Claude Code Skills·Claude Skills·The open SKILL.md registry for Claude
ClaudSkillsSecurity › Page 32

Claude Security Skills (Page 32 of 106)

Security auditing, penetration testing, vulnerability scanning, OWASP, cloud security, and compliance skills for Claude Code.

6,335 skills · updated 2026-06-18 · showing 1861–1920 of 6,335 by quality score

Sub-topics:Web Security (773)Threat Hunting (482)Red Team (465)Identity Access (336)Appsec Tools (287)Network Security (286)Compliance (161)Forensics (146)

For the full experience including quality scoring and one-click install features for each skill — upgrade to Pro.

Design and enforce row-level security, Data Access Controls (DACs), Analysis Authorization imports from BW/4HANA, and audit policies.
Expert guidance for Microsoft Dataverse development including Web API (OData), C# plugin development, custom APIs, security model, early-bound types, and FetchXML queries.
Daytona seeded cloud demo, demo credentials, Acme Robotics seed. Use when the user asks to spin up, keep running, seed, or prepare an OpenWork Cloud/Den Daytona demo instance.
Database performance and safety audit. 70+ checks across 13 dimensions (DB1-DB13): query patterns, indexes, schema design, connections, transactions, migrations, caching, query…
Use when user wants to create database migrations, compare model changes, generate SQL migration files, manage schema changes, or handle database versioning for MySQL, PostgreSQL,…
Open and operate the local DB Craft visual schema studio at D:\DBdesigner. Use it to design or edit MySQL 8, PostgreSQL 14, SQLite, and MSSQL models, generate tables with AI,…
dbmate is a standalone, framework-agnostic database migration tool that uses plain SQL files. It supports PostgreSQL, MySQL, SQLite, ClickHouse, BigQuery, and Spanner, and works…
Drafts DD Form 254 Contract Security Classification Specifications for classified government contracts.
A final accuracy check for security work — it re-tests a conclusion against the evidence and labels each part as confirmed, inferred, or assumed, so an unverified result never…
Iterative TRIO-debate + fix-wave protocol for hardening non-trivial PRs and changes before merge. Spawns a parallel Reviewer + Auditor + Critic trio, dispatches fix waves, loops…
Handle a GitHub Security Advisory response for Paperclip, including confidential fix development in a temporary private fork, human coordination on advisory-thread comments, CVE…
Maintain durable repository memory for architecture and technical decisions using ADRs, decision candidates, and update/supersede checks.
Detect decompression bomb vulnerabilities where compressed input can expand to exhaust memory, targeting buffer-based decompression without size limits.
Merge two tracking issues that describe the same root-cause vulnerability (typically discovered independently by two reporters, arriving via different channels) — from…
Drafts combined Deed of Trust and Security Agreement instruments creating real property and UCC Article 9 personal property security interests for commercial financing.
Takes a rough, unpolished prompt idea and autonomously turns it into an implementation plan. Researches the project deeply, asks clarifying questions, generates a precise internal…
Install and configure Deepgram SDK authentication. Use when setting up a new Deepgram integration, configuring API keys, or initializing Deepgram in your project.
Apply Deepgram security best practices for API key management and data protection. Use when securing Deepgram integrations, implementing key rotation, or auditing security…
Comprehensive academic advisor investigation and evaluation system for graduate school decisions. Investigates professors at any institution worldwide — searches publications…
Guide for implementing DefectDojo - an open-source DevSecOps, ASPM, and vulnerability management platform.
Implement layered collective defense using alarm signaling, role mobilization, and proportional response.
Blue-team release-gate analysis for smart contract deployment and upgrade readiness. Classifies repositories, checks deploy/upgrade execution paths, CI/CD trust boundaries, config…
Trigger Windows Defender scans, check threat history, update signatures, and query protection status via PowerShell
Implement mitigations, create input filters, design output guards, and build defensive prompting for LLM security
Analyze defense supply chain systems — DFARS compliance assessment, CMMC cybersecurity readiness, sole-source and DMSMS risk identification, counterfeit parts prevention per SAE…
Registre achados fora de escopo em `prompts_futuros.md` durante tarefas de análise, correção ou implementação, sem interromper o pedido principal.
中文优先:用于DeFiAMM安全相关任务,帮助识别、设计、实现或验证对应工作流。English keywords: Security checklist for Solidity AMM contracts, liquidity pools, and swap flows.
DeFi protocol specialist for AMMs, lending protocols, yield strategies, and economic securityUse when "defi, amm, liquidity pool, lending protocol, yield farming, oracle,…
Capture the quality and standards baseline — linting, formatting, testing strategy, security, accessibility, performance budgets, documentation, and observability.
Use when testing plans or decisions for blind spots, need adversarial review before launch, validating strategy against worst-case scenarios, building consensus through structured…
Run DEM lineament analysis to identify unmapped fault structures. Use when visually confirming orphan earthquake clusters, mapping fault extensions, or finding dark earthquake…
OpenPBX TDD 再構築(/denwa)。0→9。legacy parity B(CDR検索・課金明細・同時通話等)は steps 付録 D。 SOC/カプセル化/T-TS(§5.4.1)/T-SEC(ペネトレ)は denwa-architecture-gate + Vitest + prod-check で強制。 層: core / ops /…
Deobfuscates malicious JavaScript code used in web-based attacks, phishing pages, and dropper scripts by reversing
Systematically deobfuscate multi-layer PowerShell malware using AST analysis, dynamic tracing, and tools like
Batch-apply pnpm.overrides for CVE fixes in a single PR. Use when multiple Dependabot/security alerts need dependency overrides — collapses N identical workflows into one…
Periodic dependency review for Node.js/pnpm projects — outdated package triage, security audit, update batching strategy (patch/minor/major), validation checklist.
Fix Dependabot security vulnerabilities in Java/Gradle projects using severity-based processing, dependency substitution strategies, and dependency graph verification.
Use when the user wants to fix, address, clear, or resolve open Dependabot security/vulnerability alerts for a repository, end to end.
Analyze project dependencies for health, security, and bloat — audit outdated, deprecated, vulnerable, duplicate, heavy, and unused packages across npm, pip, cargo, go mod, and…
Analyze project dependencies for vulnerabilities, updates, and optimization opportunities. Use when auditing dependencies or managing package versions.
Provides dependency management and supply chain security practices for auditing vulnerabilities, checking licenses, assessing dependency health, and managing upgrades safely.
Reviews package dependencies for security vulnerabilities, outdated versions, and license compliance. Use when user asks about dependencies, security audits, or before releases.
L1 supplement - audits Go modules and Rust crates for known vulnerabilities, outdated versions, supply chain risks, and replace/patch directives.
Periodically scan project dependencies for security vulnerabilities, outdated packages, and unused dependencies. Produces a prioritized action report.
Automated security auditing of project dependencies to identify known vulnerabilities.
Audit dependencies — npm audit, govulncheck, pip-audit, cargo-audit, outdated packages, update plan
Detect and resolve package dependency conflicts before installation across npm/yarn/pnpm, pip/poetry, cargo, and composer. Auto-trigger when installing/upgrading packages.
Diagnose and heal dependency issues in ANY package manager, ANY language. Use when facing version conflicts, security vulnerabilities, or dependency bloat.
Automated dependency management with security scanning, update orchestration, and compatibility validation
Security-first dependency management methodology with batch remediation, policy-driven compliance, and automated enforcement.
Python dependency and environment management for multi-service or monorepo python backends. Use when: (1) adding, upgrading, or removing a Python package, (2) responding to…
You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security.
Use when the Integrator is managing project dependencies, updating packages, resolving version conflicts, auditing for vulnerabilities, or maintaining lock files.
Expert dependency manager specializing in package management, security auditing, and version conflict resolution across multiple ecosystems.
Expert at package management and supply chain security. Use when managing dependencies, updating packages, resolving version conflicts, ensuring supply chain security, or auditing…
Audit dependencies for licensing, security, and maintenance risk. Use when a senior developer needs risk assessment.
Scan project dependencies for known vulnerabilities (CVEs), auto-fix safe patches, and generate SBOM.
Enforce dependency security scanning and SBOM generation. Use when adding dependencies, reviewing package.json, or during security audits.
Audit dependency CVEs across Node, Python, Flutter/Dart, and mixed repos; design OSV/native audit hooks for pre-push and CI.
Comprehensive guide for Dependency-Track - Software Composition Analysis (SCA) and SBOM management platform.
Search all 6,335 Security skills →