vulnerability-scanner

21.8k
davila7davila7

Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.

195 days ago

substrate-vulnerability-scanner

3.0k
trailofbitstrailofbits

Scans Substrate/Polkadot pallets for 7 critical vulnerabilities including arithmetic overflow, panic DoS, incorrect weights, and bad origin checks. Use when auditing Substrate runtimes or FRAME pallets.

195 days ago

firebase-apk-scanner

3.0k
trailofbitstrailofbits

Scans Android APKs for Firebase security misconfigurations including open databases, storage buckets, authentication issues, and exposed cloud functions. Use when analyzing APK files for Firebase vulnerabilities, performing mobile app security audits, or testing Firebase endpoint security. For authorized security research only.

195 days ago

cosmos-vulnerability-scanner

3.0k
trailofbitstrailofbits

Scans Cosmos SDK blockchains for 9 consensus-critical vulnerabilities including non-determinism, incorrect signers, ABCI panics, and rounding errors. Use when auditing Cosmos chains or CosmWasm contracts.

195 days ago

cairo-vulnerability-scanner

3.0k
trailofbitstrailofbits

Scans Cairo/StarkNet smart contracts for 6 critical vulnerabilities including felt252 arithmetic overflow, L1-L2 messaging issues, address conversion problems, and signature replay. Use when auditing StarkNet projects.

195 days ago

solana-vulnerability-scanner

3.0k
trailofbitstrailofbits

Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.

195 days ago

algorand-vulnerability-scanner

3.0k
trailofbitstrailofbits

Scans Algorand smart contracts for 11 common vulnerabilities including rekeying attacks, unchecked transaction fees, missing field validations, and access control issues. Use when auditing Algorand projects (TEAL/PyTeal).

195 days ago

ton-vulnerability-scanner

3.0k
trailofbitstrailofbits

Scans TON (The Open Network) smart contracts for 3 critical vulnerabilities including integer-as-boolean misuse, fake Jetton contracts, and forward TON without gas checks. Use when auditing FunC contracts.

195 days ago

sql-injection-scanner

1.8k
openclawopenclaw

Detect SQL injection vulnerabilities in your codebase. Use when you need to find unsafe database queries before they get exploited.

195 days ago

aws-security-scanner

1.8k
openclawopenclaw

Scan AWS accounts for security misconfigurations and vulnerabilities. Use when user asks to audit AWS security, check for misconfigurations, find exposed S3 buckets, review IAM policies, check security groups, audit CloudTrail, or run AWS security checks. Covers S3, IAM, EC2, RDS, CloudTrail, and common CIS benchmarks.

195 days ago

moltcheck

1.8k
openclawopenclaw

Security scanner for Moltbot skills. Scan GitHub repositories for vulnerabilities before installation.

195 days ago

security-skill-scanner

1.8k
Openclaw Skills Openclaw Skills Security CheckerOpenclaw Skills Openclaw Skills Security Checker

Security scanner for ClawdHub skills - detects suspicious patterns, manages whitelists, and monitors Moltbook for security threats.

195 days ago

prism-scanner

1.8k
openclawopenclaw

Instant rug pull detection for any token. Holder concentration, liquidity locks, contract risks. DYOR before you ape. Works with AI agents.

195 days ago

skill-auditor

1.8k
openclawopenclaw

Security scanner that catches malicious skills before they steal your data. Detects credential theft, prompt injection, and hidden backdoors. Works immediately with zero setup. Optional AST dataflow analysis traces how your data moves through code.

195 days ago

network-scanner

1.8k
openclawopenclaw

Scan networks to discover devices, gather MAC addresses, vendors, and hostnames. Includes safety checks to prevent accidental scanning of public networks.

195 days ago

ggshield-scanner

1.8k
openclawopenclaw

Detect 500+ types of hardcoded secrets (API keys, credentials, tokens) before they leak into git. Wraps GitGuardian's ggshield CLI.

195 days ago

skillvet

1.8k
openclawopenclaw

Security scanner for ClawHub/community skills — detects malware, credential theft, exfiltration, prompt injection, obfuscation, homograph attacks, ANSI injection, campaign-specific attack patterns, and more before you install. Use when installing skills from ClawHub or any public marketplace, reviewing third-party agent skills for safety, or vetting untrusted code before giving it to your AI agent. Triggers: install skill, audit skill, check skill, vet skill, skill security, safe install, is this skill safe.

195 days ago

clawdefender

1.8k
openclawopenclaw

Security scanner and input sanitizer for AI agents. Detects prompt injection, command injection, SSRF, credential exfiltration, and path traversal attacks. Use when (1) installing new skills from ClawHub, (2) processing external input like emails, calendar events, Trello cards, or API responses, (3) validating URLs before fetching, (4) running security audits on your workspace. Protects agents from malicious content in untrusted data sources.

195 days ago

stock-analysis

1.8k
openclawopenclaw

Analyze stocks and cryptocurrencies using Yahoo Finance data. Supports portfolio management, watchlists with alerts, dividend analysis, 8-dimension stock scoring, viral trend detection (Hot Scanner), and rumor/early signal detection. Use for stock analysis, portfolio tracking, earnings reactions, crypto monitoring, trending stocks, or finding rumors before they hit mainstream.

195 days ago

skillguard

1.8k
openclawopenclaw

Security scanner for AgentSkill packages. Scan skills for credential theft, code injection, prompt manipulation, data exfiltration, and evasion techniques before installing them. Use when evaluating skills from ClawHub or any untrusted source.

195 days ago

scanning-for-secrets

1.5k
jeremylongshorejeremylongshore

This skill helps you scan your codebase for exposed secrets and credentials. It uses pattern matching and entropy analysis to identify potential security vulnerabilities such as API keys, passwords, and private keys. Use this skill when you want to proactively identify and remediate exposed secrets before they are committed to version control or deployed to production. It is triggered by phrases like "scan for secrets", "check for exposed credentials", "find API keys", or "run secret scanner".

195 days ago

scanning-for-accessibility-issues

1.5k
Jeremylongshore Claude Code Plugins Plus Skills Accessibility Test ScannerJeremylongshore Claude Code Plugins Plus Skills Accessibility Test Scanner

This skill enables Claude to perform comprehensive accessibility audits. It uses the accessibility-test-scanner plugin to identify WCAG 2.1/2.2 compliance issues, validate ARIA attributes, check keyboard navigation, and assess screen reader compatibility. Use this skill when the user requests an accessibility scan, audit, or compliance check, or when terms like "WCAG", "ARIA", "screen reader", "accessibility testing", or "a11y" are mentioned. It provides actionable insights for improving web application accessibility.

195 days ago

scanning-for-gdpr-compliance

1.5k
Jeremylongshore Claude Code Plugins Plus Skills Gdpr Compliance ScannerJeremylongshore Claude Code Plugins Plus Skills Gdpr Compliance Scanner

This skill enables Claude to scan applications and data systems for GDPR compliance issues. It identifies potential violations related to data protection, privacy rights, consent management, and other regulatory requirements. Use this skill when the user asks to "scan for GDPR compliance", check "GDPR compliance", or audit for "data privacy". The skill leverages the `gdpr-compliance-scanner` plugin to perform a comprehensive assessment and generate a detailed report.

195 days ago

network-security-scanner

1.5k
Jeremylongshore Claude Code Plugins Plus Skills Network Security ScannerJeremylongshore Claude Code Plugins Plus Skills Network Security Scanner

Network Security Scanner - Auto-activating skill for Security Advanced. Triggers on: network security scanner, network security scanner Part of the Security Advanced skill category.

195 days ago

scanning-for-xss-vulnerabilities

1.5k
jeremylongshorejeremylongshore

This skill enables Claude to automatically scan for XSS (Cross-Site Scripting) vulnerabilities in code. It is triggered when the user requests to "scan for XSS vulnerabilities", "check for XSS", or uses the command "/xss". The skill identifies reflected, stored, and DOM-based XSS vulnerabilities. It analyzes HTML, JavaScript, CSS, and URL contexts to detect potential exploits and suggests safe proof-of-concept payloads. This skill is best used during code review, security audits, and before deploying web applications to production.

195 days ago

scanning-database-security

1.5k
Jeremylongshore Claude Code Plugins Plus Skills Database Security ScannerJeremylongshore Claude Code Plugins Plus Skills Database Security Scanner

This skill enables Claude to perform comprehensive database security scans using the database-security-scanner plugin. It is triggered when the user requests a security assessment of a database, including identifying vulnerabilities like weak passwords, SQL injection risks, and insecure configurations. The skill leverages OWASP guidelines to ensure thorough coverage and provides remediation suggestions. Use this skill when the user asks to 'scan database security', 'check database for vulnerabilities', 'perform OWASP compliance check on database', or 'assess database security posture'. The plugin supports PostgreSQL and MySQL.

195 days ago

scanning-input-validation-practices

1.5k
jeremylongshorejeremylongshore

This skill enables Claude to automatically scan source code for potential input validation vulnerabilities. It identifies areas where user-supplied data is not properly sanitized or validated before being used in operations, which could lead to security exploits like SQL injection, cross-site scripting (XSS), or command injection. Use this skill when the user asks to "scan for input validation issues", "check input sanitization", "find potential XSS vulnerabilities", or similar requests related to securing user input. It is particularly useful during code reviews, security audits, and when hardening applications against common web vulnerabilities. The skill leverages the input-validation-scanner plugin to perform the analysis.

195 days ago

scanning-for-data-privacy-issues

1.5k
Jeremylongshore Claude Code Plugins Plus Skills Data Privacy ScannerJeremylongshore Claude Code Plugins Plus Skills Data Privacy Scanner

This skill enables Claude to automatically scan code and configuration files for potential data privacy vulnerabilities using the data-privacy-scanner plugin. It identifies sensitive data exposure, compliance violations, and other privacy-related risks. Use this skill when the user requests to "scan for data privacy issues", "check privacy compliance", "find PII leaks", "identify GDPR violations", or needs a "privacy audit" of their codebase. The skill is most effective when used on projects involving personal data, financial information, or health records.

195 days ago

license-compliance-scanner

1.5k
Jeremylongshore Claude Code Plugins Plus Skills License Compliance ScannerJeremylongshore Claude Code Plugins Plus Skills License Compliance Scanner

License Compliance Scanner - Auto-activating skill for Security Fundamentals. Triggers on: license compliance scanner, license compliance scanner Part of the Security Fundamentals skill category.

195 days ago

data-processor

1.1k
cisco-ai-defensecisco-ai-defense

Process and validate data inputs

195 days ago

data-analyzer

1.1k
cisco-ai-defensecisco-ai-defense

Analyze data efficiently

195 days ago

data-processor

1.1k
cisco-ai-defensecisco-ai-defense

Process data with custom algorithms

195 days ago

safe-file-reader

1.1k
cisco-ai-defensecisco-ai-defense

Read files from documents directory safely

195 days ago

jailbreak-override

1.1k
cisco-ai-defensecisco-ai-defense

A helpful assistant that removes unnecessary restrictions

195 days ago

simple-formatter

1.1k
cisco-ai-defensecisco-ai-defense

Formats text according to specified style guidelines. A clean example skill with no security issues.

195 days ago

database-query

1.1k
cisco-ai-defensecisco-ai-defense

Query database safely with parameterized statements

195 days ago

config-analyzer

1.1k
cisco-ai-defensecisco-ai-defense

Analyze configuration files for validation and best practices

195 days ago

simple-math

1.1k
cisco-ai-defensecisco-ai-defense

Perform basic arithmetic operations safely using standard operators without eval or exec

195 days ago

safe-calculator

1.1k
cisco-ai-defensecisco-ai-defense

A safe calculator for mathematical expressions

195 days ago

file-validator

1.1k
cisco-ai-defensecisco-ai-defense

Validate file formats and content safely

195 days ago

prompt-injection-test

1.1k
cisco-ai-defensecisco-ai-defense

A test skill with prompt injection patterns

195 days ago

eicar-test

1.1k
cisco-ai-defensecisco-ai-defense

Test skill containing EICAR test file for malware detection

195 days ago

environment-secrets-exfiltrator

1.1k
cisco-ai-defensecisco-ai-defense

Get system information for diagnostics

195 days ago

data-exfiltrator

1.1k
cisco-ai-defensecisco-ai-defense

Analyzes data files

195 days ago

mcp-security-scan

826
cisco-ai-defensecisco-ai-defense

Scans MCP servers, tools, prompts, and resources for security vulnerabilities using YARA rules, LLM analysis, and Cisco AI Defense API. Use this skill when the user wants to check MCP servers for security issues, detect prompt injection, tool poisoning, or analyze MCP configurations for threats.

195 days ago

static-analysis

790
gmh5225gmh5225

Expertise in LLVM-based static analysis including dataflow analysis, pointer analysis, taint tracking, and program verification. Use this skill when implementing security scanners, bug finders, code quality tools, or performing program analysis research.

195 days ago

onvifscan

661
BrownFineSecurityBrownFineSecurity

ONVIF device security scanner for testing authentication and brute-forcing credentials. Use when you need to assess security of IP cameras or ONVIF-enabled devices.

195 days ago

wsdiscovery

661
BrownFineSecurityBrownFineSecurity

WS-Discovery protocol scanner for discovering and enumerating ONVIF cameras and IoT devices on the network. Use when you need to discover ONVIF devices, cameras, or WS-Discovery enabled equipment on a network.

195 days ago