Browse Secure Claude Skills
Search verified agent skills and review security grades before installing · full A–Z index
- Sifap SecurityProtects SIFAP authentication, authorization, secrets, CPF, financial data, logs, and untrusted agent context. Use when editing security-sensitive backend, frontend, configuration, or automation.Votes: 0GitHub stars: 2
- Supply Chain SecurityProtect a project and its users from compromised dependencies, publishing credentials, and build pipelines. Use when publishing packages or auditing what your build actually trusts.Votes: 0GitHub stars: 7
- SecuritySecurity category index for Apple platforms. Routes to the privacy-manifests skill. General secure-storage/biometrics/ATS guidance was retired in the 2026 blind-test audit — current models cover it natively.Votes: 0GitHub stars: 693
- Security And HardeningThreat-models and hardens an application, API, data flow, dependency, or deployment against authentication and authorization flaws, injection, secrets exposure, unsafe deserialization, SSRF, abuse, privacy loss, and supply-chain risk. Use for security review, threat modeling, hardening, or sensitive changes. Not for generic code style review or an unexplained bug without a security hypothesis.Votes: 0GitHub stars: 95
- Security And HardeningHardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.Votes: 0GitHub stars: 46,327
- Security ArchitectPragmatic security architect for a non-security-expert owner. Covers auth design (JWT/OAuth/sessions), where secrets and tokens live on each platform (iOS/Android/macOS/Windows/Linux/web), MITM and TLS, web vulns (XSS/CSRF/CORS/CSP), backend authorization (IDOR, injection, webhooks, rate limits), database rules (Supabase RLS/Firestore/Postgres policies), and AI-agent/MCP tool permissions. Load when the user asks "is this secure?", "where should I store this secret/token?", designs a login or ...Votes: 0GitHub stars: 2
- Security And HardeningHardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.Votes: 0GitHub stars: 9
- Dev Security BasicsUse when code handles a request, a session, a secret, a file upload, a query built from input, or anything a user can address by id — and whenever the change touches auth, roles, money, personal data or deletion.Votes: 0GitHub stars: 6
- Cybersecurity PrinciplesUse when explaining cybersecurity foundations, the Saltzer-Schroeder design principles, CIA triad, Zero Trust architecture, defense in depth, AAA model, threat intelligence, NIST CSF 2.0, CIS Controls, ISO 27001, modern IAM (FIDO2/passkeys/PAM), SASE, incident response, or building a security mental model. Use for any conceptual cybersecurity question, when grounding security decisions in first principles, when explaining why a security control exists, when evaluating security trade-offs, or ...Votes: 0GitHub stars: 2
- Security PaperclipSécurité Paperclip — isolation tenant, secrets, portes d'approbation, budgets stricts, capacités plugin minimales. À utiliser pour auditer ou durcir Paperclip.Votes: 0GitHub stars: 105
- Security And HardeningHardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.Votes: 0GitHub stars: 45,848
- Security And HardeningSecure-coding practices while building features that handle input, auth, sessions or data. Use when the user says 'add login', 'handle file uploads', 'secure this endpoint', 'store user data safely' or 'add a webhook'. For a pre-launch audit use security.Votes: 0GitHub stars: 3
- Security ChecklistReference document for monopoly security-checklist.Votes: 0GitHub stars: 7
- Community SecurityExpert-level Community Security skill with deep knowledge of access control systems, patrol protocols, surveillance technology, emergency response, and resident safety managementVotes: 0GitHub stars: 2
- Security ReviewFinds and fixes security vulnerabilities in application code. Use when asked about injection, XSS, CSRF, authentication or authorization flaws, secret handling, unsafe deserialization, or when hardening an endpoint. Triggers include "vulnerability", "SQL injection", "취약점", "보안", "인증 우회".Votes: 0GitHub stars: 2
- Security First ScrumUse this skill for ALL greenfield .NET 8 Web API / React / Blazor / Cosmos DB / PostgreSQL / Databricks development on Azure. Trigger whenever you are starting a new feature, writing any .NET controller, service, repository, React component, Blazor page, Databricks pipeline, or any Azure infrastructure. This skill replaces the CLAUDE.md ruleset: it enforces the Security-First Scrum framework — three laws (Security First, People First, Agile/Scrum), eight inviolable security principles, onion ...Votes: 0GitHub stars: 2
- Security HardeningApplication security engineering — OWASP Top 10, authentication and object-level authorization, injection, XSS/CSP, CSRF, SSRF, secrets management, file uploads, security headers, dependency and supply-chain risk, and threat modelling. Use when reviewing or building anything touching login, sessions, tokens, passwords, permissions, roles, payments, file uploads, webhooks, user-generated content or personal data; when the user says "is this secure", "security review", "pentest", "harden", "vul...Votes: 0GitHub stars: 3
- Supply Chain SecuritySecure the software supply chain from the consume side: ingest the SBOM, triage CVEs by reachability, pin dependencies with a deliberate update cadence, verify SLSA provenance, and defend against malicious packages.Votes: 0GitHub stars: 7
- Security PaperclipPaperclip-Sicherheit — Tenancy-Isolation, Secrets, Approval-Gates, harte Budgets, signierter Adapter-Channel. Verwenden Sie dies beim Auditing oder Härten von Paperclip.Votes: 0GitHub stars: 105
- Security ChecksSecurity-review checklist, threat model, severity classification, and supply chain verification — language-agnostic, with per-section slots a stack fills in. Load when conducting security reviews.Votes: 0GitHub stars: 15