The ZAP by Checkmarx Core project
$ npx skills add zaproxy/zaproxyAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
ZAP Add-ons
The ZAP by Checkmarx Core project
$ npx skills add zaproxy/zaproxyNuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
$ npx skills add projectdiscovery/nucleiWPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com
$ npx skills add wpscanteam/wpscanBandit is a tool designed to find common security issues in Python code.
$ npx skills add PyCQA/banditSearches through git repositories for high entropy strings and secrets, digging deep into commit history
$ npx skills add godaddy/tartufoKubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your Kubernetes YAML and Charts. Static code analysis for Kubernetes.
$ npx skills add zegl/kube-scoreVigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision
$ npx skills add vigolium/vigoliumSolhint is an open-source project to provide a linting utility for Solidity code.
$ npx skills add protofire/solhintMulti-engine Linux malware scanner with five detection stages (MD5, HEX pattern, YARA, ClamAV, statistical), real-time inotify monitoring, quarantine, and multi-channel alerting
$ npx skills add rfxn/linux-malware-detectA modular vulnerability scanner with automatic report generation capabilities.
$ npx skills add CERT-Polska/ArtemisA tool for BLE environment monitoring. Find and track Bluetooth devices around, and get notified when the target device is detected.
$ npx skills add BLE-Research-Group/MetaRadarWeb Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).
$ npx skills add Hackmanit/Web-Cache-Vulnerability-ScannerApplication Layer DoS attack simulator
$ npx skills add shekyan/slowhttptestLynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
$ npx skills add CISOfy/lynisAgent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
$ npx skills add future-architect/vulsA default credential scanner.
$ npx skills add ztgrace/changemeHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Zap Extensions if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.