Skill4Agent
Skill4Agent
All SkillsSearchTools
|
Explore
Skill4Agent
Skill4Agent

AI Agent Skills Directory with categorization, English/Chinese translation, and script security checks.

Sitemap

  • Home
  • All Skills
  • Search
  • Tools

About

  • About Us
  • Disclaimer
  • Copyright

Help

  • FAQ
  • Privacy
  • Terms
Contact Us:osulivan147@qq.com

© 2026 Skill4Agent. All rights reserved.

All Skills

Total 54,890 skills, Security & Compliance has 2161 skills

Categories

Showing 12 of 2161 skills

Per page
Downloads
Sort
Security & Compliancerohitg00/awesome-claude-c...

security-hardening

Application security covering input validation, auth, headers, secrets management, and dependency auditing

🇺🇸|EnglishTranslated
12
Security & Compliancecharpup/skill-security-au...

command_injection_test

Test skill for security scanning

🇺🇸|EnglishTranslated
12
1 scripts/Attention
Security & Complianceclaude-dev-suite/claude-d...

owasp-top-10

OWASP Top 10:2025 security vulnerabilities. Covers access control, injection, supply chain, cryptographic failures, and more. Use for security reviews. USE WHEN: user mentions "OWASP 2025", "Top 10", "security review", "vulnerability assessment", asks about "broken access control", "injection", "supply chain", "cryptographic failures", "exception handling" DO NOT USE FOR: general OWASP (2021) - use `owasp` instead, secrets - use `secrets-management`, dependencies - use `supply-chain`

🇺🇸|EnglishTranslated
12
Security & Compliancetanweai/wooyun-legacy

wooyun-legacy

WooYun business logic vulnerability methodology — 22,132 real cases across 6 domains (authentication bypass, authorization bypass, payment tampering, information disclosure, logic flaws, misconfiguration) and 33 vulnerability classes. It can be used for ANY security testing, auditing, or code review of web apps, APIs, or business systems, even without explicit "security" keywords. Triggers: penetration testing, security audit, vulnerability, bug bounty, payment security, IDOR, password reset, weak credentials, unauthorized access, race condition, parameter tampering, code review, penetration testing, security audit, vulnerability mining, payment security, privilege escalation, logic vulnerability, business security, SRC, code audit. It also triggers on implicit intent: "test this endpoint", "find bugs", "can I bypass this", "help me test this interface", "can this parameter be modified", "help me find bugs".

🇨🇳|ChineseTranslated
12
Security & Compliancetravisjneuman/.claude

legal-compliance

Legal and compliance expertise for corporate governance, contract analysis, regulatory compliance (SOX, GDPR, HIPAA), risk assessment, intellectual property, and litigation management. Use when reviewing contracts, ensuring compliance, or managing legal risk.

🇺🇸|EnglishTranslated
12
Security & Complianceborghei/claude-skills

infrastructure-compliance-auditor

Cross-cutting infrastructure security audit skill that checks cloud infrastructure, DNS, TLS, endpoints, access control, network security, containers, CI/CD pipelines, secrets management, logging, and physical security against ALL major compliance frameworks. Use for infrastructure audit, cloud security audit, infrastructure compliance, DNS security audit, TLS audit, endpoint security, access control audit, network security assessment, infrastructure security, cloud compliance, Vanta alternative, compliance automation, security posture assessment, hardware security keys, YubiKey compliance.

🇺🇸|EnglishTranslated
12
3 scripts/Checked
Security & Compliancemukul975/anthropic-cybers...

analyzing-dns-logs-for-exfiltration

Analyzes DNS query logs to detect data exfiltration via DNS tunneling, DGA domain communication, and covert C2 channels using entropy analysis, query volume anomalies, and subdomain length detection in SIEM platforms. Use when SOC teams need to identify DNS-based threats that bypass traditional network security controls.

🇺🇸|EnglishTranslated
12
1 scripts/Checked
Security & Compliancemukul975/anthropic-cybers...

implementing-ot-network-traffic-analysis-with-nozomi

Deploy Nozomi Networks Guardian sensors for passive OT network traffic analysis to achieve comprehensive asset visibility, real-time threat detection, and vulnerability assessment across industrial control systems without disrupting operations, leveraging behavioral anomaly detection and protocol-aware monitoring.

🇺🇸|EnglishTranslated
12
1 scripts/Checked
Security & Compliancegarrytan/gstack

guard

Full safety mode: destructive command warnings + directory-scoped edits. Combines /careful (warns before rm -rf, DROP TABLE, force-push, etc.) with /freeze (blocks edits outside a specified directory). Use for maximum safety when touching prod or debugging live systems. Use when asked to "guard mode", "full safety", "lock it down", or "maximum safety".

🇺🇸|EnglishTranslated
12
Security & Complianceoimiragieo/agent-studio

auth-security-expert

OAuth 2.1, JWT (RFC 8725), encryption, and authentication security expert. Enforces 2026 security standards.

🇺🇸|EnglishTranslated
11
3 scripts/Checked
Security & Compliancejeremylongshore/claude-co...

code-injection-detector

Code Injection Detector - Auto-activating skill for Security Fundamentals. Triggers on: code injection detector, code injection detector Part of the Security Fundamentals skill category.

🇺🇸|EnglishTranslated
11
Security & Compliancejeremylongshore/claude-co...

analyzing-dependencies

Analyze dependencies for known security vulnerabilities and outdated versions. Use when auditing third-party libraries. Trigger with 'check dependencies', 'scan for vulnerabilities', or 'audit packages'.

🇺🇸|EnglishTranslated
11
3 scripts/Attention
1...127128129130131...181
Page