Claude Code Skills·Claude Skills·The open SKILL.md registry for Claude
ClaudSkillsSecurity › Page 134

Claude Security Skills (Page 134 of 176)

Security auditing, penetration testing, vulnerability scanning, OWASP, cloud security, and compliance skills for Claude Code.

10,533 skills · updated 2026-08-26 · showing 7981–8040 of 10,533 by quality score

Sub-topics:Red Team (1,582)Web Security (1,094)Threat Hunting (754)Identity Access (496)Network Security (414)Appsec Tools (381)Forensics (295)Malware Analysis (207)

For the full experience including quality scoring and one-click install features for each skill — upgrade to Pro.

Security Incident Shop Datenschutzmeldung: prüft die einschlägigen Voraussetzungen, Dokumente, Risiken und Ausnahmen.
Klausel-Spezialskill für Security Incidents: prüft, redlined und entwirft die Klausel mit Risikoampel, Verbraucher-/B2B-Unterscheidung und praxistauglicher Ersatzfassung.
Wenn es um Security: Dokumentenmatrix, Lückenliste und Nachforderung in Kanzlei-Builder-Hub geht: ordnet Akteninhalt, Belege, Lücken und Nachforderungen; liefert eine…
Master security ioc enrichment with comprehensive coverage of concepts, implementation, optimization, and production best practices.
Merge two tracking issues that describe the same root-cause vulnerability (typically discovered independently by two reporters, arriving via different channels) — from…
Attempt to fix a security issue tracked in by implementing the change in a public PR.
Scan for reports that have not yet been copied into as tracking issues, present the proposed imports to the user, and — defaulting to *import un — from…
Open one or more `` tracking issues from a markdown file containing a batch of security findings (typically the output of an AI security review or a third-party — from…
Open a tracking issue in for a security-relevant fix that has already been opened (or merged) as a public PR in , in the case where there is no inboun — from…
Optional sub-skill of `security-issue-import`, `security-issue-invalidate`, and `security-issue-sync` that handles the *relay/forwarder* case: a report that did not arrive…
Close an `` tracking issue as invalid: apply the `invalid` label, remove the scope label, post a short closing comment, archive the item from the project board — from…
Synchronize a security issue in with the state of its GitHub discussion, the mailing thread, and any PRs that fix it.
For each open `` issue carrying the `needs triage` label, read body + comments and classify the candidate disposition into one of five classes: VALID / DEFENSE-IN-DEPTH /…
Security Journey integration. Manage data, records, and automate workflows. Use when the user wants to interact with Security Journey data.
Comprehensive JWT authentication and authorization implementation with security best practices for .NET applications
Erstellt Board-Reporting mit aussagekräftigen Security-KPIs im Nis2 Cybersecurity Compliance.
Manage security policies, firewall zones, access control rules (ACLs), and guest network access. Perform comprehensive security audits and compliance reviews.
Use when a task needs the judgment of a corporate security management specialist — designing a physical/personnel security program, scoping an executive protection detail,…
Use when a task needs the judgment of a (physical/corporate) Security Manager — designing physical access controls, assessing a facility or event's security risk, responding to a…
Use when the user wants a security-maturity scorecard / posture assessment of a module — category ratings with evidence, not a vulnerability hunt.
Mobile-specific security per OWASP MASVS v2 (Mobile Application Security Verification Standard). Use when designing or reviewing secure storage (Keychain/Keystore vs…
Real-time security monitoring for Clawdbot. Detects intrusions, unusual API calls, credential usage patterns, and alerts on breaches.
Comprehensive security audit for OpenClaw deployments. Checks Docker port bindings, SSH config, openclaw.json settings, file permissions, exposed services, and firewall rules.
Automate security monitoring, threat detection, incident response, and compliance workflows
Reise- und Gerätesicherheit bei China-Reisen: Zollkontrolle Geräte Grenze CN (Durchsuchungsrisiken), Gerätesicherheitskonzept (Leihgeräte, Clean Phone), Exit-Ban-Risiko für…
Security audit orchestrator - parallel dependency scanning, SAST pattern detection, auth/config review.
Route a security task to the right skill among six specialists — defensive code review, offensive/bounty vulnerability hunting, agent-config (.claude) auditing, source-asset &…
Monitor social platforms for security threats, vulnerability discussions, and breach intelligence using Xpoz.
Expert at securing web applications against OWASP Top 10 vulnerabilities. Covers authentication, authorization, input validation, XSS prevention, CSRF protection, secure headers,…
Analyze git repositories to build a security ownership topology (people-to-file), compute bus factor and sensitive-code ownership, and export CSV/JSON for graph databases — from…
Prüft GmbH-Anteile, Konten, Forderungen, IP, Warenlager, Grundschuld, Garantie und Sicherheitenzweck im Private Equity Praxis.
Auto-activates when user mentions security, vulnerabilities, OWASP, or secure coding. Expert in web security including OWASP Top 10, authentication, authorization, and secure…
Walk the current diff (or the whole repo) against SECURITY.md's trust-boundary table and "Where I'd look" list, invariant by invariant, delegating the adversarial review to the…
Security patterns and OWASP guidelines. Triggers on: security review, OWASP, XSS, SQL injection, CSRF, authentication, authorization, secrets management, input validation, secure…
Use when the user asks to perform security audits, penetration testing, vulnerability scanning, OWASP Top 10 checks, or offensive security assessments.
Plans security penetration tests for web applications. Analyzes codebase, API routes, auth implementation, and infrastructure config to generate comprehensive pentest plans.
Bundle of 90+ granular skills for Active Directory, Kerberos, Reverse Engineering, and Vulnerability analysis.
Use when changes touch auth, permissions, secrets, env files, deploy config, external messages, data export/import, production DB writes, or customer-visible behavior; surfaces…
Automated PII detection and redaction for client data protection. Scans outputs, logs, artifacts, and communications for sensitive data before external exposure.
Application and AI-agent security - secrets management, authentication and authorization (least privilege), OWASP Top 10 mitigations, transport and crypto baseline, secure…
Security Policy Generator - Auto-activating skill for Security Advanced. Triggers on: security policy generator, security policy generator Part of the Security Advanced skill…
Security-focused review of an ACTUAL diff (PR, branch delta, or staged/working changes) — hunts authn/authz gaps, missing object-level and tenant-scope checks, injection, unsafe…
Secure coding with Claude Code - vulnerability prevention, secrets, security review
Review data retention, deletion, backup residency, and cross-border data transfer.
Prüft IT-Security-Anforderungen in Einkauf, Ausschreibung und Beschaffung von SaaS, Hardware, OT, Managed Services und Cyberdienstleistungen im Nis2 Cybersecurity Compliance.
Security QA scenarios: abuse cases, negative tests, permissions, tenants, repros.
Use when security questionnaire questions need category, sensitivity, source mapping, ownership, and review routing before answers are matched.
Draft answers to a vendor security questionnaire (SIG, CAIQ, or a custom sheet) from your real controls — fast, consistent, and honest about gaps.
Scan code or configuration for common security issues. Use when a mid-level developer needs a quick security pass.
Audit your own agentic setup's security posture. Use when the user asks to check/harden their setup, run a security check on their machine, scan their installed Claude Code skills…
System-tier red-team agent: proposes adversarial attack patterns the sentinel should catch. Structurally separated from the sentinel — never authors eval suites targeting itself.
Security checklists for everyday diffs — parameterize at trust boundaries, allowlist enums, per-object authorization, secrets never in logs/bundles/errors.
Use to turn security findings and threats into automated tests that stay green — negative tests for authorization/injection/abuse, a test per fixed vulnerability, and CI…
Use para mudanças de dependência, scripts, Dev Container, workflows, publicação NPM, release notes e proteção contra ações inseguras de agentes.
Generate security assessment reports in docx format with findings, risk ratings, and remediation recommendations.
Generate security assessment reports in docx format with findings, risk ratings, and remediation recommendations.
Derive security requirements from threat models and business context. Use when translating threats into actionable requirements, creating security user stories, or buildi — from…
Derive security requirements from threat models and business context. Use when translating threats into actionable requirements, creating security user stories, or buildi — from…
Team Mode security research skill. Orchestrates 3 vulnerability hunters and 2 PoC engineers to audit a codebase in parallel, prove exploitability, classify root causes, and…
Security vulnerability assessment identifying OWASP risks, injection vectors, authentication issues, and data exposure with severity classification.
Search all 10,533 Security skills →