Claude Code Skills·Claude Skills·The open SKILL.md registry for Claude
ClaudSkillsSecurity › Page 98

Claude Security Skills (Page 98 of 104)

Security auditing, penetration testing, vulnerability scanning, OWASP, cloud security, and compliance skills for Claude Code.

6,191 skills · updated 2026-06-16 · showing 5821–5880 of 6,191 by quality score

Sub-topics:Web Security (751)Threat Hunting (476)Red Team (453)Identity Access (329)Network Security (284)Appsec Tools (280)Compliance (159)Malware Analysis (138)

For the full experience including quality scoring and one-click install features for each skill — upgrade to Pro.

This skill should be used when the user asks to "integrate goth with echo", "oauth echo framework", "echo authentication", "goth session management", "oauth security", "secure…
Apply organizational ambidexterity theory to balance exploration and exploitation activities. Use this skill when the user needs to diagnose whether an organization is…
Apply Christensen's Disruptive Innovation theory to assess low-end and new-market threats to incumbents.
Apply the Efficient Market Hypothesis (Fama, 1970) to evaluate information incorporation in asset prices across weak, semi-strong, and strong forms.
Apply panel data analysis with fixed effects, random effects, and dynamic GMM to exploit longitudinal variation and control for unobserved heterogeneity.
Apply Smith and Lewis's paradox theory to identify and manage organizational tensions across performing, organizing, belonging, and learning dimensions.
Apply social capital theory (Putnam, Coleman, Bourdieu, Burt) to analyze how network structures and trust generate value or impose constraints.
Use this skill when listing or creating M365 groups in CIPP — security groups, distribution lists, M365 groups, mail-enabled security groups.
When the user wants to build GTM automation with code, design workflow architectures, use AI agents for GTM tasks, or implement the 'architecture over tools' principle.
This skill enables Claude to automatically check for HIPAA (Health Insurance Portability and Accountability Act) compliance issues in codebases, infrastructure configurations, and…
HIPAA compliance for Rails apps handling PHI (Protected Health Information) — Active Record Encryption for PHI at rest, audit logs that survive deletion, access controls (RBAC),…
HITL Protocol — the open standard for human decisions in autonomous agent workflows. When a website or API needs human input, it returns HTTP 202 with a review URL.
houtu-dependencies enterprise-grade Spring Cloud microservice foundational framework complete usage guide.
Apply structured critical thinking — identifying claims, evidence, reasoning chains, hidden assumptions, and logical fallacies — to evaluate or construct specific written…
Hunt TLS/SSL and DNS misconfigurations — missing HSTS (downgrade attack), weak cipher suites, expired/invalid certificates, mTLS bypass, missing SPF/DKIM/DMARC (email spoofing),…
Converts a long source document (opdrachtbeschrijving, stage-plan, intern rapport, draft, bedrijfsbrief, onderzoeksnotities) into a properly structured afstudeerrapport-outline…
Provides cryptocurrency trading data analytics including smart money tracking, whale monitoring, market data queries, and trader statistics.
Internationalization and localization rules for UMRS: locale detection, gettext wiring, .po/.pot file management, French Canadian (fr_CA) translation, security label fidelity, and…
Purchase API keys from iAutoPay Fact API using USDC on Base chain. Use this skill when: - Buying API keys for AI agent payment services - Managing API key subscriptions (1/7/30…
This skill should be used when the user asks to "test for insecure direct object references," "find IDOR vulnerabilities," "exploit broken access control," "enumerate user IDs or…
Generate a production-grade Industrial IoT protocol bridge — OPC UA ↔ MQTT Sparkplug B, Modbus → MQTT, or direct PLC (Rockwell/Siemens/Beckhoff) → cloud (AWS IoT Core / Azure IoT…
This skill covers deploying AWS Security Hub as a centralized cloud security posture management platform that
This skill covers deploying and tuning Web Application Firewall rules on AWS WAF, Azure WAF, and Cloudflare
This skill covers designing and implementing security zones and conduits for industrial automation and control
This skill covers implementing automated security scanning for Infrastructure as Code (IaC) templates using
ISO/IEC 27001:2022 is the international standard for establishing, implementing, maintaining, and continually improving an Information Security Management System (ISMS).
This skill covers implementing Gitleaks for detecting and preventing hardcoded secrets in git repositories.
Use this skill to convert a security incident or public vulnerability pattern into reusable audit prompts, checklists, tests, and AGENTS.md rules.
Detect and reject indirect prompt injection attacks when reading external content (social media posts, comments, documents, emails, web pages, user uploads).
Infisical is an open-source platform for managing application secrets, environment variables, and certificates across teams and infrastructure.
Integrate InFlow stablecoin payments into any project. Use this skill when the user wants to: accept payments, add a checkout, request a payment, build a payment flow, integrate…
This skill enables Claude to automatically scan source code for potential input validation vulnerabilities.
This skill covers integrating OWASP ZAP (Zed Attack Proxy) for Dynamic Application Security Testing in CI/CD
This skill covers integrating Static Application Security Testing (SAST) tools—CodeQL and Semgrep—into GitHub
Turn ambiguous or high-impact product and engineering changes into scoped, verifiable acceptance criteria before or alongside implementation.
Intershop Commerce Management (ICM) backend development best practices. This skill should be used when writing, reviewing, or refactoring ICM Java code to ensure optimal patterns…
Classify incoming IONOS Cloud requests and route them to the narrowest applicable specialist agent. Covers DCD topology review, security and GDPR compliance, managed Kubernetes,…
iOS data persistence expert skill covering SwiftData (@Model, ModelContainer, @Query, #Predicate, migrations, CloudKit), Core Data (NSPersistentContainer, NSFetchRequest, batch…
iOS physical use-after-free exploitation via IOSurface heap spray. Use this skill whenever the user mentions iOS kernel exploitation, physical UAF, IOSurface, page table…
Expert ISO 27701 Privacy Information Management System (PIMS) compliance advisor. Use this skill whenever a user asks about ISO/IEC 27701:2025, ISO/IEC 27701:2019, privacy…
Run a structured check on whether an image or video is AI-generated, digitally manipulated, or authentic-but-miscaptioned, and produce a sourced verdict with a confidence level.
Security considerations for Jackson @JacksonInject annotation in Java applications. How to prevent JSON input from overriding server-injected values.
Use this skill whenever the user asks to inspect JoCoHunt, 조코헌트, jocohunt.jocoding.io products, ideas, rankings, makers, public security headers, or wants a CLI workflow for the…
Skill: Leiloeiros das Juntas Comerciais do Brasil workflow skill. Use this skill when the user needs Coleta e consulta dados de leiloeiros oficiais de todas as 27 Juntas…
CISA Known Exploited Vulnerabilities (KEV) catalog. List actively exploited vulnerabilities prioritized by CISA. **Dependency**: This is an x-cmd module.
Prepares multi-layered educational content for a specific child — currently focused on a 9-year-old boy in Zurich with deep interests in space, physics, math and biology.
Generates printable exercise sheets for Quentin (4th grade, Zurich public school) to prepare for tests and strengthen schoolwork.
Use this skill for Kubernetes Pod Security Admission (PSA) review covering namespace labels for the three profiles (privileged, baseline, restricted), enforce/audit/warn modes,…
Comprehensive healthcare AI toolkit for developing, testing, and deploying machine learning models with clinical data.
Build LangChain (Python) tools using Claude Code's fail-closed design pattern — unified name/schema/security/execution in one class, with automatic three-layer execution (validate…
Run a comprehensive pre-launch quality audit on any web application. Explores the codebase first, then generates project-specific audit prompts that reference the actual files,…
LEX: Legal-Entity-X-ref workflow skill. Use this skill when the user needs Centralized ''Truth Engine'' for cross-jurisdictional legal context (US, EU, CA) and contract s — from…
libSQL is an open-source, open-contribution fork of SQLite by Turso that adds embedded replicas, server mode, and WebAssembly UDFs.
The Advanced Security Scanner is a comprehensive utility designed to safeguard your software development lifecycle by identifying critical vulnerabilities, misconfigurations, and…
Use this skill when the user says 'licensing', 'license audit', 'can I use this commercially', 'OSS license check', 'license compatibility', 'GPL', 'MIT', 'AGPL', 'copyleft'.
This skill should be used when the user asks to "run LINDDUN analysis", "check privacy threats", "privacy threat model", "GDPR analysis", "check data protection", or invokes…
Search, enrich, and manage family heritage and historical relationship data from the LiùDào (六道) SQLite database.
This skill sets up log aggregation solutions using ELK (Elasticsearch, Logstash, Kibana), Loki, or Splunk.
Apple macOS expert for configuring, diagnosing, fixing, and optimizing MacBooks and Macs. Use this skill whenever the user mentions Mac, MacBook, macOS, system preferences, system…
Real-time detection and analysis of significant price movements and unusual volume patterns across cryptocurrency markets. This skill identifies top g
Search all 6,191 Security skills →