agent-skills
23 resources across 2 kinds
Tools
- Open ↗Ghidra RPCdual-uselicencepassive
Agent skill plus CLI daemon that keeps Ghidra warm in-process via PyGhidra and returns JSON, so any shell-capable coding assistant can decompile, navigate, annotate, retype, patch and diff binaries without a human in the loop.
Frameworks & agents
- Open ↗Anthropic Cybersecurity Skillsdual-use
Apache-2.0 library of 818 agentskills.io-format cybersecurity skills in 34 domains, mapped to MITRE ATT&CK, NIST CSF 2.0, ATLAS, D3FEND, NIST AI RMF and F3, for loading into Claude Code, Codex CLI, Cursor and similar agents.
- Open ↗AppSec (florianbuetow)passive
MIT Claude Code plugin bundling 62 slash-command skills across OWASP, STRIDE, PASTA, LINDDUN, MITRE ATT&CK and CWE Top 25, plus six red-team persona agents, for reviewing a codebase and generating fixes.
- Open ↗Awesome Claude Securitydual-use
Claude Code plugin marketplace of 45 installable plugins (110 skills) covering pentest, threat modeling, detection engineering, DFIR, GRC and LLM/agentic-AI security, with role bundles such as pentester that auto-install their parts.
- Open ↗
MIT reference library of Claude Code hooks, 4 skills, 8 agents and 4 slash commands with a setup wizard, for auto-activating skills from prompts and file context in coding sessions; general agent tooling, not security-specific.
- Open ↗
MIT-licensed Claude Code plugin whose hooks queue your corrections and 'remember:' notes, then on /reflect review and sync them into CLAUDE.md, AGENTS.md and skill files; it also mines session history for repeatable commands.
- Open ↗
Claude Code skill pack whose /reflect command turns a session's corrections into permanent edits to local skill files, with timestamped backups and git commits, so the assistant stops repeating the same mistakes.
- Open ↗
Apache-2.0 MCP server, now unmaintained, that semantically searches and progressively loads Anthropic Agent Skills (official and scientific sets by default) into any MCP-compatible coding assistant; not security-specific.
- Open ↗
MIT-licensed Claude Code skills and hooks for staying organized when working with AI agents: a date-injection hook, timed nudge reminders, Obsidian daily-journal and vault-management skills, and a CLAUDE.md template.
- Open ↗Feedback Loop Builderlicence
Claude Code plugin that retrofits an existing skill or agent with a @BOOT/@REVIEW/@EVOLVE feedback loop, recording learned patterns to a feedback/ directory and asking for approval before each change.
- Open ↗
Pack of 38 defensive-only Markdown skills for Claude Code and compatible coding agents, covering MCP security, prompt-injection defense, OWASP LLM Top 10, VPS/WordPress/Cloudflare hardening and incident response.
- Open ↗InstaVM Security Skillsdual-uselicence
Agent skills for Claude Code, Gemini CLI or other Skills/MCP agents that analyze mitmproxy-captured traffic for vulnerability classes such as IDOR, SSRF, SQLi, auth and secrets, distilled from disclosed HackerOne bug bounty reports.
- Open ↗
Go-based Claude Code UserPromptSubmit hook that ranks installed skills against each prompt with a local embedding index and injects the top matches as context, so long-tail skills that Claude Code would drop still surface.
- Open ↗Phoenix Security Skillscloud cost
Six Claude Code plugins (27 skills, MIT) for pre-merge security review, STRIDE threat modelling, opengrep/semgrep rule generation, tiered CTI search across 595 curated domains, and security-first PRD writing.
- Open ↗
Agent skills for defensive malware analysis (re-ioc-extraction and re-unpacker), shipped for both Claude Code and OpenAI Codex, for evidence-first IOC extraction and static-first unpacking plans.
- Open ↗Self-Improving Skills (UniM0cha)cloud costhigh-risk
MIT Claude Code plugin (with Codex, Cowork and ChatGPT Work variants) porting Hermes Agent's learning loop: hooks detect complex work, a background session distills it into SKILL.md files, a curator archives stale ones.
- Open ↗
Claude Code plugin of shell hooks and slash commands that logs skill invocations and outcomes, audits skill health, applies backed-up amendments, and checks pre/post metrics to verify the fix.
- Open ↗Semgrep Agent Skillslicence
Agent-Skills pack for AI coding agents, generated largely from open-source Semgrep rules: secure-coding guidance across 15+ languages, OWASP LLM Top 10 (2025) guidance, and Semgrep scanning plus custom-rule authoring.
- Open ↗Skill Conciergelicence
Skill-governance plugin for Claude Code, Codex, Command Code, Oh My Pi, ZCode, DeepSeek Harness and Cline: semantic skill retrieval, a per-turn use-mandate hook and an append-only invocation ledger, so the agent picks and uses the fitting skill.
- Open ↗
MIT-licensed skill pack and development methodology for coding agents (Claude Code, Codex, Cursor and others) covering brainstorming, planning, TDD, code review and subagent-driven implementation; not security-specific.
- Open ↗
A Claude Code plugin marketplace of security-analysis, testing and development skills — smart-contract vulnerability scanners, C/C++ and Rust security code review, Semgrep and YARA rule authoring, constant-time and zeroization checks — loadable in Claude Code, Codex or a ChatGPT workspace.