Browse Secure Claude Skills
Search verified agent skills and review security grades before installing · full A–Z index
- SecuritySécurité. Use when reviewing security, implementing auth, or hardening code.Votes: 0GitHub stars: 105
- SecuritySecurity best practices for secure coding, authentication, authorization, and data protection. Use when developing features that handle sensitive data, user authentication, or require security review.Votes: 0GitHub stars: 151
- SecuritySecurity audit, vulnerability scanning, and secure coding practices. Use when reviewing code for security issues.Votes: 0GitHub stars: 47
- Security And HardeningHardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services. Use when personal data or privacy compliance (GDPR, CCPA) is involved.Votes: 0GitHub stars: 3
- SecurityDefensive security engineering judgment, distilled from a stronger model - invoke when THREAT MODELING a system or feature; making security-relevant design decisions (auth, crypto, trust boundaries, attack surface); reviewing code for vulnerabilities (injection, IDOR, secrets, the OWASP classes); hardening operations (secrets management, detection, patching, incident response); or judging whether a security control/program is real or theater. Also invoke BEFORE any offensive-flavored request ...Votes: 0GitHub stars: 239
- Security PolicyApplication and AI-agent security - secrets management, authentication and authorization (least privilege), credential flows (sign-in, sign-up that establishes the session, password reset, 2FA, breached-password checks against Have I Been Pwned, refusing a password that repeats the username, email or display name in any casing, and rate limiting per IP and per account), cookie attributes and consent gating before non-essential storage, OWASP Top 10 mitigations (SSRF through a vetted fetch, op...Votes: 0GitHub stars: 2
- CybersecuritySecurity engineering that protects applications, data, and users from real-world threatsUse when "security, authentication, authorization, encryption, OWASP, vulnerability, XSS, SQL injection, CSRF, secrets, password, JWT, OAuth, permissions, audit, compliance, security, authentication, authorization, encryption, vulnerabilities, OWASP, compliance, audit" mentioned.Votes: 0GitHub stars: 137
- Security HardeningWorld-class application security - OWASP Top 10, secure coding patterns, and the battle scars from security incidents that could have been preventedUse when "security, secure, vulnerability, injection, xss, csrf, authentication, authorization, owasp, encryption, secret, password, token, sanitize, validate, escape, encode, harden, security, owasp, injection, xss, csrf, authentication, authorization, encryption, secrets, hardening" mentioned.Votes: 0GitHub stars: 137
- SecurityOne breach = game over. Threat modeling, OWASP Top 10, secure coding, security architecture, zero trust. The complete security skill for protecting your application from day one. Security isn't a feature you add later - it's a mindset that shapes every decision. This skill covers application security, not infrastructure security. Use when "security, owasp, xss, sql injection, csrf, authentication, authorization, secrets, api key, vulnerability, secure coding, security headers, rate limiting,...Votes: 0GitHub stars: 137
- Security PrivacyPre-flight security & privacy checklist for changes touching identity, data, logging, or external integrations; ensures secrets/PII hygiene and boundary-safe design.Votes: 0GitHub stars: 207
- 447 Control Set 10 Data Protection 69e07461<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause --> --- description: Data & storage security (DB isolation, TLS, least privilege, RLS/CLS, backups, auditing) languages: - c - javascript - sql - yaml alwaysApply: false --- rule_id: codeguard-0-data-storageVotes: 0GitHub stars: 4
- 447 Control Set 10 Data Protection Cbab8bd5<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause --> --- description: Data & storage security (DB isolation, TLS, least privilege, RLS/CLS, backups, auditing) languages: - c - javascript - sql - yaml alwaysApply: false --- rule_id: codeguard-0-data-storageVotes: 0GitHub stars: 4
- Security DevsecopsDevSecOps, secure software development lifecycle (SSDLC), and application security (AppSec) practices covering secret handling, input validation, dependency hygiene, authentication/authorization, and CI/CD security tooling (SAST, SCA, DAST, secret scanning, IaC scanning). Use when writing code that handles credentials, user input, database queries, or authentication, when setting up a CI/CD pipeline, or when reviewing code or infrastructure for security issues.Votes: 0GitHub stars: 248
- Agentprivacy Perimeter HardeningDevice security, OS hardening, network configuration, and physical security for 0xagentprivacy swordsman infrastructure. Activates when securing the execution environment beneath the cryptographic layer, designing supply chain integrity checks, hardening operating systems for agent execution, or building the physical and logical security foundation that cryptography assumes but does not provide. Triggers: "device security", "OS hardening", "supply chain", "firmware", "boot integrity", "networ...Votes: 0GitHub stars: 4
- Security Best PracticesSub-skill of mcp-builder: Security Best Practices.Votes: 0GitHub stars: 17
- SecurityOrchestrate all security skills - code audit, infra audit, auth review, secret rotation, and pentest. Use for a full security assessment.Votes: 0GitHub stars: 8
- Security AwarenessTeaches AI agents to recognize and avoid security threats during normal activity. Covers phishing detection, credential protection, domain verification, and social engineering defense. Use when building agents that access email, credential vaults, web browsers, or sensitive data.Votes: 0GitHub stars: 207
- Security ChecksSecurity review checklists, threat model, severity classification, and supply chain verification for Java/Spring Boot applications. Load when conducting security reviews.Votes: 0GitHub stars: 15
- Ios SecuritySecure iOS apps with secure storage, biometrics, and data protection. Use when implementing secure storage, Face ID/Touch ID, or data protection in iOS.Votes: 0GitHub stars: 17
- Defense In DepthApply layered security architecture. Use when designing security controls, hardening systems, or reviewing security posture. Covers multiple security layers.Votes: 0GitHub stars: 34