Agent skills
Skills you can use with AI coding agents, indexed from public GitHub repositories.
-
fix-security-audit
Fix security vulnerabilities from pip-audit, npm audit, Snyk, and other security scanners. Use when security audit checks fail with CVE warnings.
majiayu000/claude-skill-registry 163
-
zero-trust-config-helper
Zero Trust Config Helper - Auto-activating skill for Security Advanced.
Triggers on: zero trust config helper, zero trust config helper
Part of the Security Advanced skill category.
majiayu000/claude-skill-registry 163
-
helmet-config-generator
Generate Helmet.js security middleware configuration for Express applications. Triggers on "create helmet config", "generate helmet configuration", "express security headers", "helmet setup".
majiayu000/claude-skill-registry 163
-
repo-structure-reviewer
Audit a repository's structure and propose a safe, approval-gated reorganization plan. Use when asked to review repo anatomy, propose folder changes, or apply an approved reorg with rollback.
majiayu000/claude-skill-registry 163
-
Nuxt Studio
This skill should be used when the user asks to "set up Nuxt Studio", "configure Studio OAuth", "deploy Studio to Cloudflare", "add visual editor to Nuxt", "configure studio.domain.com subdomain", "Studio authentication", "Nuxt CMS", or mentions visual content editing, Nuxt Studio module, TipTap editor, Monaco editor, or content management for Nuxt websites.
majiayu000/claude-skill-registry 163
-
openwebf-security-remote-content
Review security risks and mitigations for remote WebF content (untrusted bundles, URL allowlists, HTTPS, trust boundaries, clickjacking). Use when the user mentions untrusted remote bundles, bundle URL validation/allowlists, or remote updates risk.
majiayu000/claude-skill-registry 163
-
code-reviewer-advanced
Use when reviewing code for quality, design issues, implementation problems, security vulnerabilities, or architectural concerns. Apply when user asks to review code, check implementation, find issues, or audit code quality. Use proactively after implementation is complete. Also use to provide feedback to system-architect and principal-engineer on design and implementation decisions.
majiayu000/claude-skill-registry 163
-
research-finding
Expert Security Analyst for deep research and exploitability analysis of security findings. Use when you have a specific finding from semgrep, trufflehog, or manual code review that needs thorough investigation to determine if it represents an exploitable vulnerability with real-world impact.
majiayu000/claude-skill-registry 163
-
detecting-signed-unsigned-conversion
Detects unsafe signed/unsigned integer conversions that can lead to integer overflow and security check bypasses. Use when analyzing integer operations, comparisons, or investigating conversion-related vulnerabilities.
majiayu000/claude-skill-registry 163
-
service-mesh-integrator
Configure service mesh solutions including Istio, Linkerd, and Consul for traffic management, security, and observability in microservices. Activates for service mesh setup, mTLS, traffic routing, and mesh configuration.
majiayu000/claude-skill-registry 163
-
dependency-security
Dependency security scanning. Use when auditing npm packages for vulnerabilities.
majiayu000/claude-skill-registry 163
-
http-interceptors
Angular 21+ functional HTTP interceptors for auth, error handling, loading states, retry logic, caching, and security best practices
majiayu000/claude-skill-registry 163
-
goth-fundamentals
This skill should be used when the user asks to "set up goth", "install goth", "oauth in go", "authentication in golang", "goth package", "goth basics", or mentions "github.com/markbates/goth". Provides foundational guidance for the Goth multi-provider authentication library.
majiayu000/claude-skill-registry 163
-
dependency-vulnerability-checker
Dependency Vulnerability Checker - Auto-activating skill for Security Fundamentals.
Triggers on: dependency vulnerability checker, dependency vulnerability checker
Part of the Security Fundamentals skill category.
majiayu000/claude-skill-registry 163
-
violetconnect-bigcommerce
BigCommerce OAuth, embedded app JWT validation, and pre-registration patterns for VioletConnect
majiayu000/claude-skill-registry 163
-
legacy-codebase-analyzer
Comprehensive legacy codebase analysis skill for technical debt assessment, security vulnerability scanning, performance bottleneck detection, and modernization roadmap generation. Includes 7 Python tools for automated codebase inventory, architecture health analysis, and strategic modernization planning.
majiayu000/claude-skill-registry 163
-
procurement-playbook
Use to manage legal, security, and procurement workflows for complex deals.
majiayu000/claude-skill-registry 163
-
symfony:api-platform-security
Secure API Platform resources with security expressions, voters, and operation-level access control
majiayu000/claude-skill-registry 163
-
dependency-guardian
Automated dependency management with security scanning, update orchestration, and compatibility validation
majiayu000/claude-skill-registry 163
-
performing-security-code-review
Execute this skill enables AI assistant to conduct a security-focused code review using the security-agent plugin. it analyzes code for potential vulnerabilities like sql injection, xss, authentication flaws, and insecure dependencies. AI assistant uses this skill wh... Use when assessing security or running audits. Trigger with phrases like 'security scan', 'audit', or 'vulnerability'.
majiayu000/claude-skill-registry 163
-
auth
Modern authentication and security patterns for web applications. Expert in JWT tokens, OAuth2 flows, session management, RBAC, MFA, API security, and zero-trust architectures. Framework-agnostic patterns that work with any tech stack.
majiayu000/claude-skill-registry 163
-
supabase-auth-storage-realtime-core
Execute Supabase secondary workflow: Auth + Storage + Realtime.
Use when implementing secondary use case,
or complementing primary workflow.
Trigger with phrases like "supabase auth storage realtime",
"implement full stack features with supabase".
majiayu000/claude-skill-registry 163
-
fastapi-security-expert
Expert in securing FastAPI applications with JWT tokens and Better Auth. Use this when implementing authentication middleware, route protection, and user isolation.
majiayu000/claude-skill-registry 163
-
content-security-policy-generator
Content Security Policy Generator - Auto-activating skill for Security Fundamentals.
Triggers on: content security policy generator, content security policy generator
Part of the Security Fundamentals skill category.
majiayu000/claude-skill-registry 163