Claude Code Skills·Claude Skills·The open SKILL.md registry for Claude
ClaudSkillsSecurity › Page 125

Claude Security Skills (Page 125 of 176)

Security auditing, penetration testing, vulnerability scanning, OWASP, cloud security, and compliance skills for Claude Code.

10,533 skills · updated 2026-08-26 · showing 7441–7500 of 10,533 by quality score

Sub-topics:Red Team (1,582)Web Security (1,094)Threat Hunting (754)Identity Access (496)Network Security (414)Appsec Tools (381)Forensics (295)Malware Analysis (207)

For the full experience including quality scoring and one-click install features for each skill — upgrade to Pro.

Reverse engineers .NET malware using dnSpy decompiler and debugger to analyze C#/VB.NET source code, identify
Reverse engineers malware binaries using NSA''s Ghidra disassembler and decompiler to understand internal logic,
Reverse engineer ransomware encryption routines to identify cryptographic algorithms, key generation flaws, and
Reverse engineer Rust-compiled malware using IDA Pro and Ghidra with techniques for handling non-null-terminated
Reverse proxy architecture for AI agent systems — Nginx, Caddy, Traefik, and Cloudflare. Agent-specific patterns: routing to specialist agents, load balancing, TLS termination,…
security auditof vulnerability , code security analysis, penetration test , improvement inthisbefore teamthis to countlower security audit pipeline.
Configure human-in-the-loop gating for AI agent review actions in Claude Code. Use when setting up a project where an agent may post PR reviews, comments, merges, or edit CI…
Use when reviewing a technical analysis, design document, or specification from a developer perspective - checking technical feasibility, architecture, integration points — from…
Use when reviewing a technical analysis, design document, or specification from a security perspective - checking attack vectors, trust boundaries, authentication, data i — from…
Complete code review of a backend MR/PR with 8 sequential audits (Clean Architecture, DDD, TypeScript Best Practices, SOLID, Testing, Code Quality, Security, Performance).
Review CakePHP changes for mass assignment, IDOR, CSRF, uploads, serialization, redirects, secrets, and SQL safety.
Multi-agent code review by delegating to (1) codex-cli with GPT-5.5 xhigh, (2) gemini-cli with Gemini 3.1 Pro, and (3) four Claude specialist subagents (security, performance,…
差分が「その差分自身を審査するレビュー基準・品質ゲート」を弱めていないかを diff-time で検出する。Check 1 レビュールールの削除・弱体化(.river/rules.md / .river/rules.d/*)、Check 2 実行時コンフィグの閾値・ゲート緩和(.river-review.{json,yaml,yml} の…
Review FriendsOfCake CRUD controllers/listeners for mass assignment, serialization, RelatedModels, and IDOR risks.
Comprehensive pre-release review pipeline. Runs /review-health, /review-arch, /review-security, /review-perf, /review-a11y, /review-test, /review-doc, and /review-release in…
Detect package managers and discover outdated or vulnerable dependencies. Returns structured findings without upgrading.
Use for security review of dependency updates — bumps, upgrades, or new dependencies.
Use when auditing dependency health — outdated packages, CVE triage with attack-vector weighting, deprecated/declining library detection (trend-watch).
Use when reviewing a change, a design, or a system's readiness — ask "if this gets attacked or exploited in prod, would we even know?" Review the audit trail, the…
Fuehrt den eigentlichen Reviewlauf ueber den Wuerfel durch — Anzahl Zellen = Spalten x Zeilen x Arbeitsblaetter.
Run all three endpoint reviewers (REST Builder, portability contract, security) in parallel on a named ResourceImpl. Pass the resource name, e.g. /review-endpoint ContentStructure.
Sets the reviewer persona for all code review, security review, and /simplify agents. Default mood: strict. Persists for the session until changed.
Run an in-house P0-P3 security review on a Sui Move package. Use when the user wants a Move security review or self-audit.
Standard code review checklist for all reviewers. Load this when performing a peer review at Stage 5.
White-box security audit. Blue-teamer and lead red-teamer run in parallel isolation for an independent first pass — neither sees the other's output during reconnaissance.
Given a GitHub issue, review the issue for security implications. You'll make a determination if the claim in the issue is legitimate and should be addressed or will be a "won't…
Review and triage semgrep security scan results to identify true positive vulnerabilities. Use when analyzing semgrep output, triaging security findings, reviewing static analysis…
Review a Skia upstream merge PR in mono/skia. Produces a security-auditable report by diffing against the upstream branch, verifying generated P/Invoke bindings, checking source…
Fast code/plan review for quality, security, and tests. Use for quick reviews before deeper analysis.
Use when the user wants a review of currently staged git changes before committing. Triggers on phrases like "review staged", "посмотри что я застейджил", "review before commit",…
Comprehensive review orchestrator. Spawns all relevant review agents (architecture, code quality, security, infrastructure) in parallel against a PR, branch, or set of changes.
Parallel read-only multi-agent review of a current git diff or explicit file scope to find behavioral regressions, security or privacy risks, performance or reliability issues,…
5-agent parallel review gate using agent teams. Spawns Goal Verification, QA Execution, Code Quality, Security Audit, and Context Mining teammates. ALL must pass.
Automated code review and security linting integration for CI/CD pipelines using reviewdog. Aggregates findings from multiple security and quality tools (SAST, linters,…
各レビュアーエージェント(backend, frontend, database, security, infra, req, basic-design, detailed-design)の共通設定、動作モード、出力形式、スコアリング基準を定義
Run a layered quality gate over a code change — code quality, security audit, and architecture consistency, in that order.
Reviews Claude configuration files for security, structure, and prompt engineering quality. Use when reviewing changes to CLAUDE.md files (project-level or .claude/), ski — from…
Reviews Claude configuration files for security, structure, and prompt engineering quality. Use when reviewing changes to CLAUDE.md files (project-level or .claude/), ski — from…
Code review covering security, quality, tests, implementation, documentation,
Security review methodology — attack-surface identification, OWASP Top 10 checks, additional vulnerability checks, and the CRITICAL/HIGH/MEDIUM/LOW severity classification ladder.
Verifica CVEs em package.json, lockfile e Dockerfiles e inspeciona scripts postinstall de novas dependências.
Checklist shift-left de segurança para React — XSS, tokens em storage, CSRF e atributo rel noopener — como parte do DoD do dev.
Academic findings and economic thresholds for revnets from CryptoEconLab research. Use when: (1) explaining cash-out vs loan decision thresholds, (2) discussing loan solvency…
Römisches Recht: Rezeption In Deutschland. Geführter Fachmodul mit Quellenlogik, Prüfroutine, Red-Team-Fragen und verwertbarem Output.
Use when an RFP, RFI, RFQ, security questionnaire, vendor questionnaire, or proposal request arrives and the team needs a structured response — parsing multi-section…
· Administer RHEL/Fedora/CentOS/Rocky/Alma/Amazon Linux: dnf, yum, SELinux, firewalld, dracut. Triggers: 'rhel', 'fedora', 'centos stream', 'rocky', 'dnf', 'selinux'.
RHEL changes since training cutoff (latest: 10.1) — Valkey replaces Redis, Podman v5 with pasta networking, post-quantum crypto, ISC Kea DHCP, stricter TLS/FIPS policies.
Authoring and debugging scripts for Rhinoceros 3D (Rhino 8 and later). Use when asked to write RhinoScript (VBScript / .rvb / .vbs), RhinoPython, or RhinoCommon-based scripts;…
Use when building a .NET 9 service from RI's shared components (ExportKing, KdbxCredentials, OhSheet, Anthea) deployed as a TinyWeb CGI, or registering a URL on the dw portal page.
Decide whether an FFI-binding gem needs a Rigor sub-plugin at all (core `rigor-ffi` covers the literal-`attach_function` + thin-wrapper case), then author one if needed.
Monitor and manage Ring doorbells and security cameras. Query device status, review motion events, manage modes, and export event history.
Panduan pengembangan bahasa pemrograman RiQi — smart contract language yang dirancang security-first untuk blockchain Skylum, mencakup compiler, VM, static analyzer, dan…
Führt die Risikobewertung eines Datenschutzvorfalls anhand der EDSA-Leitlinie 9/2022 zu Beispielen für die Meldung von Datenschutzverletzungen durch.
Conduct cybersecurity risk assessments. TRIGGERS - Use when user needs help with risk-assessment-cyber related tasks.
Identify potential quality, security, and delivery risks early in discovery to inform mitigation planning. — from majiayu000/claude-skill-registry
Motor de gestión de riesgo institucional del Financial Intelligence System. ACTÍVALO siempre antes de cualquier recomendación final de inversión, cuando el usuario presente un…
Develop comprehensive risk management plans for collections and cultural venues including disaster preparedness, security protocols, and insurance coordination
Dispatch risk vector -> reviewer roster + impl/reviewer model + tdd_required. Triggers: s>=- security-reviewer, d>=- data-reviewer, r>=+ reversibility-reviewer, b>=+ full…
Risk-based prioritisation of confirmed attack paths. Combines exploit feasibility, technical CVSS severity, and asset business impact into a single ranked list driving remediation…
Rank a set of enumerated threats or findings by risk (likelihood × impact) and map each to a prioritized mitigation.
Search all 10,533 Security skills →