Agent skills
Skills you can use with AI coding agents, indexed from public GitHub repositories.
-
jwt-auth
Configure JWT Bearer authentication with Keycloak for affolterNET.Web.Api. Use when setting up token validation, Keycloak integration, or API authentication.
majiayu000/claude-skill-registry 163
-
stripe-payments
Use when processing payments, handling payment methods, implementing PaymentIntents, or integrating Payment Element. Invoke for payment flow setup, 3D Secure authentication, refund processing, payment method management, or checkout implementation.
majiayu000/claude-skill-registry 163
-
csrf-protection-validator
Csrf Protection Validator - Auto-activating skill for Security Fundamentals.
Triggers on: csrf protection validator, csrf protection validator
Part of the Security Fundamentals skill category.
majiayu000/claude-skill-registry 163
-
iso27001-gap-analyzer
Iso27001 Gap Analyzer - Auto-activating skill for Security Advanced.
Triggers on: iso27001 gap analyzer, iso27001 gap analyzer
Part of the Security Advanced skill category.
majiayu000/claude-skill-registry 163
-
audit-security-dependencies
Use when adding packages, bumping versions, or responding to security alerts. Enforces supply chain security and vulnerability remediation.
majiayu000/claude-skill-registry 163
-
audit-dependencies
Run npm audit and check for outdated/vulnerable dependencies. Returns structured output with vulnerability counts by severity, outdated packages, and recommended updates. Used for security validation and dependency health checks.
majiayu000/claude-skill-registry 163
-
web-auth
Authentication patterns for React web applications. Use when implementing login flows, OAuth, JWT handling, session management, or protected routes in React web apps.
majiayu000/claude-skill-registry 163
-
audit-security
Quick security audit checking for hardcoded secrets, SSRF vectors, injection points, dependency issues, and missing security headers
majiayu000/claude-skill-registry 163
-
securing-server-actions
Teach server action authentication and security patterns in Next.js 16. Use when implementing server actions, form handlers, or mutations that need authentication.
majiayu000/claude-skill-registry 163
-
atlas-full
Full 9-phase workflow for complex features, epics, and security-critical changes (2-4 hours)
majiayu000/claude-skill-registry 163
-
fnox-security-best-practices
Use when implementing secure secrets management with Fnox. Covers encryption, key management, access control, and security hardening.
majiayu000/claude-skill-registry 163
-
attack-methods-lookup
Looks up OWASP Top 10 attack methods, CWE references, and form-specific vulnerability patterns with a bounty hunter mindset. Returns attack vectors, payloads, and payout estimates. Use when user asks about "XSS", "SQL injection", "CSRF", "OWASP", "CWE", "IDOR", "injection", "bypass", "vulnerability", "exploit", "SQLインジェクション", "クロスサイトスクリプティング", "脆弱性".
majiayu000/claude-skill-registry 163
-
auth-system
Auth system (Clerk + Convex + anonymous JWT) guidelines and planned permissions/upgrade behavior.
majiayu000/claude-skill-registry 163
-
audit-skill
Comprehensive audit capabilities for security, code quality, module structure, compliance, and performance analysis. Use this skill when performing security audits, code reviews, vulnerability assessments, module structure validation, or generating audit reports.
majiayu000/claude-skill-registry 163
-
smart-contract-generator
Generates Solidity smart contracts with security best practices (ERC-20, ERC-721, ERC-1155, custom). Use when user asks to "create smart contract", "solidity contract", "erc20 token", "nft contract", or "web3 contract".
majiayu000/claude-skill-registry 163
-
justfile-security-patterns
Level 2 patterns - vulns, lic, sbom, doctor (security, compliance, environment health)
majiayu000/claude-skill-registry 163
-
naturalistic-motion
Use when animation should feel organic and lifelike—creature animation, realistic characters, nature elements, or any motion that needs to breathe with authentic living quality.
majiayu000/claude-skill-registry 163
-
obsidian-sop-authoring
Crear y mantener procedimientos como skills (SKILL.md) con objetivo, cuando usar, pasos y checklist.
majiayu000/claude-skill-registry 163
-
cloud-security-posture
Cloud Security Posture - Auto-activating skill for Security Advanced.
Triggers on: cloud security posture, cloud security posture
Part of the Security Advanced skill category.
majiayu000/claude-skill-registry 163
-
IoT Telnet Shell (telnetshell)
Use telnet to interact with IoT device shells for pentesting operations including device enumeration, vulnerability discovery, credential testing, and post-exploitation. Use when the user needs to interact with network-accessible shells, IoT devices, or telnet services.
majiayu000/claude-skill-registry 163
-
security-benchmark-runner
Security Benchmark Runner - Auto-activating skill for Security Advanced.
Triggers on: security benchmark runner, security benchmark runner
Part of the Security Advanced skill category.
majiayu000/claude-skill-registry 163
-
hashing-passwords
CRITICAL security skill teaching proper credential and password handling. NEVER store passwords, use bcrypt/argon2, NEVER accept third-party credentials. Use when handling authentication, passwords, API keys, or any sensitive credentials.
majiayu000/claude-skill-registry 163
-
server-setup
Set up drizzle-cube API server with Express, Fastify, Hono, or Next.js framework adapters. Use when configuring the semantic layer server, setting up API endpoints, extracting security context, or initializing drizzle-cube with different web frameworks.
majiayu000/claude-skill-registry 163
-
git-workflow
Git workflow guidance for commits, branches, and pull requests
majiayu000/claude-skill-registry 163