Agent skills
Skills you can use with AI coding agents, indexed from public GitHub repositories.
-
file-organizer
Comprehensive file organization workflow for SORT/ directory. Validates filenames, renames to CLAUDE.md standards, relocates to correct directories, runs OPSEC agents, and generates detailed reports. Main orchestrator for automated file organization pipeline.
majiayu000/claude-skill-registry 163
-
risk-assessor
Perform comprehensive risk assessments on OSCAL systems including threat modeling, vulnerability analysis, risk scoring, and POA&M generation. Use this skill to evaluate security posture and prioritize remediation efforts.
majiayu000/claude-skill-registry 163
-
authorization-patterns
Authorization patterns including RBAC and ABAC. Use when implementing access control.
majiayu000/claude-skill-registry 163
-
mcp-installer
Find, install, and configure Model Context Protocol (MCP) servers for OpenCode. Use when user asks about finding MCP servers, installing them, configuring OAuth, or troubleshooting MCP issues.
majiayu000/claude-skill-registry 163
-
security-convex
Convex security audit patterns. Load when reviewing Convex apps (convex/ directory present). Covers query/mutation auth, row-level security, public vs authenticated functions, validators, and Convex-specific issues.
majiayu000/claude-skill-registry 163
-
key-rotation-manager
Key Rotation Manager - Auto-activating skill for Security Advanced.
Triggers on: key rotation manager, key rotation manager
Part of the Security Advanced skill category.
majiayu000/claude-skill-registry 163
-
api-connector-design
外部APIとの統合設計パターンに関する専門知識。RESTful API、GraphQL、WebSocket等の統合設計と実装指針を提供します。
Anchors:
• 『RESTful Web APIs』(Leonard Richardson)/ 適用: RESTful API設計、HTTPセマンティクス / 目的: リソース中心の設計パターン理解
• 『Building Microservices』(Sam Newman)/ 適用: APIコントラクト設計、マイクロサービス間通信 / 目的: サービス境界の明確化
Trigger:
Use when designing authentication flows (OAuth 2.0, API Key, JWT), implementing rate limiting and retry strategies, or reviewing API integration architecture.
majiayu000/claude-skill-registry 163
-
validating-authentication-implementations
Validate authentication mechanisms for security weaknesses and compliance. Use when reviewing login systems or auth flows. Trigger with 'validate authentication', 'check auth security', or 'review login'.
majiayu000/claude-skill-registry 163
-
senior-security
Comprehensive security engineering skill for application security, penetration testing, security architecture, and compliance auditing. Includes security assessment tools, threat modeling, crypto implementation, and security automation. Use when designing security architecture, conducting penetration tests, implementing cryptography, or performing security audits.
majiayu000/claude-skill-registry 163
-
security-design
Design security controls and threat mitigations. Use for features involving auth, data, or external exposure.
majiayu000/claude-skill-registry 163
-
agent-security-auditor
Expert security auditor specializing in comprehensive security assessments, compliance validation, and risk management. Masters security frameworks, audit methodologies, and compliance standards with focus on identifying vulnerabilities and ensuring regulatory adherence.
majiayu000/claude-skill-registry 163
-
crack-hashcat
Advanced password recovery and hash cracking tool supporting multiple algorithms and attack modes. Use when: (1) Performing authorized password auditing and security assessments, (2) Recovering passwords from captured hashes in forensic investigations, (3) Testing password policy strength and complexity, (4) Validating encryption implementations, (5) Conducting security research on cryptographic hash functions, (6) Demonstrating password weakness in penetration testing reports.
majiayu000/claude-skill-registry 163
-
siem-rule-generator
Siem Rule Generator - Auto-activating skill for Security Advanced.
Triggers on: siem rule generator, siem rule generator
Part of the Security Advanced skill category.
majiayu000/claude-skill-registry 163
-
cva-setup-vertex
Complete Vertex AI and Google Cloud Platform setup for Clojure agent development. Includes GCP project saas3-476116 credentials, security best practices (IAM, key rotation, LGPD), cost analysis, API enablement, and environment configuration. Use when starting new Clojure+Vertex project, configuring GCP credentials, implementing security compliance, or troubleshooting authentication.
majiayu000/claude-skill-registry 163
-
webhooks-cosmix-claude-code-setup
majiayu000/claude-skill-registry 163
-
Security Scanning Patterns
Security vulnerability scanning, secret detection, dependency auditing, and OWASP best practices. Use when performing security audits, scanning for vulnerabilities, detecting exposed secrets, checking dependencies, validating security headers, implementing OWASP patterns, or when user mentions security, vulnerabilities, secrets, CVE, OWASP, npm audit, security headers, or penetration testing.
majiayu000/claude-skill-registry 163
-
procurement-playbook
Use to manage legal, security, and procurement workflows for complex deals.
majiayu000/claude-skill-registry 163
-
authorization-patterns
Authorization patterns including RBAC and ABAC. Use when implementing access control.
majiayu000/claude-skill-registry 163
-
docs-audit-sane-apps-saneprocess-f60f7a11
majiayu000/claude-skill-registry 163
-
slack-auth-security
OAuth flows, token management, and security best practices for Slack apps. Use when implementing app distribution, multi-workspace installations, token storage and rotation, managing scopes and permissions, or securing production Slack applications.
majiayu000/claude-skill-registry 163
-
redis-security
Master Redis security - authentication, ACL, TLS encryption, network hardening, and production security best practices
majiayu000/claude-skill-registry 163
-
sqlmodel-task-models
This skill should be used when defining a robust, type-safe, and async-compatible database schema for the Todo application using SQLModel, ensuring compatibility with Better Auth and optimized for PostgreSQL.
majiayu000/claude-skill-registry 163
-
bandit-security-scan
Run Bandit security analysis to find common security issues and vulnerabilities in Python code. Use when the user mentions Bandit, security analysis, vulnerability scanning, security audit, software composition analysis (SCA), or wants to check for security issues in Python code.
majiayu000/claude-skill-registry 163
-
code-review
Review code changes following RT Stack conventions and best practices.
按照 RT Stack 规范和最佳实践审查代码变更。
Use when:
- Reviewing pull requests
- Checking code quality before commit
- User mentions "review", "check code", "审查代码", "代码检查"
majiayu000/claude-skill-registry 163