Claude Code Skills·Claude Skills·The open SKILL.md registry for Claude
ClaudSkillsSecurity › Page 70

Claude Security Skills (Page 70 of 106)

Security auditing, penetration testing, vulnerability scanning, OWASP, cloud security, and compliance skills for Claude Code.

6,335 skills · updated 2026-06-18 · showing 4141–4200 of 6,335 by quality score

Sub-topics:Web Security (773)Threat Hunting (482)Red Team (465)Identity Access (336)Appsec Tools (287)Network Security (286)Compliance (161)Forensics (146)

For the full experience including quality scoring and one-click install features for each skill — upgrade to Pro.

Create and manage sprite animations with multiple frames, animation tags, frame durations, and linked cels.
Interactive planner for Polish national grants: FESL/FERS/NOWEFIO/NIW/CERV/ESC/KPO/FEnIKS/RITA/Slaskie Lokalnie.
Writes the plan.md as a fit-for-purpose agreement between user and agent. Auto-selects one of 16 named plan formats (or a 2-3 format hybrid) based on task signals — top-level,…
Run EXPLAIN QUERY PLAN against every query in a sqlc-style catalog and diff the plans against a baseline.
Disciplined execution of approved plans with step-by-step verification, phase checkpoints, failure investigation, and mandatory code/security reviews.
Documenta progreso y marca tareas completadas en PLAN_MEJORAS.md. Usa SIEMPRE después de completar cualquier tarea del plan de mejoras.
OWASP Top 10 security audit with Supabase-first methodology — RLS pass, bundle/secret scan, auth-path tracing, dependency CVEs. Plan only, no patches or destructive testing.
Expert guidance for Plang programming language (plang.is). Use when the user asks about Plang syntax, wants to generate Plang code, needs help debugging Plang goals, wants to…
Drafts perfected-security-interest Pledge Agreements for securities collateral under UCC Article 9. Use when drafting securities pledge agreements, stock pledge documents,…
Automatically audits Claude Code plugins for security vulnerabilities, best practices, CLAUDE.md compliance, and quality standards when user mentions audit plugin, security…
Adversarially re-review a PM artifact, recommendation, or AI-generated critique that already exists. Use as a second pass after another skill (pm-evaluator, pm-prd-drafter,…
Populate the PM knowledge system from existing project documentation — STATUS.md, KNOWN_ISSUES.md, PROJECT_STATE_REVIEW, security audit reports. The first-sprint bootstrap.
Runs PMD's built-in Apex security ruleset (`category/apex/security.xml`) against Salesforce Apex source to detect injection, privilege-escalation, cryptographic, and XSS…
Use after PNAS reviews arrive to triage the decision, prioritize experiments, and draft a point-by-point response that is respectful, evidence-led, and honest about limits.
Expertise in FedRAMP POA&M lifecycle management, FedRAMP 20x VDR generation, and vulnerability classification using CISA KEV, EPSS, N-ratings, LEV/IRV, and NIST 800-53 control…
PocketBase is an open-source Go backend that ships as a single portable executable. It includes an embedded SQLite database with realtime subscriptions, built-in file and user…
Podium security basics — business messaging and communication platform integration. Use when working with Podium API for messaging, reviews, or payments.
Policy-as-code enforcement and compliance validation using Open Policy Agent (OPA). Use when: (1) Enforcing security and compliance policies across infrastructure and…
Produce a proposed marked-up policy redraft that closes a gap found by /regulatory-legal:gaps or /regulatory-legal:policy-diff.
Policy-diff veya gaps sonucunda bulunan boşluğu kapatmak için Türkçe/İngilizce iç politika üzerinde öneri redraft üretir.
Scan a project or machine for the PolinRider DPRK/Lazarus supply-chain malware (March–April 2026 npm + VS Code campaign).
Query Polymarket prediction market odds and events via CLI. Search for markets, get current prices, list events by category.
Trade Polymarket BTC 5-minute and 15-minute fast markets using CEX price momentum signals via Simmer API. Default signal is Binance BTC/USDT klines.
Validates PopKit security posture using concrete vulnerability patterns, automated secret scanning, and OWASP-aligned checklists
Transform one existing image into a new image through the PopiArt runtime baseline. Use this when the user already has a source image and wants the most direct image-to-image path…
Perform Porter's Five Forces analysis — competitive rivalry, supplier power, buyer power, threat of substitutes, and threat of new entrants.
Performs a rigorous Porter's Five Forces analysis: industry structure, supplier power, buyer power, threat of new entrants, substitutes, and rivalry intensity, with quantified…
Audit investment portfolio management software for mean-variance optimization, Black-Litterman model, risk parity allocation, VaR/CVaR risk metrics, Brinson performance…
Portless local-dev HTTPS proxy operations and integration. Use for: portless setup, named .localhost or custom-TLD URLs (axiom.lab, myapp.test), portless alias for…
Drafts Software and POS System License Agreements for proprietary software use between licensor and licensee.
Forked-context deep post-task reviewer — preloads verdict schema + OWASP security + deep code analysis + PM/docs accuracy + replan lens.
Postein- und Postausgangsbuch fuehren. Posteingang erfasst Empfangstag (relevant fuer Fristbeginn nach BRAO Berufsregeln und § 188 ZPO § 122 AO § 37 SGB X) Absender Inhalt Akte…
Erkennt postfaktische oder pseudoempirische Muster in zivilrechtlicher Argumentation und zwingt zur Trennung von Tatsache, Wertung, Normzweck, Lebenserfahrung und Beweis.
Designing Postgres Row-Level Security (RLS) policies for multi-tenant authorization, especially in Supabase / PostgREST stacks — `CREATE POLICY` syntax, USING vs WITH CHECK,…
Use when designing, reviewing, or hardening PostgreSQL access control and data protection against the security architecture and data classification.
Secure PostHog integration: API key management, project key vs personal key separation, secret rotation, scoped keys, and git-leak prevention.
Proje kapanışında lessons learned oturumu, sprint sonu retrospektifi veya incident sonrası postmortem kolaylaştırır.
Conception de dashboards Power BI — DAX, modèle de données, visualisations avancées et Row-Level Security.
Use when Power BI sources include APM, observability, logs, metrics, traces, IT Ops, Splunk, Datadog, Dynatrace, New Relic, Azure Monitor, Grafana, Prometheus, or data platform…
Use when Power BI sources or governance depend on identity, security, access, Entra ID, Okta, Ping Identity, SailPoint, CyberArk, BeyondTrust, IAM, PAM, RBAC, access reviews, or…
Enterprise PowerShell coding standards. Use when writing, reviewing, or generating any PowerShell code, creating PS1 scripts or functions, debugging PowerShell, or asked to help…
Expert in Windows security hardening and PowerShell security configuration. Specializes in securing automation, enforcing least privilege, and aligning with enterprise security…
Hosted MCP för Manager Pohlman Protean. Endast för orchestrator-subagenten. Kund, projekt, tasks, prio, status, assignee, kommentarer.
Design presentation visuals and slide layouts. Create visual concepts, suggest graphics, and provide design specifications for impactful PowerPoint slides.
Identities are proofed and bound to credentials based on the context of interactions
Explains and toggles the security-toolkit PR-merge guard — whether Claude is blocked from running `gh pr merge`.
Enterprise pre-PR readiness gate for Turbo Asset. Use before opening a pull request, or when the user asks "is this ready to ship / merge", "run the quality gate", or "check the…
單一 PR / session 收尾的 agent-led 回顧:agent 從 PR context(title/body/AC/commits/diff) 自動推論 5 題草稿(problem / value / experience / lessons / improvement), 呈現給使用者校準後寫入 mycelium…
Use when the user asks to review pull requests, analyze code changes, check for security issues in PRs, or assess code quality of diffs.
Review pull requests for spec compliance, security, performance, and code quality. Use when analyzing PRs. Not for writing new code or initial development.
Pragmatics and communicative competence across languages -- speech acts (Austin/Searle), Grice's conversational maxims and implicature, politeness theory (Brown & Levinson),…
pre-commit hookセキュリティスキル。機密情報検出パターン、git-secrets/gitleaks統合、チーム展開戦略、Git履歴スキャンを実装し、コミット前の機密情報漏洩を防ぐ。
Verifica que no haya credenciales, secrets o archivos sensibles antes de pushear a GitHub. Busca API keys hardcodeadas, .env con valores reales, y valida .gitignore.
Skill do używania biblioteki preboot-core. Użyj tego skilla zawsze gdy użytkownik chce cache z TTL, rate limiting, synchronizację dostępu po kluczu, transakcje programowe,…
Skill do używania biblioteki preboot-query. Użyj tego skilla zawsze gdy użytkownik chce implementować dynamiczne filtrowanie, sortowanie, paginację, repozytorium z wyszukiwaniem,…
Comprehensive expertise in decentralized prediction markets, including Polymarket-style platforms, UMA Optimistic Oracle integration, Conditional Tokens Framework (CTF), market…
Audit manufacturing predictive maintenance systems for OPC-UA/MQTT sensor data pipelines, time-series storage retention, ML model lifecycle (training-serving skew, drift…
Prüft die Einhaltung der Preisangabenverordnung 2022 (PAngV) bei Gesamtpreisen, Grundpreisen, Streichpreisen und Versandkosten, insbesondere die 30-Tage-Niedrigstpreisreg — from…
Use when breaking down an epic into user stories, story splitting, backlog grooming, defining acceptance criteria, or auditing and reconciling existing epic children before…
Tracks the latest preprints and emerging research topics related to your topic across bioRxiv, medRxiv, and arXiv.
Search all 6,335 Security skills →