Unified Policy as Code
$ npx skills add kyverno/kyvernoAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources
Unified Policy as Code
$ npx skills add kyverno/kyvernoWazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
$ npx skills add wazuh/wazuhLynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
$ npx skills add CISOfy/lynisOpen Policy Agent (OPA) is an open source, general-purpose policy engine.
$ npx skills add open-policy-agent/opaPrevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
$ npx skills add bridgecrewio/checkov🕵️♂️ Collect a dossier on a person by username from 3000+ sites
$ npx skills add soxoj/maigretIncredibly fast crawler designed for OSINT.
$ npx skills add s0md3v/PhotonDownload pictures (or videos) along with their captions and other metadata from Instagram.
$ npx skills add instaloader/instaloaderThe recursive internet scanner for hackers. 🧡
$ npx skills add blacklanternsecurity/bbotOneForAll是一款功能强大的子域收集工具
$ npx skills add shmilylty/OneForAllOpen-source intelligence for the global theater. Track everything from the corporate/private jets of the wealthy, and spy satellites, to seismic events in one unified interface. Hook an AI agent up to have it parse through data and find previously unseen correlations. The knowledge is available to all but rarely aggregated in the open, until now.
$ npx skills add BigBodyCobain/ShadowbrokerCode security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
$ npx skills add Bearer/bearerBandit is a tool designed to find common security issues in Python code.
$ npx skills add PyCQA/banditDeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。让安全不再昂贵,让审计不再复杂。
$ npx skills add lintsinghua/DeepAuditIntelOwl: manage your Threat Intelligence at scale
$ npx skills add intelowlproject/IntelOwlSnoop — инструмент разведки на основе открытых данных (OSINT world)
$ npx skills add snooppr/snoopHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Cloud Custodian if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.