyzers cover 12 detection dimensions including pro
Ready to connect★ 147
- View details
auth-specialistSkillSecurity
Authentication and authorization expert for OAuth, sessions, JWT, MFA, and identity securityUse when "authentication flow, login system, oauth integration, jwt tokens, session management, password hashing, mfa setup, refresh tokens, social login, role-based access, authentication, authorization, oau
Ready to connect★ 147
- View details
authentication-oauthSkillSecurity
Expert guidance on authentication implementation including OAuth 2.0/OIDC, JWT tokens, session management, and secure password handling. Covers both implementing auth from scratch and integrating auth providers. Use when "implement authentication, oauth login, jwt tokens, session management, social
Ready to connect★ 147
- View details
blockchain-defiSkillSecurity
Use when building DeFi protocols, implementing AMMs, yield farming strategies, or integrating with Ethereum/L2s - covers smart contract patterns, liquidity pools, and security considerationsUse when ", " mentioned.
Ready to connect★ 147
- View details
clerk-authSkillSecurity
Expert patterns for Clerk auth implementation, middleware, organizations, webhooks, and user syncUse when "adding authentication, clerk auth, user authentication, sign in, sign up, user management, multi-tenancy, organizations, sso, single sign-on, clerk, authentication, auth, user-management, multi
Ready to connect★ 147
- View details
computer-use-agentsSkillSecurity
Lets your agent control a computer like a person, using the mouse and keyboard to complete tasks.
Ready to connect★ 147
- View details
creature-designSkillSecurity
Designing anatomically plausible, visually distinctive creatures that communicate threat, personality, and role through form - from terrifying bosses to collectible companionsUse when "creature design, design a creature, design a monster, monster design, boss design, enemy creature, companion creatu
Ready to connect★ 147
- View details
defi-architectSkillSecurity
DeFi protocol specialist for AMMs, lending protocols, yield strategies, and economic securityUse when "defi, amm, liquidity pool, lending protocol, yield farming, oracle, liquidation, tokenomics, tvl, impermanent loss, defi, amm, lending, yield, liquidity, oracle, tokenomics, protocol, ethereum, web
Ready to connect★ 147
- View details
ca-threat-modelSkillSecurity
Opt-in lightweight STRIDE pass for a sensitive feature before implementation. Not a routine gate — invoke it when a change warrants security thought.
Ready to connect★ 145
- View details
crypto-complianceSkillSecurity
The banned-primitive gate. Routed to when changed code hashes, signs, encrypts, derives keys, generates security-relevant randomness, configures TLS, or imports a crypto library. Rejects broken primitives, disabled TLS verification, and home-rolled crypto; the approved-primitive list lives in securi
Ready to connect★ 145
- View details
raytsystem-security-reviewSkillSecurity
Audit raytsystem changes for prompt injection, provenance bypass, path/symlink/hardlink escape, secret leakage, stale fencing, partial promotion, unsafe parsing, and unapproved side effects. Use for SECURITY REVIEW, adversarial testing, recovery review, or approval-boundary validation; remain indepe
Ready to connect★ 145
What is a skill?
A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.
54,764 of the 55,196 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.
Install one and every AI you use gets it
Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.
Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.