219 boosters for "sec" — open source, verified from GitHub, ready to install
Chef-vault Copilot Instructions provides GitHub Copilot with detailed repository structure and context for the chef-vault Ruby gem, enabling developers to securely manage passwords and secrets in Chef environments. Developers working with Chef infrastructure and secret management benefit from improved code completion and contextual assistance.
"name": "offensive-claude", "description": "Spec-driven offensive-security framework for Claude Code: 31 kill-chain skills, executable safety controls (scope/finding/OPSEC discipline), pattern-learning memory, and a bounded engagement engine — with a SessionStart dispatcher that enforces skill-invoc
This skill provides comprehensive guidance for all aspects of Playwright test development, from writing new tests to debugging and maintaining existing test suites. Consult these references based on what you're doing:
"name": "clawdstrike", "name": "Backbay Labs", "email": "hello@backbay.io"
"description": "An engineering team in a box for Claude Code. 12 specialized subagents (planner, fullstack-engineer, refactor-specialist, migration-engineer, frontend-designer, critic, vuln-verifier, debugger, db-expert, onboarder, tool-expert, web-researcher) plus 15 automation hooks (pre-commit se
"name": "claude-code-organizer", "description": "Organize all your Claude Code memories, skills, MCP servers, and hooks — see what loads globally vs per-project, then move items between scopes", "name": "ithiria894",
A security-focused prompt booster for .NET/ASP.NET Core development that enforces OWASP best practices and CWE mitigation in AI-generated code across Claude, Cursor, and Copilot. Developers building secure .NET applications benefit from automated security guardrails embedded in their coding workflow.
Guides GitHub for parasite SEO, GEO (AI citation), and curated list creation. GitHub is a Tier 2 Technical Authority platform—high domain authority, fast indexing, very high AI citation probability. Use for repos, README, GitHub Pages, gists, and Awesome-style navigation lists.
"name": "openzeppelin-skills", "description": "Skills for secure smart contract development with OpenZeppelin Contracts libraries", "name": "OpenZeppelin",
1. 意图是攻击/利用/拿权限,非学习/防御/讨论 2. 给出具体目标: IP、域名、URL、端口、漏洞环境 3. 涉及: SQL注入/XSS/RCE/SSRF/文件上传/LFI/XXE/反序列化/提权/横向/免杀
Provides complete specifications and role templates for 37 specialized agent types in a dynamic multi-agent system, enabling developers to build scalable, parallel AI workflows. Useful for teams building complex applications requiring orchestrated AI agents with clear capability boundaries.
Built by Ayush Singh | Second Brain Labs From the video: "If I Wanted a $100K AI Job in 6 Months, I'd Do This" You are now a brutally honest AI career advisor. You have the combined knowledge of someone who has been building AI systems for 7+ years, runs a multi-million dollar B2B AI company (Second
A structured code review workflow that orchestrates specialized AI agents to perform quality, security, performance, and documentation reviews within a 4-hour timeline. Useful for development teams seeking systematic, multi-perspective code quality assurance.
Execute the release automation script with auto-confirmation for Claude Code. PROJECTROOT=$(git rev-parse --show-toplevel 2>/dev/null || echo "$PWD") cd "$PROJECTROOT" && bash .claude/scripts/release.sh $ARGUMENTS --yes
"name": "codeguard-security", "description": "Security code review skill based on Project CodeGuard's comprehensive security rules. Helps AI coding agents write secure code and prevent common vulnerabilities.", "name": "Project CodeGuard",
A 540×960 e-ink panel sitting next to the user's monitor. AI agents push widgets to it; the daemon renders frames server-side and ships pixels over Wi-Fi / USB / BLE. This Skill is the only thing an agent needs to call
Secure agent runtime with trusted process mediation
Auth0 MCP Server enables AI assistants to manage Auth0 tenants through natural language, with built-in security controls and least-privilege access patterns. It's ideal for developers and platform engineers seeking to automate Auth0 administration tasks safely within Claude Desktop and Claude Code.
A specialized Kubernetes expert agent that provides comprehensive cluster management, workload orchestration, and production operations guidance aligned with Kubernetes 1.31+ and 2025 CNCF standards. Ideal for DevOps engineers, platform teams, and SREs managing enterprise-grade Kubernetes deployments.
A progressive-disclosure skill for ROS 2 development — from first workspace to production fleet deployment. Each section below gives you the essential decision framework; detailed patterns, code templates, and anti-patterns live in the
<!-- AUTO-GENERATED from SKILL.md.tmpl — do not edit directly --> <!-- Regenerate: bun run gen:skill-docs --> If is , do not proactively suggest ostack skills — only invoke
secops-hunt provides expert threat hunting guidance to help security teams proactively identify undetected threats, IOCs, and TTPs in their environment. Security operations professionals and threat hunters benefit from structured, tool-aware hunting workflows.
You are a security analyst in the system that manages and analyzes security alerts. You are a partner in security operations — not just a tool executor. You are a security expert, but your purpose is neither to amplify fear nor to offer false reassurance. You exist to pursue the truth alongside use
A mobile security vulnerability research knowledge base for Android and iOS, drawing from HackerOne public reports to guide security researchers and bug bounty hunters in vulnerability discovery techniques and code pattern analysis.