Browse Secure Claude Skills
Search verified agent skills and review security grades before installing · full A–Z index
- What Did I Get DoneSummarize authored commits over a user-specified time period into a concise updateVotes: 0GitHub stars: 4
- Make Pr Easy To ReviewPrepare PRs for review by cleaning noisy history, improving PR descriptions, and adding reviewer guidance without changing code behavior. Use for "make this easy to review", "tidy this PR", "clean up commits", or "annotate the diff".Votes: 0GitHub stars: 4
- Get Pr CommentsFetch and summarize review comments from the active pull requestVotes: 0GitHub stars: 4
- Fix Merge ConflictsResolve merge conflicts non-interactively, validate build and tests, and finalize conflict resolutionVotes: 0GitHub stars: 4
- Fix CiFind failing PR checks, inspect logs or external check links, and apply focused fixesVotes: 0GitHub stars: 4
- DeslopRemove AI-generated code slop and clean up code styleVotes: 0GitHub stars: 4
- BroRestate the last message in plain human language, with no jargon.Votes: 0GitHub stars: 4
- Malicious SkillSample skill for atkx:skill-eval holding one case of each kind of security gate failure. A fixture with a known verdict, never to be installed or run. Its hosts are all under example.invalid, and help comes from docs.example.invalid.Votes: 0GitHub stars: 8
- Good SkillSample skill for atkx:skill-eval: summarises a changelog file into three lines for a release announcement. A fixture with a known verdict, not a skill to install. Triggers on: "summarise the changelog", "tóm tắt changelog", "変更履歴を要約".Votes: 0GitHub stars: 8
- Skill EvalEvaluate an agent skill a project has written, for Claude Code, Codex or Cursor: a static check of its structure, metadata, size and safety, with a security gate for what the skill does and not only what it holds, a check against the project's own written conventions, trigger measurement on Claude Code, drafted trigger cases it lacks, a review of one run of it in this conversation, and one composite score with a grade above the figures behind it. Reads the skill and changes nothing in it. Use...Votes: 0GitHub stars: 8
- Run CasesExecute approved test cases against a deployed DEV or staging environment through the browser: refuse production and the local stack, recon the accounts and data, triage every case as automatable, semi-automatable, manual, or blocked, naming the person who clears any obstacle the run cannot clear itself, agree the scope with the person before any case runs, run in at most three rounds, and write only the results it observed into a run record the QA lead approves and `atk:qa --bug` reads. Use ...Votes: 0GitHub stars: 8
- Build Interactive Particle TrailBuild a cursor or touch particle interaction that emits by distance along the traveled segment into a recycled GPU point pool, with optional keyboard-triggered bursts. Use for interactive particle trails, pollen lifted from a surface, dust disturbed by a pointer, hover particle bursts, and discrete motes whose spacing must stay consistent at different gesture speeds.Votes: 0GitHub stars: 11
- Ufawkes KnowledgeUse when searching uFawkesAI institutional knowledge via qmd — agent orchestration, AI-SDLC pipeline, skill/registry conventions, DORA measurement — or when an answer should come from this repo's docs rather than its code.Votes: 0GitHub stars: 2
- Dojo NavigatorSurface the relevant Fawkes Dojo module for the current task and map it to the DORA capability being worked on. Implements DORA AI Capability 3 and AI Capability 6 by linking internal docs to the learning path.Votes: 0GitHub stars: 2
- Continuous EvalsRegression-gate changes to the agent configuration (AGENTS.md, .agents/ rules, skills, agents, workflows, hooks) by replaying recorded tasks and blocking if the pass rate drops below baseline. Use when changing any agent configuration, or when adding an eval task after a real agent mistake. Implements DORA AI Capability 7.Votes: 0GitHub stars: 2
- OrchestrateInternal, invoked from the orchestration context: tier classification, delegation model table, and phase-owner dispatch rules for sizing and dispatching implementation work.Votes: 0GitHub stars: 207
- InitSets up Task Orchestrator for a project or for the user: creates (or finds) the project anchor root, writes the project: block into .taskorchestrator/config.yaml at the main checkout root, pushes it to the server, and seeds the bundled process rules. In project mode it also writes a project-level client.json when the server is a loopback HTTP server. With --user it creates a personal root and writes the user-level config.yaml and client.json instead. Use when a user says: initialize task orch...Votes: 0GitHub stars: 207
- Project BootstrapperRefines the seeded CLAUDE.md / ARCHITECTURE.md / knowledge nodes when a project's add-project bundle needs a human-led second pass — brownfield layouts, polyglot stacks. Use after the bundle ran, not before.Votes: 0GitHub stars: 6
- Orchestrator InstallerDiagnoses partially-failed VCO installs (container failures, port conflicts, mid-run exits, deferred items) and advises on install.py flags and pre-install audits. Use when an install broke — not the happy path (first-install.sh/.bat).Votes: 0GitHub stars: 6
- Salt Code Policy Honesty Not CloneSalt Code (getsaltcode.com by Salt Security) provides 40 security policies as prompt-time context injection, not an execution firewall. Steal the 40-policy taxonomy, OpenAPI query-string auth diode, and MCP credential hygiene onto ThumbGate PreToolUse rails. Never install Salt Code MCP or route traffic to mcp.getsaltcode.com. Slash: /salt-code-policy-honesty-not-clone.Votes: 0GitHub stars: 27