Framer
Design and ship a production site without hand-writing the front end. Good pairing for agent-generated copy.
Visit FramerSupabase
Postgres with auth and storage attached. The default backend for most things built with an agent this year.
Visit SupabaseSecurity & Compliance skills
Free security & compliance skills for AI coding agents. Search within this category or filter by agent, level and popularity.
870 skills
CodeQL Code Scanning
github
Streamline CodeQL setup and configuration for security analysis.
GitHub Actions Hardening
github
Enhance the security of your GitHub Actions workflows.
Data Breach Blast Radius Analyzer
github
Assess potential breach impacts before they occur.
Resemble Detect
github
Detect and analyze AI-generated media for authenticity.
Microsoft Threat Modeling Tool Generator
github
Easily create .tm7 files for threat modeling.
Secret Scanning
github
Protect your code by preventing secret leaks.
Threat Model Analyst
github
Perform comprehensive threat modeling and analysis.
Sensitive Logging Audit
openai
Audit and fix sensitive data exposure in Python logging.
Security Review
github
AI-powered codebase security scanner for vulnerabilities.
Cloudflare Security Audit
sickn33
Perform authorized security audits on codebases.
Verify Agent Action
github
Ensure safe execution of AI agent actions with thorough reviews.
Licenca para Auditar
sickn33
Comprehensive security audits and threat modeling for projects.
iMessage Access Management
anthropics
Control access to your iMessage channel securely.
Agent Supply Chain Integrity
github
Ensure the integrity of AI agent plugins and tools.
Securing S3 Buckets
aws
Enhance your S3 bucket security with AWS best practices.
MCP Security Audit
github
Ensure your MCP configurations are secure and compliant.
Agent OWASP ASI Compliance Check
github
Ensure your AI agents meet OWASP ASI security standards.
Detecting Typosquatting Packages
mukul975
Proactively screen for malicious package names.
Detecting Secure Boot Bypass
mukul975
Identify UEFI Secure Boot vulnerabilities effectively.
Implementing Container Image Minimal Base
mukul975
Harden your container images with distroless base images.
Senior SecOps Engineer
alirezarezvani
Automate application security and compliance checks.
Detecting Indirect Prompt Injection
mukul975
Safeguard your LLM agents from hidden threats.
Security Review
affaan-m
Ensure your code adheres to security best practices.
Detecting Model Extraction Attacks
mukul975
Safeguard your AI models from extraction threats.
About security & compliance skills
What are security & compliance skills for AI agents?
They are SKILL.md packages that teach an AI agent how to handle security & compliance tasks. Each bundles instructions, and often scripts and reference files, that the agent loads when your request matches what the skill does.
Do these skills work outside Claude Code?
Yes. SKILL.md is an open standard, so the same folder works in Claude Code, Codex CLI, Cursor, Antigravity, Cowork, Windsurf and Copilot. Only the install path changes.
How much do they cost?
Every skill listed is free and open source. We link to the original repository so you can read the code before installing.
