Browse Secure Claude Skills
Search verified agent skills and review security grades before installing · full A–Z index
- Security OwaspExpert at securing web applications against OWASP Top 10 vulnerabilities. Covers authentication, authorization, input validation, XSS prevention, CSRF protection, secure headers, and security testing. Treats security as a first-class requirement, not an afterthought. Use when "security, OWASP, XSS, CSRF, SQL injection, authentication security, authorization, input validation, secure headers, vulnerability, penetration testing, security, owasp, authentication, authorization, xss, csrf, injecti...Votes: 0GitHub stars: 137
- Security And HardeningOWASP Top 10 prevention, auth patterns, secrets management, dependency auditing, three-tier boundary system. Use when handling user input, auth, data storage, or external integrations.Votes: 0GitHub stars: 8
- SecuritySecurity validation, vulnerability scanning, and compliance checking.Votes: 0GitHub stars: 416
- Security EngineerUse when a task needs infrastructure and platform security engineering across IAM, secrets, network controls, or hardening work.Votes: 0GitHub stars: 3
- Securityread-only security audit. Primary owner: secrets, OWASP, CVE and PII findings. Do not use for: security remediation. Use when this role is selected by the Agent-Vorcl-Flow router.Votes: 0GitHub stars: 2
- GuardrailsSecurity techniques and quality control for prompts and agentsVotes: 0GitHub stars: 76
- Authentication SecurityUse with analysis-agent, task-agent, or review-agent for task-local authentication lifecycle and recovery risk. Do not use without that decision or as task owner.Votes: 0GitHub stars: 7
- Security And HardeningOWASP Top 10 prevention, auth patterns, secrets management, dependency auditing, boundary validation. Use when handling user input, auth, or external integrations.Votes: 0GitHub stars: 8
- SecurityUse for identifying security vulnerabilities and hardening code.Votes: 0GitHub stars: 3
- SecurityApplication security best practices and patternsVotes: 0GitHub stars: 24
- Web SecurityEnforce web security and avoid security vulnerabilitiesVotes: 0GitHub stars: 207
- Security ArchitectUse when an org role acts as security architect and must design security in before build: threat models, trust boundaries, zero-trust and authn/authz patterns. Covers STRIDE, least privilege, defense in depth, secrets architecture, OIDC and mTLS, and ADRs for security controls.Votes: 0GitHub stars: 21
- CollectionTest for security vulnerabilities using OWASP principles. Use when conducting security audits, testing auth, or implementing security practices.Votes: 0GitHub stars: 24
- Senior SecuritySecurity engineering toolkit for threat modeling, vulnerability analysis, secure architecture, and penetration.Votes: 0GitHub stars: 10
- Engineering Engineering Security EngineerExpert application security engineer specializing in threat modeling, vulnerability assessment, secure code review, security architecture design, and incident response for modern web, API, and cloud-native applications.Votes: 0GitHub stars: 2
- Secure Code GuardianUse when implementing authentication/authorization, securing user input, or preventing OWASP Top 10 vulnerabilities. Invoke for authentication, authorization, input validation, encryption, OWASP Top 10 prevention.Votes: 0GitHub stars: 10
- Security AuditorUse when reviewing code for security vulnerabilities, implementing authentication flows, auditing OWASP Top 10, configuring CORS/CSP headers, handling secrets, input validation, SQL injection prevention, XSS protection, or any security-related code review.Votes: 0GitHub stars: 2,128
- Security ChecklistReference document for monopoly security-checklist.Votes: 0GitHub stars: 3
- SecurityApplication security guidance covering OWASP Top 10 mitigations, secrets handling, boundary validation, SQL injection prevention, JWT usage, dependency scanning, and STRIDE threat modeling. Use for audits, auth changes, or any security-sensitive code.Votes: 0GitHub stars: 21
- Gsd SecureSecurity audit of changes; enforce defense in depth and OWASP best practicesVotes: 0GitHub stars: 4