219 boosters for "sec" — open source, verified from GitHub, ready to install
An expert Solidity developer agent that guides smart contract architecture, gas optimization, and security-first design for EVM chains. Ideal for blockchain developers building DeFi protocols and production-grade contracts.
An intelligent API performance governor that autonomously optimizes system execution while preventing cost overruns and security breaches through strict guardrails. Ideal for developers managing cloud APIs and ML systems where runaway costs are a critical concern.
Code Reviewer is an expert agent that provides constructive, actionable feedback on code quality across correctness, security, maintainability, and performance. Developers and teams benefit from mentor-like guidance that improves code standards without focusing on style preferences.
A specialized AI agent for detecting vulnerabilities in smart contracts and DeFi protocols through expert analysis, formal verification, and exploit testing. Essential for blockchain developers, auditors, and protocol teams seeking to prevent security breaches before deployment.
A cultural intelligence specialist agent that identifies hidden exclusion in software design and ensures products resonate authentically across diverse, intersectional audiences globally.
Infrastructure Maintainer is an expert agent that helps teams design, monitor, and optimize cloud infrastructure for reliability, performance, and cost efficiency. DevOps engineers, platform teams, and SREs can use it to troubleshoot systems, plan scaling strategies, and maintain high availability.
A specialized security expert agent that performs threat modeling, vulnerability assessment, and secure code review to help developers build secure applications and cloud infrastructure. Ideal for security-conscious development teams and engineers seeking expert-level security guidance.
Backend Architect is an AI agent that provides expert guidance on scalable system design, database architecture, API development, and cloud infrastructure. It's ideal for developers and teams building robust, secure server-side applications and microservices.
A specialized agent for security teams that automates SIEM rule development, MITRE ATT&CK mapping, threat hunting, and alert tuning to improve detection coverage and reduce false positives. Benefits SOC engineers, threat hunters, and security operations teams looking to build robust detection pipelines.
A curated directory of high-quality plugins for Claude Code. Plugins can be installed directly from this marketplace via Claude Code's plugin system. or browse for the plugin in
Use this skill to create or update full-page screens in Figma by reusing the published design system — components, variables, and styles — rather than drawing primitives with hardcoded values. The key insight: the Figma file likely has a published design system with components, color/spacing variabl
Generates repository-grounded threat models that identify trust boundaries, assets, attack paths, and mitigations in application code. Ideal for security engineers and developers performing AppSec threat modeling on specific codebases.
Provides language-specific security best-practice reviews and improvement suggestions for Python, JavaScript/TypeScript, and Go code. Developers building secure applications benefit from automated security guidance tailored to their framework and language.
Analyzes git repositories to map security ownership, identify bus factors, and detect orphaned sensitive code, exporting results for graph visualization. Essential for security teams and DevOps engineers managing code risk and maintainer dependencies.
These instructions are derived from and apply to all AI-assisted contributions to the Zephyr RTOS repository. the file's native comment syntax:
Fscan 是一款内网综合扫描工具,功能包括: 二进制路径:当前项目编译产物 ,或系统 PATH 中的 。 每行一个 JSON 对象,所有字段定义:
Run any workload on fully managed Hugging Face infrastructure. No local setup required—jobs run on cloud CPUs, GPUs, or TPUs and can persist results to the Hugging Face Hub. Use this skill when users want to: When assisting with jobs:
This skill enables users to run Python workloads, Docker jobs, and GPU-intensive tasks on Hugging Face's managed infrastructure without local setup. It's valuable for ML engineers, data scientists, and developers needing cloud compute for training, inference, and batch processing.
Generates per-category catalog JSON files from the npm package's public API. Each catalog lists all UseCase and EventHandler abstractions in a category with their resolved source file paths. LLMs read source files on demand for exact, up-to-date types — no enrichment phase needed. 1. Discovers all
A Claude Code plugin marketplace from Trail of Bits providing skills to enhance AI-assisted security analysis, testing, and development workflows. Codex-native skill discovery is supported via the sidecar tree in this repository. See [](.codex/INSTALL.md) for additional details.
A Bash CLI wrapper for the EODHD financial data API designed for OpenClaw agents, with built-in secrets management and secure deployment practices. Useful for developers building open-source integrations that need stateless API access without credential exposure.
以下是你所需要生成测试用例的对象的描述,也即来自远程MCP服务器的工具描述。你可以使用调用以下工具。 请首先尽可能全面覆盖并输出所有当前威胁的测试维度,而后为测试目标的每个维度设计测试,对于每个维度至少生成3个测试用例。
You are an elite CLAUDE.md auditor and documentation integrity specialist. Your sole purpose is to ensure every file and file in the project accurately reflects the current codebase state. You work autonomously: discover, analyze, and fix documentation drift without manual guidance. You are method
"name": "arscontexta", "description": "Conversational derivation engine — generate agent-native memory architecture from natural conversation. 15 kernel primitives, 26 commands, 17 feature blocks, 3 presets.", "url": "https://arscontexta.org"