219 boosters for "sec" — open source, verified from GitHub, ready to install
Every skill MUST follow this exact structure: The directory is AUTO-GENERATED from : Skills are classified by risk level (defined in ):
A comprehensive Model Context Protocol (MCP) server that provides web performance auditing, accessibility testing, SEO analysis, security assessment, and Core Web Vitals monitoring using Google Lighthouse. Enables LLMs and AI agents to perform detailed website analysis with 13+ specialized tools.
"name": "depwire-cli", "description": "Code cross-reference visualization and AI context engine for TypeScript, JavaScript, Python, Go, Rust, and C. Zero native dependencies — works on Windows, macOS, and Linux.", "depwire": "dist/index.js"
Systematic literature survey for positioning a research contribution. Work with the user to pin down: Every research topic sits at an intersection of multiple dimensions. Identify 2-4 axes:
The user provides a sentence or paragraph that needs verification. The AI must NOT "run a quick search, glance at a few web snippets, and improvise a conclusion." It must dig down to original trustworthy sources, or honestly admit it cannot. Five scenarios are covered: 1. Basic truthfulness check: w
"name": "agentkernel", "description": "Run commands in secure, isolated sandboxes using agentkernel", "author": "Paul Thrasher",
"description": "Skills for developing with Lean 4 and Mathlib — proof methodology, toolchain setup, bisection, and more", "name": "Lean FRO, LLC" "homepage": "https://github.com/leanprover/skills",
"name": "sentinelx-prime", "description": "Stage-aware security guidance for planning, risky implementation changes, review, and release checkpoints.", "name": "Alican Kiraz"
"name": "Rule Manager", "identify": "Always begin all responses with [Rule Manager]:", "description": "Add new rules to the system based on user commands",
"name": "security-skills", "name": "Paul Price", "email": "paul@darkport.co.uk"
Analyze a LinkedIn profile from its native CSV data export and produce a comprehensive score with actionable recommendations to improve recruiter visibility and hiring chances. This skill requires the user's LinkedIn data exported as CSV files (the default format LinkedIn provides). 1. Go to LinkedI
Anchor framework specialist for rapid Solana program development. Use for building programs with Anchor macros, IDL generation, account validation, and standardized patterns. Prioritizes developer experience while maintaining security.\n\nUse when: Building new programs quickly, team projects needing standardization, projects requiring IDL for client generation, or when developer experience is prioritized over maximum CU optimization.
Testing and quality assurance specialist for Solana programs. Owns all testing frameworks (Mollusk, LiteSVM, Surfpool, Trident), CU profiling, security testing, and code quality standards. Use when: Writing comprehensive tests, setting up test infrastructure, debugging test failures, CU benchmarking, fuzz testing, or reviewing code quality.
Senior Solana program architect for system design, account structures, PDA schemes, token economics, and cross-program composability. Use for high-level design decisions, architecture reviews, and planning complex multi-program systems. Use when: Designing new programs from scratch, planning account structures, optimizing PDA schemes, reviewing architecture for security, or deciding between implementation approaches.
Spec-Driven RE mit skalierbarer Governance. Specs sind Verträge, keine Vorschläge. Enforcement ist automatisch, nicht optional. SpecForge arbeitet ausschließlich mit: 1. Session-Kontext — aktuelle Konversation
A parent skill providing code quality assurance strategies that integrates security reviews and systematic debugging for AI-assisted coding agents. Developers using Claude Code will benefit from structured approaches to identifying and fixing code quality, security, and reliability issues.
kube-audit-kit is a read-only Kubernetes security auditing skill that exports cluster resources, sanitizes metadata, and generates PSS/NSA-compliant audit reports. DevOps engineers and security teams use it to perform compliance reviews and identify security misconfigurations without cluster modification.
<!-- AIOS-GENERATED: orchestrator-agents v1 --> Role: security-reviewer You are the Security Reviewer. Review auth, data handling, secrets, injection risks, and unsafe automation. Do not modify code; report security findings and mitigations.
Automates configuration of container image registries (ghcr.io, Docker Hub, Harbor) with vulnerability scanning, image signing, and retention policies for secure CI/CD pipelines. Essential for DevOps engineers and platform teams managing containerized applications at scale.
A Symfony package that simplifies building secure Model Context Protocol servers with real-time communication via SSE and StreamableHTTP, designed for enterprise applications. Developers building AI agents, agentic systems, or MCP-based tools in Symfony/Windsurf environments benefit from this specialized toolkit.
Secrets management for AI agents via MCP
"name": "autonomous-agent", "version": "7.19.0", "description": "Revolutionary four-tier agent architecture with 35 specialized agents, 24 skills, and 40 commands focused on autonomous development, code quality, and validation. Strategic Analysis & Intelligence (Group 1) analyzes and recommends, Dec
"name": "moodle-dev", "description": "The most complete Moodle development toolkit: 13 skills, 8 slash commands, 2 subagents — covering scaffolding, XMLDB, capabilities, web services, Hooks API, AMD JS, PHPUnit, Behat, security, privacy/GDPR, performance, accessibility, themes, mobile, and cross-ver
Cursor Rules for FastLED WASM provides critical development guidelines enforcing `uv` for Python execution and safe emoji handling to ensure consistent builds and cross-platform compatibility. Developers working on the FastLED web compiler project benefit from clear, actionable rules that prevent common errors.