Claude Code Skills·Claude Skills·The open SKILL.md registry for Claude
ClaudSkillsSecurity › Page 69

Claude Security Skills (Page 69 of 176)

Security auditing, penetration testing, vulnerability scanning, OWASP, cloud security, and compliance skills for Claude Code.

10,533 skills · updated 2026-08-26 · showing 4081–4140 of 10,533 by quality score

Sub-topics:Red Team (1,582)Web Security (1,094)Threat Hunting (754)Identity Access (496)Network Security (414)Appsec Tools (381)Forensics (295)Malware Analysis (207)

For the full experience including quality scoring and one-click install features for each skill — upgrade to Pro.

全面的代码安全检查和服务器安全审计skill。适用于:(1) 代码漏洞扫描 - 检测SQL注入、XSS、SSRF等OWASP Top 10漏洞,(2) 依赖安全检查 - 识别过时或有漏洞的第三方库(如React2Shell CVE-2025-55182、Next.js CVE-2025-66478),(3) 服务器配置审计 -…
Generate AI images using ByteDance's Seedream 4.0 API. Use when user wants to create, generate, or make images from text descriptions, especially for professional graphics,…
Römisches Recht: Gefahrtragung Beim Kauf. Geführter Fachmodul mit Quellenlogik, Prüfroutine, Red-Team-Fragen und verwertbarem Output.
Verknüpft IT-Security mit Geschäftsgeheimnisschutz im Nis2 Cybersecurity Compliance.
Patentanwälte: geldwaesche bei ip transaktionen - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit,…
Steuerberater: geldwaesche risikoanalyse steuerkanzlei - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik,…
Notare: geldwaesche sanktionslisten - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit, Belegplan und…
Baut praxistaugliche interne Sicherungsmaßnahmen, Richtlinien, Kontrollen, Eskalationen, Schulungen und Audit-Trail.
Notare: geldwaeschepruefung immobilienkauf - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit, Belegplan…
Wirtschaftsprüfer: geldwaeschepruefung wp praxis - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit,…
Dual-AI engineering loop orchestrating Claude Code (planning/implementation) and Gemini (validation/review).
Expert guide for configuring Google Gemini CLI. Covers global vs project settings.json, Trusted Folders, Policy Engine, and environment variables.
Whole-codebase analysis powered by Gemini 2.5 Pro's 2M token context window. Loads the entire repository into context, runs Deep Think extended reasoning to surface architecture…
[CLAUDE CODE ONLY] Leverage Gemini CLI for AI peer review, second opinions on architecture and design decisions, cross-validation of implementations, security analysis,…
Get a second opinion from Gemini on code, architecture, debugging, or security. Uses gemini-coach CLI with AI-to-AI prompting for clear, actionable analysis.
Get a second opinion from Gemini on code, architecture, debugging, or security. Uses direct Gemini API calls — no CLI dependencies.
Central authority for Gemini CLI sandboxing and isolation. Covers Docker, Podman, macOS Seatbelt profiles, and security boundaries.
Migrate AI image generation from Google Gemini 2.5 Flash to BytePlus SeeDream v4.5. Use when: (1) User wants to switch from Gemini to SeeDream/BytePlus for image generation, (2)…
3D structural geological modeling using implicit methods. Create geological models with faults, folds, and unconformities from surface points and orientations.
Use when generating project-specialized subagents (test-author, code-reviewer, debugger, maintainer, security-auditor) into a target repo's agents directory (.claude/agents/ for…
General software development best practices covering code quality, testing, security, performance, and maintainability across technology stacks
Generate 10 brilliant ideas for powerful new functionality. Use when brainstorming features, improvements, or innovations for a system.
Generate a CVE 5.x JSON document from an tracking issue, ready to paste into the Vulnogram `#source` tab of the ASF CVE tool at…
Create standardized report headers with metadata for all agent-generated reports. Use when generating bug reports, security audits, dependency reports, or any worker output…
Generate repository class for SQLite data access with CRUD methods, row mapping, and TypeScript types. Use when creating new database tables or data access layers.
Supabase JWT 기반 Row Level Security(RLS) 시스템 구현 스킬. 테넌트(회사/조직/팀) 구조에서 관리자가 구성원에게 리소스(게시판/메뉴/기능) 접근 권한을 개별 부여하고, Auth Hook으로 JWT에 주입하여 DB 레벨까지 자동 강제하는 시스템.
Generate sandbox security policies from plain-language requirements and optional REST API documentation.
Produce and ingest CycloneDX and SPDX SBOMs and correlate them to vulnerability intelligence.
Generate comprehensive compliance reports for security standards. Use when creating compliance documentation.
Run Hayabusa against collected Windows EVTX files to apply Sigma detection rules and produce a prioritized, chronological CSV/JSON timeline with severity levels, MITRE ATT&CK…
Use when generating hundreds or thousands of unique landing pages from a structured data source (Supabase table, CSV, Sanity collection) — city pages, category pages, "[X] for…
Generate comprehensive security audit reports for applications and systems. Use when you need to assess security posture, identify vulnerabilities, evaluate compliance status, or…
Generates structured cyber threat intelligence reports at strategic, operational, and tactical levels tailored
Genere un fichier Zoom SQL (.dhsp) complet avec les 27 procedures obligatoires du cycle de vie ecran CRUD (creation, modification, suppression, consultation).
Audite un projet tech (code source + expérience rendue) et évalue son adéquation à 5 cohortes générationnelles (Boomers, Gen X, Millennials, Gen Z, Gen Alpha).
Use when reasoning about the pattern where a language model emits, as structured output, a description of UI components or a UI sub-tree that an application then renders for the…
Gentleman.Dots / Gentleman Programming alongside DobackSoft. Tono y jerarquía ya aplican siempre vía .cursor/rules/gentleman-dobacksoft.mdc; esta skill amplía instalación y globs…
Perform geometric calculations on protein structures using Biopython Bio.PDB. Use when measuring distances, angles, and dihedrals, superimposing structures, calculating R — from…
[FREE — public data, free API key required] Environmental disaster and hazard data -- GDACS disaster alerts, USGS earthquakes, NASA FIRMS fire detection, NASA EONET natural events
Direct the geopolitical overlay subdomain — route macro-geopolitical investment questions to the right specialist skill covering great-power dynamics, energy security, or secular…
Gerador e executor de quiz sobre conhecimento RAG. Comandos: '/gerar-quiz-rag gerar' para gerar perguntas do banco RAG e salvar em JSON, '/gerar-quiz-rag iniciar' para executar…
Geschäftsgeheimnisschutz in China-Operationen: Chinesisches UWG (Anti-Unfair Competition Law) und Trade-Secret-Definitionen, GeschGehG (DE) §§ 2 ff.
Römisches Recht: Gesellschaft Societas. Geführter Fachmodul mit Quellenlogik, Prüfroutine, Red-Team-Fragen und verwertbarem Output.
Notare: gesellschafterliste nach auslandsinsolvenz - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit,…
Geschaeftsordnung der Geschaeftsfuehrung. Zustimmungspflichtige Geschaefte Berichtspflichten Meeting-Rhythmus Entscheidungs-Prozesse Eskalations-Matrix bei Mehrgliedrigkeit.
Römisches Recht: Gesellschaftsrecht Vergleich. Geführter Fachmodul mit Quellenlogik, Prüfroutine, Red-Team-Fragen und verwertbarem Output.
Use when user asks about 8 Gesundheit, Health, Social Security, health, Gesundheit, Sozialversicherung, AHV, IV, Heilmittel, Krankenversicherung, KVG, Lebensmittel, SR 8xx.
Gesundheitsdatenpanne Klinik: moderner Medizinrechts-Skill für Fehlversand Arztbrief, Portalzugriff, Ransomware, Meldung, Benachrichtigung und Schadensersatz:…
Fetch current and historical crypto prices and compute ATH or ATL over common time windows.
Detect 500+ types of hardcoded secrets (API keys, credentials, tokens) before they leak into git. Wraps GitGuardian's ggshield CLI.
Automatically validates and enforces GitHub Actions best practices for Vertex AI and Google Cloud deployments.
Comprehensive security patterns for managing authentication in GitHub Agentic Workflows including GitHub token types, credential storage, token rotation, least privilege access…
Comprehensive Docker and container orchestration patterns for GitHub Agentic Workflows including container isolation, security hardening, multi-stage builds, image optimization,…
Use the AWF (Agentic Workflow Firewall) to run commands with network isolation and domain whitelisting. Provides L7 HTTP/HTTPS egress control for AI agents.
Expert knowledge in GitHub Agentic Workflows MCP Gateway - Model Context Protocol routing, configuration, Docker integration, security, and production deployment patterns
Expert knowledge in GitHub Agentic Workflows safe outputs - security architecture, sanitization, controlled AI actions, and write operation patterns
Comprehensive security architecture for GitHub Agentic Workflows including defense-in-depth, threat modeling, sandboxing, permission models, attack vectors, and security best…
Comprehensive guide for all available tools including GitHub, file operations, web, bash, playwright, tool capabilities and limitations, integration patterns, custom tool…
Audit or apply GitHub branch protection, tag rulesets, repo security settings, and signing requirements based on the active profile.
Find exploitable vulnerabilities in GitHub Actions workflows. Every finding MUST include a concrete exploitation scenario — if you can't build the attack, don't report it.
Search all 10,533 Security skills →