Agent skills
Skills you can use with AI coding agents, indexed from public GitHub repositories.
-
naturalistic-motion
Use when animation should feel organic and lifelike—creature animation, realistic characters, nature elements, or any motion that needs to breathe with authentic living quality.
majiayu000/claude-skill-registry 163
-
csrf-protection-validator
Csrf Protection Validator - Auto-activating skill for Security Fundamentals.
Triggers on: csrf protection validator, csrf protection validator
Part of the Security Fundamentals skill category.
majiayu000/claude-skill-registry 163
-
jwt-auth
Configure JWT Bearer authentication with Keycloak for affolterNET.Web.Api. Use when setting up token validation, Keycloak integration, or API authentication.
majiayu000/claude-skill-registry 163
-
langchain-common-errors
Diagnose and fix common LangChain errors and exceptions.
Use when encountering LangChain errors, debugging failures,
or troubleshooting integration issues.
Trigger with phrases like "langchain error", "langchain exception",
"debug langchain", "langchain not working", "langchain troubleshoot".
majiayu000/claude-skill-registry 163
-
Pentest Checklist
This skill should be used when the user asks to "plan a penetration test", "create a security assessment checklist", "prepare for penetration testing", "define pentest scope", "follow security testing best practices", or needs a structured methodology for penetration testing engagements.
majiayu000/claude-skill-registry 163
-
typescript-security-checker
Next.js/TypeScriptプロジェクト向けセキュリティ診断スキル。OWASP準拠。
以下の場合に使用:
(1) PRレビュー時のセキュリティチェック
(2) API Routes のセキュリティ検証
(3) 認証・認可ロジックの確認
(4) 依存パッケージの脆弱性確認
(5) 環境変数・シークレット管理の確認
majiayu000/claude-skill-registry 163
-
attack-methods-lookup
Looks up OWASP Top 10 attack methods, CWE references, and form-specific vulnerability patterns with a bounty hunter mindset. Returns attack vectors, payloads, and payout estimates. Use when user asks about "XSS", "SQL injection", "CSRF", "OWASP", "CWE", "IDOR", "injection", "bypass", "vulnerability", "exploit", "SQLインジェクション", "クロスサイトスクリプティング", "脆弱性".
majiayu000/claude-skill-registry 163
-
fnox-security-best-practices
Use when implementing secure secrets management with Fnox. Covers encryption, key management, access control, and security hardening.
majiayu000/claude-skill-registry 163
-
atlas-full
Full 9-phase workflow for complex features, epics, and security-critical changes (2-4 hours)
majiayu000/claude-skill-registry 163
-
securing-server-actions
Teach server action authentication and security patterns in Next.js 16. Use when implementing server actions, form handlers, or mutations that need authentication.
majiayu000/claude-skill-registry 163
-
audit-security
Quick security audit checking for hardcoded secrets, SSRF vectors, injection points, dependency issues, and missing security headers
majiayu000/claude-skill-registry 163
-
web-auth
Authentication patterns for React web applications. Use when implementing login flows, OAuth, JWT handling, session management, or protected routes in React web apps.
majiayu000/claude-skill-registry 163
-
audit-dependencies
Run npm audit and check for outdated/vulnerable dependencies. Returns structured output with vulnerability counts by severity, outdated packages, and recommended updates. Used for security validation and dependency health checks.
majiayu000/claude-skill-registry 163
-
audit-security-dependencies
Use when adding packages, bumping versions, or responding to security alerts. Enforces supply chain security and vulnerability remediation.
majiayu000/claude-skill-registry 163
-
sanitizing-user-inputs
Sanitizing and validating user input to prevent XSS, injection attacks, and security vulnerabilities in TypeScript applications
majiayu000/claude-skill-registry 163
-
session-management-ssg-ssr
Expert skill for implementing session management in SSG (Static Site Generation) and SSR (Server-Side Rendering) contexts. Covers stateless authentication with JWT, database session management, client-side session handling, and security best practices for different rendering strategies. Use when implementing session management in static sites (SSG), handling authentication in server-side rendered applications (SSR), or implementing stateless authentication with JWT tokens.
majiayu000/claude-skill-registry 163
-
stripe-payments
Use when processing payments, handling payment methods, implementing PaymentIntents, or integrating Payment Element. Invoke for payment flow setup, 3D Secure authentication, refund processing, payment method management, or checkout implementation.
majiayu000/claude-skill-registry 163
-
violetconnect-bigcommerce
BigCommerce OAuth, embedded app JWT validation, and pre-registration patterns for VioletConnect
majiayu000/claude-skill-registry 163
-
security-symfony
Sicherheit & DSGVO - Atoll Tourisme. Use when reviewing security, implementing auth, or hardening code.
majiayu000/claude-skill-registry 163
-
server-setup
Set up drizzle-cube API server with Express, Fastify, Hono, or Next.js framework adapters. Use when configuring the semantic layer server, setting up API endpoints, extracting security context, or initializing drizzle-cube with different web frameworks.
majiayu000/claude-skill-registry 163
-
hashing-passwords
CRITICAL security skill teaching proper credential and password handling. NEVER store passwords, use bcrypt/argon2, NEVER accept third-party credentials. Use when handling authentication, passwords, API keys, or any sensitive credentials.
majiayu000/claude-skill-registry 163
-
security-benchmark-runner
Security Benchmark Runner - Auto-activating skill for Security Advanced.
Triggers on: security benchmark runner, security benchmark runner
Part of the Security Advanced skill category.
majiayu000/claude-skill-registry 163
-
security-privacy
Security and privacy engineering
majiayu000/claude-skill-registry 163
-
scanning-for-vulnerabilities
Execute this skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin. it identifies security vulnerabilities in code, dependencies, and configurations, including cve detection. use this skill when the user asks to scan fo... Use when appropriate context detected. Trigger with relevant phrases based on skill purpose.
majiayu000/claude-skill-registry 163