EasyGlobe Skills
Security Skills Hub
A shared security category page for Claude Skills, Codex Skills, Gemini Skills, Kimi Skills, GLM Skills, and team workflows.
How to choose
Review the agents and workflows covered by this category, then open a skill detail page to check task boundaries, README notes, setup requirements, and expected outputs.
How To Use This Skill
Use this category to organize agent-ready skills for security review, threat modeling, access checks, privacy controls, and operational safeguards. Each page follows the same skills template so teams can compare categories quickly and adapt the workflow to Claude, Codex, Gemini, Kimi, GLM, or internal SOPs.
Usable AI Agents and Models
Works well as
Security Skills
Popular Security Skills
Start with the skills in this Security category that are easiest to evaluate first. Each detail page includes a download link, the original Skill URL, and notes for adapting the workflow to Claude, Codex, Gemini, Kimi, GLM, or a team SOP.
Trail of Bits Security Skill
Runs CodeQL and Semgrep analysis for vulnerability detection.
Use for CodeQL, Semgrep, Security tasks that should become a reusable agent workflow.
composiohq/composio Skill
Connect AI agents to 1000+ external apps with managed authentication
Use for Official Claude Skills, Awesome Agent Skills, Official Skills tasks that should become a reusable agent workflow.
better-auth/providers Skill
Better Auth authentication providers
Use for Official Claude Skills, Awesome Agent Skills, Official Skills tasks that should become a reusable agent workflow.
Curated Skill Resources
Useful Skill, MCP, Agent, and finance API resources imported from the FynnZhang designer tool library and manual curation.
Runs CodeQL and Semgrep analysis for vulnerability detection.
Connect AI agents to 1000+ external apps with managed authentication
Better Auth authentication providers
Create authentication setup with Better Auth
Email and password authentication with Better Auth
Two-factor authentication with Better Auth
API keys and wallet-based Venice authentication
Comprehensive Cloudflare platform skill covering Workers, Pages, storage, AI, networking, security, and IaC
Shared authentication, global flags, and output formatting
Prompt for clarification on ambiguous requirements
Deep architectural context via ultra-granular code analysis
Smart contract security toolkit with vulnerability scanners for 6 blockchains
Search and extract data from Burp Suite project files
Diagnose and fix Claude in Chrome MCP extension connectivity issues
Detect compiler-induced timing side-channels in crypto code
Index and search culture documentation
Security-focused diff review with git history analysis
DWARF debugging format expertise
Identify state-changing entry points in smart contracts
Scan Android APKs for Firebase misconfigurations and security vulnerabilities
Detect insecure default configurations like hardcoded secrets, default credentials, and weak crypto
Modern Python tooling with uv, ruff, ty, and pytest best practices
Property-based testing for multiple languages and smart contracts
Create and refine Semgrep rules for vulnerability detection
Port existing Semgrep rules to new target languages with test-driven validation
Identify error-prone APIs and dangerous configurations
Specification-to-code compliance checker for blockchain audits
Static analysis toolkit with CodeQL, Semgrep, and SARIF
Testing Handbook skills: fuzzers, static analysis, sanitizers
Find similar vulnerabilities via pattern-based analysis
Set up Sentry in any language or framework — detects platform and routes to the right SDK
End-to-end Sentry workflow: fix production issues and review code with Sentry context
Find and fix Sentry issues with stack trace, breadcrumb, and trace context via MCP
Review code changes using Sentry issue and trace context
Review PR comments from Seer Bug Prediction and Sentry feedback
Create Sentry alerts with email, Slack, PagerDuty, Discord, and more
Configure advanced Sentry features: AI monitoring, OTel pipelines, and alerts
Configure the OpenTelemetry Collector with Sentry Exporter
Instrument OpenAI, Anthropic, Vercel AI, LangChain, Google GenAI, and Pydantic AI
Upgrade the Sentry JavaScript SDK across major versions
Create a new Sentry SDK skill bundle for a platform
Full Sentry SDK setup for Android (Kotlin and Java)
Full Sentry SDK setup for browser JavaScript
Full Sentry SDK setup for Cloudflare Workers, Pages, Durable Objects, Queues, and Workflows
Full Sentry SDK setup for Apple platforms (iOS, macOS, tvOS, watchOS, visionOS)
Full Sentry SDK setup for .NET (ASP.NET Core, MAUI, WPF, WinForms, Blazor, Azure Functions)
Full Sentry SDK setup for Elixir, Phoenix, Plug, LiveView, Oban, and Quantum
Full Sentry SDK setup for Flutter and Dart across all platforms
Full Sentry SDK setup for Go (net/http, Gin, Echo, Fiber, FastHTTP, Iris, Negroni)
Full Sentry SDK setup for NestJS with Express or Fastify, GraphQL, microservices
Full Sentry SDK setup for Next.js 13+ (App Router and Pages Router)
Full Sentry SDK setup for Node.js, Bun, and Deno
Full Sentry SDK setup for PHP, Laravel, and Symfony
Full Sentry SDK setup for Python (Django, Flask, FastAPI, Celery, Starlette, AIOHTTP, Tornado)
Full Sentry SDK setup for React Native and Expo
Full Sentry SDK setup for React (React Router v5-v7, TanStack Router, Redux, Vite, webpack)
Full Sentry SDK setup for Ruby (Rails, Sinatra, Rack, Sidekiq, Resque)
Full Sentry SDK setup for Svelte and SvelteKit
Microsoft Entra ID authentication
Cryptographic key management
Entra ID custom auth events handler
Microsoft Entra ID authentication
Cryptographic key management
Secret management for passwords and keys
Microsoft Entra ID authentication
Microsoft Entra ID authentication
Microsoft Entra ID authentication
Plugin architecture, hooks, settings API, security
Capability-based permissions and REST API authentication
Review code for language-specific security vulnerabilities
Map people-to-file ownership, compute bus factor, and identify risks
Generate repo-specific threat models identifying trust boundaries
Inspect Sentry issues, summarize production errors, and pull health data
Audit token security to detect scams, honeypots, and malicious contracts across BSC, Base, Solana, and Ethereum
Place and manage spot trading orders on Binance via API key authentication, supporting mainnet and testnet
Add authentication to native Android apps using the Auth0 SDK
Add authentication to Angular apps using @auth0/auth0-angular
Add JWT access token validation to ASP.NET Core APIs
Add session-based authentication to Express.js apps
Add session-based authentication to Fastify web apps
Secure Fastify API endpoints with JWT Bearer token validation
Add Multi-Factor Authentication to Auth0-powered apps
Migrate users and auth flows from other providers to Auth0
Add authentication to Next.js apps
Add Auth0 authentication to Nuxt 3/4 apps with encrypted cookie sessions
Detect your framework and scaffold Auth0 integration automatically
Add authentication to React SPAs using @auth0/auth0-react
Add authentication to React Native and Expo mobile apps
Add authentication to Vue.js apps
Query Datadog APM data directly from your editor
Look up Datadog documentation via the LLM-optimized docs index
Analyze production LLM traces and generate evaluators
Root-cause LLM app failures using eval traces
Analyze single or comparative LLM experiment results
Search, filter, and archive Datadog logs through pup CLI
Manage Datadog monitors through the pup CLI
Rust-based CLI (pup) for talking to the Datadog API
Set up Firebase Authentication with sign-in providers
Audit Firestore security rules and flag risky patterns
Draft privacy policies with GDPR compliance considerations
iOS development with UIKit, SnapKit, and SwiftUI covering navigation, Dark Mode, and HIG compliance
Chief Security Officer: OWASP Top 10 + STRIDE threat model with zero false-positive exclusions
WCAG compliance, screen reader support, and keyboard navigation
Security, modern web APIs, and code quality patterns
Set up the MongoDB MCP server with authentication and connection configuration
Finds open GitHub PRs with security and priority-high labels, links each to its issue, detects duplicates (multiple PRs fixing the same issue), and presents a table of review candi...
Performs a comprehensive security review of code changes in a GitHub PR or issue.
Presents a risk framework for every configurable security control in NemoClaw.
Generates security-focused guidance for Google Cloud workloads based on the design principles and recommendations in the Google Cloud Well-Architected Framework (WAF).
Understand CVEs, check product lifecycle status, gather diagnostics, and file support cases at the right severity — essential Red Hat skills for everyday operations.
Discover, remediate, and verify CVEs across your RHEL fleet — orchestrating Red Hat Lightspeed and Ansible Automation Platform through a single workflow.
Provision, inventory, and report on OpenShift clusters — spanning Assisted Installer, OCM, ROSA, ARO, and kubeconfig fleets — through a single conversational workflow.
Manage the full VM lifecycle on OpenShift Virtualization — create, clone, snapshot, restore, rebalance, and report — through a single conversational workflow.
Opinionated project initialization with security-first guardrails, spec-driven atomic todos, LLM testing patterns, and CLI tool orchestration (gh, vercel, supabase)
Comprehensive PR code review using specialized agents: bug-hunter, security-auditor, code-quality-reviewer, contracts-reviewer, historical-context-reviewer, test-coverage-reviewer
753 cybersecurity skills across 38 domains: cloud security, pentesting, red teaming, DFIR, malware analysis, threat intel, and more (MITRE ATT&CK mapped)
Build security Blue Books for sensitive apps
Multi-layered security approaches
Security skill suite with drift detection, automated audits, and skill integrity verification
Helps write secure code by preventing common vulnerabilities including IDOR, XSS, SQL injection, SSRF, and weak authentication, approaching code from a bug hunter's perspective
Agent skill listed in Awesome Agent Skills.
Core Workflows
Context and input setup
Define the source material, constraints, goal, expected output, and quality bar for security work.
Agent execution workflow
Run the task through Claude Skills, Codex Skills, Gemini Skills, Kimi Skills, GLM Skills, or another agent with clear checkpoints.
Review and reusable handoff
Package the result into a checklist, reusable prompt, operating note, or implementation handoff.
Typical Outputs
Frequently Asked Questions
Can Security skills be used with Claude, Codex, Gemini, Kimi, and GLM?
Yes. The category is written as a model-flexible skills hub entry, so the same workflow can become a Claude Skill, Codex Skill, Gemini Skill, Kimi Skill, GLM Skill, or team SOP.
Why use one template for every category page?
A shared template makes the directory easier to scan: every category shows supported agents, core workflow steps, expected outputs, and FAQs in the same structure.