Skills.
Give your AI a better way to work.
A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.
Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.
Filter by category
54,018 results · page 73 of 1,801
- View details
building-threat-hunt-hypothesis-frameworkSkillDocs & knowledge
Guides your agent through turning threat intelligence into testable hunt hypotheses and running queries against EDR and SIEM tools.
Ready to connect★ 33k
- View details
building-threat-intelligence-feed-integrationSkillSecurity
Lets your agent pull threat intelligence feeds like STIX/TAXII and open-source sources into SIEM tools for matching and alerts.
Ready to connect★ 33k
- View details
building-threat-intelligence-platformSkillCloud & infra
Guides your agent through designing and deploying a threat intelligence platform using open-source tools like MISP and OpenCTI.
Ready to connect★ 33k
- View details
building-vulnerability-aging-and-sla-trackingSkillMonitoring & ops
Helps your agent design vulnerability SLA policies and build dashboards that track how long security flaws stay unpatched.
Ready to connect★ 33k
- View details
building-vulnerability-dashboard-with-defectdojoSkillCommunication
Lets your agent set up a dashboard that collects security scan results from many tools into one place with deduplication and reporting.
Ready to connect★ 33k
- View details
building-vulnerability-exception-tracking-systemSkillDocs & knowledge
Lets your agent build a system for tracking vulnerability exception requests, approvals, compensating controls, and expirations.
Ready to connect★ 33k
- View details
building-vulnerability-scanning-workflowSkillSecurity
Lets your agent set up recurring vulnerability scans with Nessus, Qualys, or OpenVAS and track fixing the issues it finds.
Ready to connect★ 33k
- View details
bypassing-authentication-with-forced-browsingSkillSecurity
Guides your agent through testing whether a website's hidden pages and admin areas are properly protected during authorized security checks.
Ready to connect★ 33k
- View details
coercing-authentication-with-coercer-petitpotamSkillSecurity
Lets your agent trigger and test Windows forced-authentication coercion attacks and NTLM relays for authorized security testing.
Ready to connect★ 33k
- View details
collecting-indicators-of-compromiseSkillSecurity
Guides your agent through collecting, scoring, and sharing indicators of compromise like malicious IPs and file hashes during security incidents.
Ready to connect★ 33k
- View details
collecting-open-source-intelligenceSkillSecurity
Lets your agent gather and analyze public threat intelligence about malicious domains, IPs, and attacker infrastructure using sources like Shodan and WHOIS.
Ready to connect★ 33k
- View details
collecting-threat-intelligence-with-mispSkillSearch
Lets your agent set up a MISP threat intelligence server, pull threat feeds, and search for indicators of compromise like malicious IPs and domains.
Ready to connect★ 33k
- View details
collecting-volatile-evidence-from-compromised-hostSkillDocs & knowledge
Guides your agent through collecting memory, network, and process evidence from a hacked computer before it disappears.
Ready to connect★ 33k
- View details
conducting-api-security-testingSkillSecurity
Lets your agent run structured security tests on REST, GraphQL, and gRPC APIs to find authorization and injection flaws.
Ready to connect★ 33k
- View details
conducting-cloud-incident-responseSkillCloud & infra
Lets your agent respond to cloud security incidents by analyzing audit logs, containing compromised identities, and preserving evidence.
Ready to connect★ 33k
- View details
conducting-cloud-penetration-testingSkillSecurity
Guides your agent through authorized penetration testing of AWS, Azure, and GCP cloud environments using tools like Pacu and ScoutSuite.
Ready to connect★ 33k
- View details
conducting-cyber-risk-assessment-with-nist-800-30SkillDatabases & data
Lets your agent run a cybersecurity risk assessment using the NIST 800-30 method and produce a ranked risk register.
Ready to connect★ 33k
- View details
conducting-domain-persistence-with-dcsyncSkillSecurity
Lets your agent simulate DCSync attacks in authorized tests to extract domain password hashes and assess persistence risks.
Ready to connect★ 33k
- View details
conducting-external-reconnaissance-with-osintSkillSearch
Lets your agent map a target organization's public digital footprint using only open sources like DNS records, search results, and breach databases.
Ready to connect★ 33k
- View details
conducting-full-scope-red-team-engagementSkillSecurity
Lets your agent plan and run a full-scope red team engagement, from threat modeling and reconnaissance to exploitation and post-exploitation.
Ready to connect★ 33k
- View details
conducting-gdpr-compliance-assessmentSkillSecurity
Lets your agent assess how well an organization complies with EU data protection rules and identify gaps.
Ready to connect★ 33k
- View details
conducting-internal-network-penetration-testSkillSecurity
Lets your agent run an internal network penetration test to find lateral movement paths and privilege escalation risks.
Ready to connect★ 33k
- View details
conducting-internal-reconnaissance-with-bloodhound-ceSkillDatabases & data
Lets your agent map Active Directory attack paths using BloodHound to find privilege escalation routes during authorized tests.
Ready to connect★ 33k
- View details
conducting-malware-incident-responseSkillMonitoring & ops
Lets your agent guide a malware infection response from identifying the threat through containment, cleanup, and recovery.
Ready to connect★ 33k
- View details
gws-admin-reportsSkillMonitoring & ops
Lets your agent retrieve Google Workspace audit logs and usage reports for your organization.
Ready to connect★ 31k
- View details
gws-calendar-insertSkillProductivity
Lets your agent create new events on a Google Calendar.
Ready to connect★ 31k
- View details
gws-chatSkillCommunication
Lets your agent manage Google Chat spaces and messages.
Ready to connect★ 31k
- View details
gws-chat-sendSkillCommunication
Lets your agent send a message to a Google Chat space.
Ready to connect★ 31k
- View details
gws-classroomSkillDev tools
Lets your agent manage Google Classroom classes, student rosters, and coursework.
Ready to connect★ 31k
- View details
gws-eventsSkillDev tools
Lets your agent subscribe to Google Workspace events like calendar and drive changes.
Ready to connect★ 31k
What is a skill?
A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.
53,586 of the 54,018 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.
Install one and every AI you use gets it
Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.
Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.