Browse Secure Claude Skills
Search verified agent skills and review security grades before installing · full A–Z index
- Security And HardeningHardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.Votes: 0GitHub stars: 2
- Security And HardeningOWASP Top 10 prevention, auth patterns, secrets management, dependency auditing, boundary validation. Use when handling user input, auth, or external integrations.Votes: 0GitHub stars: 8
- SecurityUse for identifying security vulnerabilities and hardening code.Votes: 0GitHub stars: 3
- Sifap SecurityProtects SIFAP authentication, authorization, secrets, CPF, financial data, logs, and untrusted agent context. Use when editing security-sensitive backend, frontend, configuration, or automation.Votes: 0GitHub stars: 2
- Sifap SecurityProtects SIFAP authentication, authorization, secrets, CPF, financial data, logs, and untrusted agent context. Use when editing security-sensitive backend, frontend, configuration, or automation.Votes: 0GitHub stars: 2
- Supply Chain SecurityProtect a project and its users from compromised dependencies, publishing credentials, and build pipelines. Use when publishing packages or auditing what your build actually trusts.Votes: 0GitHub stars: 7
- SecurityApplication security best practices and patternsVotes: 0GitHub stars: 24
- Web SecurityEnforce web security and avoid security vulnerabilitiesVotes: 0GitHub stars: 207
- Security ArchitectUse when an org role acts as security architect and must design security in before build: threat models, trust boundaries, zero-trust and authn/authz patterns. Covers STRIDE, least privilege, defense in depth, secrets architecture, OIDC and mTLS, and ADRs for security controls.Votes: 0GitHub stars: 21
- CollectionTest for security vulnerabilities using OWASP principles. Use when conducting security audits, testing auth, or implementing security practices.Votes: 0GitHub stars: 24
- SecuritySecurity category index for Apple platforms. Routes to the privacy-manifests skill. General secure-storage/biometrics/ATS guidance was retired in the 2026 blind-test audit — current models cover it natively.Votes: 0GitHub stars: 693
- Senior SecuritySecurity engineering toolkit for threat modeling, vulnerability analysis, secure architecture, and penetration.Votes: 0GitHub stars: 10
- Engineering Engineering Security EngineerExpert application security engineer specializing in threat modeling, vulnerability assessment, secure code review, security architecture design, and incident response for modern web, API, and cloud-native applications.Votes: 0GitHub stars: 2
- Security And HardeningThreat-models and hardens an application, API, data flow, dependency, or deployment against authentication and authorization flaws, injection, secrets exposure, unsafe deserialization, SSRF, abuse, privacy loss, and supply-chain risk. Use for security review, threat modeling, hardening, or sensitive changes. Not for generic code style review or an unexplained bug without a security hypothesis.Votes: 0GitHub stars: 95
- Security And HardeningAudit and mitigate OWASP vulnerabilities, injection flaws, and exposed secrets. Bootstrap on demand.Votes: 0GitHub stars: 2
- Security And HardeningHardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.Votes: 0GitHub stars: 46,327
- Security Auditor 1.0.0Use when reviewing code for security vulnerabilities, implementing authentication flows, auditing OWASP Top 10, configuring CORS/CSP headers, handling secrets, input validation, SQL injection preventiVotes: 0GitHub stars: 2
- Security And HardeningHardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services. Use when auditing dependencies for known vulnerabilities, triaging package-manager audit findings, or assessing supply-chain risk in a new package. Use when personal data or privacy compliance (GDPR, CCPA) is involved.Votes: 0GitHub stars: 3
- SecuritySecure coding practices for agent-native apps: input validation, SQL injection, XSS, secrets, data scoping, and auth. Use when writing any action, route, or component that touches user data or external input.Votes: 0GitHub stars: 6,969
- Android SecurityStandards for Data Encryption, Network Security, and Permissions. Load whenever API keys, auth tokens, cleartext traffic, android:exported, EncryptedSharedPreferences, certificate pinning, or root detection come up — even if the user just asks 'is this secure'. (triggers: network_security_config.xml, AndroidManifest.xml, EncryptedSharedPreferences, cleartextTrafficPermitted, intent-filter, api key, token storage, certificate pinning, root detection, secure storage)Votes: 0GitHub stars: 43