All categories
Security
Security audits, vulnerabilities, compliance, auth, secrets, and safe automation
- 26,873
- 1,120
Security grades appear on each card once the skill has been scanned. Newly imported skills may briefly show without a grade until the backfill job runs.
Open in full browserBrowse security skills
Showing 217–240 of 26,873 skills
- Periodic Client ReviewOperation skill.Votes: 0GitHub stars: 2
- Employee ScreeningOperation skill.Votes: 0GitHub stars: 2
- Edd Review Mlro Escalation SupportOperation skill.Votes: 0GitHub stars: 2
- Counterparty ScreeningOperation skill.Votes: 0GitHub stars: 2
- Client Onboarding ReviewOperation skill.Votes: 0GitHub stars: 2
- Bank Counterparty ScreeningOperation skill.Votes: 0GitHub stars: 2
- TCAML S007 Periodic Review RescreeningTCAML-S007 defines how an AML agent should assist with periodic review, re-screening and change detection for existing relationships.Votes: 0GitHub stars: 2
- TCAML S005 Mlro Escalation MemoMaintainer: Tom Custos Category: Human-supervised AML operations ---Votes: 0GitHub stars: 2
- TCAML S004 Website Domain ReviewMaintainer: Tom Custos Category: Human-supervised AML operations ---Votes: 0GitHub stars: 2
- Messenger Internal Review AlertNotify an internal reviewer that a case requires attention, without sending the full case record into an uncontrolled channel.Votes: 0GitHub stars: 2
- Auth Implementation PatternsMaster authentication and authorization patterns including JWT, OAuth2, session management, and RBAC to build secure, scalable access control systems. Use when implementing auth systems, securing A...Votes: 0GitHub stars: 3
- Msp SecurityUse this skill for security standards at your managed IT services (MSP) business, in both directions: the baseline every managed client must meet (MFA, endpoint protection, email security, backups, admin access, offboarding) and how the MSP secures itself (RMM hardening, the credential vault, admin separation, partner-delegated admin access into client tenants, our own devices). Trigger on "security baseline", "security standard", "harden this tenant", "is this client secure enough", "securit...Votes: 0GitHub stars: 105
- Srx Initial SetupBring a new or factory-reset Juniper SRX from its shipped state to a reachable, zoned, screened, and minimally policied device. Use when performing first-time setup or Day-0 and Day-1 bring-up on SRX300 or SRX400 Branch, SRX1600 or SRX4120 campus, or SRX4300, SRX4700, or SRX5000 datacenter platforms, when removing or adopting factory-default configuration, when establishing management access, NTP, DNS, and system services, when creating interfaces, zones, and host-inbound-traffic, when applyi...Votes: 0GitHub stars: 9
- Srx Dynamic Ip FeedConfigure, audit, and troubleshoot Juniper SRX dynamic IP objects from HTTPS feeds. Use when handling feed archives, dynamic-address mapping, certificate validation, basic auth, mTLS, session scanning, routing-instance reachability, Recovery Mode after reboot, show security dynamic-address, ipfd logs, or feed and TLS failures. Use srx-policy for SecIntel feeds.Votes: 0GitHub stars: 9
- Soc2 Ngfw ComplianceMap firewall controls, evidence, and gaps to SOC 2 Trust Services Criteria. Use when assessing Type I or II, logical access, operations, change management, logging, vendor access, incident response, operating-effectiveness samples, or CC6.1, CC6.6, CC7.2, and CC8.1. Parse raw configs first.Votes: 0GitHub stars: 9
- Pci Ngfw ComplianceMap firewall controls, evidence, and gaps to PCI DSS v4.0.1. Use when assessing CDE scope, segmentation, Requirement 1, traffic restrictions, six-month rule review, logging, IDS/IPS, admin access, change control, or QSA, ROC, and SAQ evidence. Treat compliance as an environment assessment, not an NGFW certification.Votes: 0GitHub stars: 9
- Parsing Palo ConfigsParse PAN-OS and Panorama XML or set-format exports into the shared firewall schema. Use when input contains vsys, device-group, security rulebase, address-group, application-default, security-profile-group, set deviceconfig, or XML entry/member elements, including audit, conversion, diff, summary, and explanation tasks.Votes: 0GitHub stars: 9
- Parsing Cisco ConfigsParse Cisco ASA and FTD LINA running configurations into the shared firewall schema. Use when input contains show running-config, access-list, access-group, object network, object-group, nameif, security-level, NAT, interfaces, or failover, including audit, conversion, diff, summary, and explanation tasks. For FMC- or FDM-managed Firepower policy exported as JSON, use parsing-firepower-configs instead.Votes: 0GitHub stars: 9
- Iso27001 Ngfw ComplianceMap firewall controls, evidence, and gaps to ISO/IEC 27001:2022 and ISO 27002. Use when assessing ISMS scope, Annex A.8.20-A.8.23, secure configuration, logging, supplier access, change or incident evidence, the Statement of Applicability, audits, or corrective actions. Parse raw configs first.Votes: 0GitHub stars: 9
- Hipaa Ngfw ComplianceMap firewall controls, evidence, and gaps to HIPAA Security Rule safeguards for ePHI. Use when assessing segmentation, access and audit controls, transmission security, risk management, BAA or vendor access, OCR evidence, 45 CFR 164.312, or “HIPPA.” Parse raw configs first.Votes: 0GitHub stars: 9
- Cmmc Nist 800 171 Ngfw ComplianceMap firewall controls, evidence, and gaps to CMMC Level 2 and NIST SP 800-171. Use when assessing CUI boundaries, least privilege, remote access, SSP or POA&M evidence, C3PAO readiness, DFARS 252.204-7012, or requirements such as 3.1.1 and 3.13.1. Parse raw configs first.Votes: 0GitHub stars: 9
- Cis Controls Ngfw ComplianceMap firewall controls, evidence, and gaps to CIS Controls v8/v8.1 safeguards. Use when assessing IG1/IG2/IG3, inventory, secure configuration, access, logging, threat prevention, or safeguard IDs such as 4.2 and 13.3. Excludes product-specific CIS Benchmarks.Votes: 0GitHub stars: 9
- Workers Best PracticesCloudflare Workers best practices for production applications. Use when writing, reviewing, or configuring Workers.Votes: 0GitHub stars: 2,994
- Security Threat ModelRepository-grounded threat modeling that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and mitigations, and writes a concise Markdown threat model. Trigger only when the user explicitly asks to threat model a codebase or path, enumerate threats/abuse paths, or perform AppSec threat modeling. Do not trigger for general architecture summaries, code review, or non-security design work.Votes: 0GitHub stars: 27,803