Skip to content

Entry

Trail of Bits Security Skills

Appears in 4 awesome lists

🟢⚠️ — Claude Code- and Codex-compatible security workflow skills for code review, differential review, false-positive analysis, supply-chain checks, GitHub Actions auditing, Semgrep rule generation, and vulnerability research. (Trail of Bits) — note: reusable agent workflow instructions rather…;…

Open github.comtrailofbits/skills

Found in these lists

Awesome AI Security Tools

Section: AI-Powered SAST & Secure Code Review · 🟢⚠️ — Claude Code- and Codex-compatible security workflow skills for code review, differential review, false-positive analysis, supply-chain checks, GitHub Actions auditing, Semgrep rule generation, and vulnerability research. (Trail of Bits) — note: reusable agent workflow instructions rather…;…

FreshScore 85

Table of Contents

Section: Security · by Trail of Bits - A very professional collection of over a dozen security-focused skills for code auditing and vulnerability detection. Includes skills for static analysis with CodeQL and Semgrep, variant analysis across codebases, fix verification, and differential code review.

FreshScore 94

Awesome Claude Skills

Section: Individual Skills · Security skills for static analysis with CodeQL/Semgrep, variant analysis, code auditing, and vulnerability detection

ActiveScore 73

Awesome Python

Section: AI and Agents · Security skills for vulnerability detection, auditing, and testing.

FreshScore 94

brood-box

🟢 — Experimental runner for coding agents in hardware-isolated microVMs with copy-on-write workspace snapshots, egress profiles, selective secret forwarding, and file-by-file review before applying changes. (Stacklok) — note: APIs and behavior are explicitly experimental; workspace-mode=direct…

In 6 listsDetails

Claude Scientific Skills

by K-Dense - "A set of ready-to-use Agent Skills for research, science, engineering, analysis, finance and writing." That's their description - modest, simple. That's how you can tell this is really one of the best skills repos on GitHub. If you've ever thought about getting a PhD... just read all…

In 5 listsDetails

SkillSpector

🟢 — Security scanner for AI-agent skills used by Claude Code, Codex CLI, Gemini CLI, and similar ecosystems; combines static analysis, AST/YARA/taint checks, optional LLM semantic review, MCP least-privilege/tool-poisoning checks, risk scoring, and SARIF/JSON/Markdown output. (NVIDIA) · updated…;…

In 5 listsDetails

zarazhangrui/frontend-slides

Create animation-rich HTML presentations — from scratch or by converting PowerPoint files

In 3 lists

cloudflare/security-audit-skill

🟢 — Coding-agent skill for a multi-phase source-security audit with reconnaissance, coverage-led hunting, independent verification, structured findings, and a separate record-validation pass. (Cloudflare) — note: workflow skill, not a standalone scanner; it requires a capable coding agent with…;…

In 3 lists

playwright-skill

Model-invoked Playwright automation for testing and validating web applications. By @lackeyjb

In 3 lists

ffuf-web-fuzzing

Expert guidance for ffuf web fuzzing during penetration testing, including authenticated fuzzing with raw requests, auto-calibration, and result analysis

In 3 lists

iOS Simulator

Enables Claude to interact with iOS Simulator for testing and debugging iOS applications. By @conorluddy

In 3 lists