Skills.

Give your AI a better way to work.

A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.

Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.

Category: Security

1,840 results · page 34 of 62

  • linear-graphql-skillSkillSecurity

    Operate Linear workspace issues, projects, and teams through Linear GraphQL API using UXC. Use when tasks require querying or creating issues, managing projects, or interacting with Linear workflow. Supports both Personal API Key and OAuth authentication.

    Ready to connect★ 114

    github.com/holon-run/uxc113 stars

    View details
  • restaking-explainedSkillSecurity

    Guide to restaking and liquid restaking tokens (LRTs) — EigenLayer, restaking mechanics, operator selection, risk analysis, and the restaking ecosystem. Use when explaining restaking concepts, evaluating LRT protocols, or helping users understand EigenLayer and AVS security.

    Ready to connect★ 114

    github.com/nirholas/three.ws110 stars

    View details
  • yield-farming-analysisSkillSecurity

    Analyze DeFi yield farming opportunities including APY breakdown, risk assessment, smart contract security, and impermanent loss estimation.

    Ready to connect★ 114

    github.com/nirholas/three.ws110 stars

    View details
  • reality-check-modeSkillSecurity

    Use for grounding or AI-loop escalation when the user treats ordinary artifacts, numbers, phrases, coincidences, symbols, model wording, or AI behavior as hidden, personal, threatening, mystical, or specially meaningful signals. Use only Grounding, What I can say, and Safer next step. Do not decode

    Ready to connect★ 113

    github.com/softcane/human-state-skills113 stars

    View details
  • recon-playbookSkillSecurity

    Build a hunting checklist / methodology for a vulnerability class or target tech stack, distilled from the local disclosed-report corpus. Use when the user asks "how do I hunt for X", "give me a methodology / checklist for X", "what should I test on a <tech> target", or wants a recon plan grounded i

    Ready to connect★ 113

    github.com/bugbountywithmarco/bugbounty-disclosed-reports112 stars

    View details
  • severitySkillSecurity

    Estimate the severity of a vulnerability finding and produce a CVSS 3.1 vector + impact framing, calibrated against how similar findings were rated in the local disclosed-report corpus. Use when the user asks "how severe is this", "what CVSS score", "how should I rate this", or needs an impact state

    Ready to connect★ 113

    github.com/bugbountywithmarco/bugbounty-disclosed-reports112 stars

    View details
  • write-reportSkillSecurity

    Write a disclosure-quality bug bounty report for a finding, matching the HackerOne report format used in this repo's corpus. Use when the user has a vulnerability and wants it written up — "write a report for this", "draft a HackerOne submission", "turn this finding into a report". Produces title, s

    Ready to connect★ 113

    github.com/bugbountywithmarco/bugbounty-disclosed-reports112 stars

    View details
  • apollo-serverSkillSecurity

    Guide for building GraphQL servers with Apollo Server 5.x. Use this skill when: (1) setting up a new Apollo Server project, (2) writing resolvers or defining GraphQL schemas, (3) implementing authentication or authorization, (4) creating plugins or custom data sources, (5) troubleshooting Apollo Ser

    Ready to connect★ 112

    github.com/apollographql/skills112 stars

    View details
  • graphql-schemaSkillSecurity

    Guide for designing GraphQL schemas following industry best practices. Use this skill when: (1) designing a new GraphQL schema or API, (2) reviewing existing schema for improvements, (3) deciding on type structures or nullability, (4) implementing pagination or error patterns, (5) ensuring security

    Ready to connect★ 112

    github.com/apollographql/skills112 stars

    View details
  • value-chain-mappingSkillSecurity

    Map end-user needs to the full value chain, identify core value generators, and highlight vulnerabilities.

    Ready to connect★ 112

    github.com/itseffi/agentic-os112 stars

    View details
  • neo4j-security-skillSkillSecurity

    Programmatic security management in Neo4j — RBAC/ABAC, user lifecycle (CREATE/ALTER/DROP USER),

    Ready to connect★ 110

    github.com/neo4j-contrib/neo4j-skills110 stars

    View details
  • cometchat-android-v5-productionSkillSecurity

    Production readiness for CometChat Android — server-side token auth, user management CRUD, ProGuard rules, and security checklist.

    Ready to connect★ 105

    github.com/cometchat/cometchat-skills108 stars

    View details
  • cometchat-flutter-v5-productionSkillSecurity

    Use when preparing a CometChat Flutter UIKit v5 app for production. Covers auth tokens, ProGuard, environment config, security hardening.

    Ready to connect★ 105

    github.com/cometchat/cometchat-skills108 stars

    View details
  • cometchat-productionSkillSecurity

    Production readiness for CometChat — server-side token auth, user management CRUD, environment hardening, and security checklist. Replaces dev-mode authKey with server-side tokens.

    Ready to connect★ 105

    github.com/cometchat/cometchat-skills108 stars

    View details
  • flutter-networkingSkillSecurity

    Implement, fix, debug, review, or refactor Flutter networking code for HTTP/REST APIs, WebSocket realtime flows, authentication and token refresh, request headers, timeouts, retries, JSON parsing, caching, background isolates, repositories, services, and adaptation to existing http, Dio, Retrofit, C

    Ready to connect★ 108

    github.com/madteacher/mad-agents-skills108 stars

    View details
  • approve-exemptSkillSecurity

    Approve pending Harness STO security exemptions (waivers) at their current scope or elevate them to Project, Org, or Account scope. Users say "approve" for both in-scope approval and higher-scope elevation — do not require the word "promote". Supports approving one exemption or a mixed list where ea

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • audit-reportSkillSecurity

    Lets your agent generate a security audit report summarizing findings and issues.

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • configure-dast-scanSkillSecurity

    Add Dynamic Application Security Testing (DAST) steps to existing Harness pipelines using Harness STO scanners. Supports API DAST / Traceable (default), Burp Suite Enterprise, ZAP (OWASP), Nikto, and Nmap. Scans running application instances for vulnerabilities including API security issues, injecti

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • configure-repo-scanSkillSecurity

    Configure code scanning in Harness pipelines using STO security scanners. Helps identify where to inject SAST/SCA scanning steps into existing pipelines, recommends appropriate scanners, and configures them with proper connector references. Use when asked to add code scanning, configure security sca

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • configure-secret-scanSkillSecurity

    Add secret detection scanning steps to existing Harness pipelines using STO security scanners. Detects exposed credentials, API keys, tokens, and sensitive data in code repositories. Supports Harness Code (default, native, unified SAST/SCA/secret detection), Gitleaks (standalone secret scanner, open

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • exempt-vulnSkillSecurity

    Create Harness STO security exemptions (waivers) for vulnerabilities found by SAST, SCA, DAST, secret, container, or IaC scanners. Works from both entry points in the Harness UI: the Vulnerabilities tab of a specific pipeline execution (Target, Pipeline, or Project scope) and the All Issues page (Pr

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • manage-supply-chainSkillSecurity

    Manage Harness Software Supply Chain Assurance (SSCA) via MCP. Configure automated SBOM generation with CycloneDX or SPDX formats, set up artifact signing and attestation with Cosign, define supply chain security policies using OPA, and track SLSA provenance levels. Use when asked to generate SBOMs,

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • pm-checkupSkillSecurity

    On-demand five-dimension project checkup (security, function, completeness, quality, docs) with P0/P1/P2. No cron.

    Ready to connect★ 106

    github.com/wei63w/pm-manager106 stars

    View details
  • security-reportSkillSecurity

    Generate security compliance reports using Harness SCS and STO via MCP. Analyze vulnerabilities, SBOMs, and manage exemptions. Use when user says "security report", "vulnerabilities", "SBOM", "security scan", "compliance check", or asks about application security.

    Ready to connect★ 106

    github.com/harness/harness-skills106 stars

    View details
  • design-production-ai-systemSkillSecurity

    Design a production AI-enabled system after its workflow, value, and intelligence choices are approved. Use for architecture, domain and state modeling, model behavior, context, tools, human review, security boundaries, delivery planning, or a complete design packet.

    Ready to connect★ 105

    github.com/davidahmann/applied-ai-field-guide70 stars

    View details
  • review-ai-production-readinessSkillSecurity

    Review a specific AI-system release for production readiness. Use for architecture review, launch gate, customer security review, audit evidence, autonomy expansion, canary approval, rollback decision, or a prioritized gap assessment against this guide's controls.

    Ready to connect★ 105

    github.com/davidahmann/applied-ai-field-guide70 stars

    View details
  • secure-ai-action-boundarySkillSecurity

    Secure model-visible reads and real-world actions at trusted software boundaries. Use for tool or MCP contracts, identity and tenant scoping, capability provenance, credentials and egress, approval, idempotency, readback, action authorization, or negative security tests.

    Ready to connect★ 105

    github.com/davidahmann/applied-ai-field-guide70 stars

    View details
  • API CatalogSkillSecurity

    Reference guide for connecting popular APIs to Home Assistant via Node-RED, YAML, or custom integrations. Covers authentication, endpoints, and complete working examples for: energy APIs (Tibber, Nordpool), weather (SMHI, OpenWeatherMap, yr.no), transport (SL, Trafikverket, Resrobot), smart home clo

    Ready to connect★ 104

    github.com/tonylofgren/aurora-smart-home104 stars

    View details
  • clerkSkillSecurity

    Clerk authentication router. Use when user asks about Clerk CLI operations, adding authentication, setting up Clerk, custom sign-in flows, Swift or native iOS auth, native Android auth, Next.js patterns, React patterns, Vue patterns, Nuxt patterns, Astro patterns, TanStack Start patterns, Expo patte

    Ready to connect★ 101

    github.com/vvedantb/eva101 stars

    View details
  • clerk-backend-apiSkillSecurity

    Clerk Backend REST API explorer and executor. Browse tags, inspect endpoint schemas, and execute authenticated requests. Use when listing users, managing organizations, or calling any Clerk API endpoint.

    Ready to connect★ 101

    github.com/vvedantb/eva101 stars

    View details

What is a skill?

A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.

54,764 of the 55,196 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.

Install one and every AI you use gets it

Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.

Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.

See how to connect your AI