{"task":"Use Security Code Scan","agent":"codex","constraints":{"max_risk":"medium","needs_install_command":true,"min_stars":0},"recommendation":{"task":"Use Security Code Scan","agent":"codex","best_skill":{"slug":"projectdiscovery-nuclei","name":"Nuclei","description":"Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","category":"security","url":"https://www.openagentskill.com/skills/projectdiscovery-nuclei","api_url":"https://www.openagentskill.com/api/agent/skills/projectdiscovery-nuclei","audit_url":"https://www.openagentskill.com/skills/projectdiscovery-nuclei/audit","repository":"https://github.com/projectdiscovery/nuclei"},"install":{"command":"npx skills add projectdiscovery/nuclei","target":"codex","label":"Codex install prompt","kind":"agent-prompt","value":"Install the \"Nuclei\" agent skill from https://github.com/projectdiscovery/nuclei. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","install_api":"https://www.openagentskill.com/api/skills/projectdiscovery-nuclei/install","ready":true,"review_required":false,"auto_install_allowed":true,"policy":"allow"},"why_recommended":["Matches task terms: use, security, scan","Strong GitHub adoption: 29,159 stars","Quality score 74/100","Install handoff is available","Repository freshness signal is available","Primary pick for Security and compliance","98/100 OpenAgentSkill Trust Score v2","98/100 audit score"],"trust_score_v2":{"score":98,"tier":"production","label":"Production candidate","install_policy":"agent_install_candidate","evidence":{"stars":"29K GitHub stars","lastPushed":"2d since push","license":"MIT","repository":"https://github.com/projectdiscovery/nuclei","install":"npx skills add projectdiscovery/nuclei","documentation":"Strong README/SKILL.md context"},"agent_compatibility":["Go","Security","Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"risk":{"level":"low","label":"Low metadata risk","notes":["No major trust warnings detected from available metadata"]}},"risk":{"level":"Safe to try","safety_tier":"Verified","safety":"90/100 Safe to install with normal review","trust":"98/100 Production candidate","notes":[]},"safety_gate":{"tier":"verified","label":"Verified","badge":"VERIFIED","auto_install_policy":"allow","auto_install_allowed":true,"human_review_required":false,"blocked":false,"recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","reasons":["Verified listing","Safe-to-try audit","90/100 agent safety score"]},"supply_asset":{"track":{"slug":"coding","label":"Coding and developer agents","shortLabel":"Coding","description":"Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills."},"scenario":{"label":"Coding agents","description":"I need a coding agent that can understand a repository, edit code, and review pull requests.","useCases":[{"slug":"security-compliance","title":"Security and compliance"},{"slug":"coding-agents","title":"Coding agents"},{"slug":"rag-knowledge","title":"RAG and knowledge"}]},"maintenance":{"status":"fresh","label":"2d since push","daysSincePush":2,"lastPushedAt":"2026-06-13T15:43:40+00:00"},"github_quality":{"stars":29159,"starsLabel":"29K","forks":3484,"license":"MIT","qualityScore":100,"trustScore":98,"auditScore":98},"coverage_tags":["Coding","Coding agents","security","scanner","attack-surface","cve-scanner","dast","hacktoberfest"]},"alternatives":[{"slug":"zaproxy-zaproxy","name":"Zaproxy","url":"https://www.openagentskill.com/skills/zaproxy-zaproxy","install_command":"npx skills add zaproxy/zaproxy","trust_score":95,"audit_score":97,"safety_score":89,"why_consider":"Matches task terms: use, security, scan","risk":{"level":"Safe to try","safety_tier":"Verified","safety":"89/100 Safe to install with normal review","trust":"95/100 Production candidate","notes":[]}},{"slug":"future-architect-vuls","name":"Vuls","url":"https://www.openagentskill.com/skills/future-architect-vuls","install_command":"npx skills add future-architect/vuls","trust_score":97,"audit_score":98,"safety_score":90,"why_consider":"Matches task terms: use, security, scan","risk":{"level":"Safe to try","safety_tier":"Verified","safety":"90/100 Safe to install with normal review","trust":"97/100 Production candidate","notes":[]}},{"slug":"mobsf-mobile-security-framework-mobsf","name":"Mobile Security Framework MobSF","url":"https://www.openagentskill.com/skills/mobsf-mobile-security-framework-mobsf","install_command":"npx skills add MobSF/Mobile-Security-Framework-MobSF","trust_score":97,"audit_score":98,"safety_score":90,"why_consider":"Matches task terms: use, security, code","risk":{"level":"Safe to try","safety_tier":"Verified","safety":"90/100 Safe to install with normal review","trust":"97/100 Production candidate","notes":[]}},{"slug":"hesreallyhim-awesome-claude-code","name":"Awesome Claude Code","url":"https://www.openagentskill.com/skills/hesreallyhim-awesome-claude-code","install_command":"npx skills add hesreallyhim/awesome-claude-code","trust_score":91,"audit_score":93,"safety_score":77,"why_consider":"Matches task terms: use, security, code","risk":{"level":"Safe to try","safety_tier":"Reviewed","safety":"77/100 Review before install","trust":"91/100 Production candidate","notes":["License is unclear","License clarity: Unknown"]}}],"agent_instruction":"Use Nuclei for: Use Security Code Scan\nReview audit: https://www.openagentskill.com/skills/projectdiscovery-nuclei/audit\nInstall in a sandbox first with: npx skills add projectdiscovery/nuclei\nIf the audit or policy warnings are unacceptable, choose one of the alternatives."},"selected":{"rank":1,"match_score":244.6,"skill":{"slug":"projectdiscovery-nuclei","name":"Nuclei","description":"Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","category":"security","repository":"https://github.com/projectdiscovery/nuclei","github_repo":"projectdiscovery/nuclei"},"recommendation_reasons":["Matches task terms: use, security, scan","Strong GitHub adoption: 29,159 stars","Quality score 74/100","Install handoff is available","Repository freshness signal is available"],"supply_profile":{"track":{"slug":"coding","label":"Coding and developer agents","shortLabel":"Coding","description":"Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills."},"scenario":{"label":"Coding agents","description":"I need a coding agent that can understand a repository, edit code, and review pull requests.","useCases":[{"slug":"security-compliance","title":"Security and compliance"},{"slug":"coding-agents","title":"Coding agents"},{"slug":"rag-knowledge","title":"RAG and knowledge"}]},"applicableAgents":["Claude Code","CLI","Codex","Cursor","Go"],"install":{"ready":true,"command":"npx skills add projectdiscovery/nuclei","primaryTarget":"CLI","targetCount":4},"githubQuality":{"stars":29159,"starsLabel":"29K","forks":3484,"license":"MIT","qualityScore":100,"trustScore":98,"auditScore":98},"maintenance":{"status":"fresh","label":"2d since push","daysSincePush":2,"lastPushedAt":"2026-06-13T15:43:40+00:00"},"risk":{"level":"safe_to_try","label":"Safe to try","requiresReview":false,"notes":["No major risk signals from available metadata"]},"coverageTags":["Coding","Coding agents","security","scanner","attack-surface","cve-scanner","dast","hacktoberfest"]},"quality":{"score":100,"tier":"excellent","label":"Excellent","summary":"High-confidence pick with strong adoption and healthy maintenance signals.","signals":[{"label":"GitHub stars","value":"29K","tone":"positive"},{"label":"Freshness","value":"2d ago","tone":"positive"},{"label":"Install ready","value":"Yes","tone":"positive"},{"label":"License","value":"MIT","tone":"neutral"}],"warnings":[]},"trust":{"version":"trust-score-v2","score":98,"tier":"production","label":"Production candidate","summary":"Strong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency risk, and install availability.","recommendedAction":"Shortlist for production use, then run a normal repository and dependency review.","dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":100,"weight":0.16,"status":"pass","detail":"29K GitHub stars"},{"id":"maintenance","label":"Recent maintenance","score":100,"weight":0.18,"status":"pass","detail":"2d since push"},{"id":"license","label":"License clarity","score":86,"weight":0.1,"status":"pass","detail":"MIT"},{"id":"documentation","label":"README/SKILL.md completeness","score":90,"weight":0.16,"status":"pass","detail":"Metadata includes enough usage and workflow context"},{"id":"dependency_risk","label":"Dependency risk","score":90,"weight":0.14,"status":"pass","detail":"no major dependency risk hints in public metadata"},{"id":"installability","label":"Install availability","score":92,"weight":0.14,"status":"pass","detail":"npx skills add projectdiscovery/nuclei"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.06,"status":"pass","detail":"https://github.com/projectdiscovery/nuclei"},{"id":"review_status","label":"Review status","score":88,"weight":0.06,"status":"pass","detail":"AI review data available"}],"checks":[{"status":"pass","label":"GitHub adoption","detail":"29K GitHub stars"},{"status":"pass","label":"Recent maintenance","detail":"2d since push"},{"status":"pass","label":"License clarity","detail":"MIT"},{"status":"pass","label":"README/SKILL.md completeness","detail":"Metadata includes enough usage and workflow context"},{"status":"pass","label":"Dependency risk","detail":"no major dependency risk hints in public metadata"},{"status":"pass","label":"Install availability","detail":"npx skills add projectdiscovery/nuclei"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/projectdiscovery/nuclei"},{"status":"pass","label":"Review status","detail":"AI review data available"},{"status":"pass","label":"Ownership","detail":"Listing manually verified"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"}],"strengths":["Manually verified listing","AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Large GitHub adoption signal"],"warnings":[],"evidence":{"stars":"29K GitHub stars","lastPushed":"2d since push","license":"MIT","repository":"https://github.com/projectdiscovery/nuclei","install":"npx skills add projectdiscovery/nuclei","documentation":"Strong README/SKILL.md context"},"installReadiness":{"ready":true,"command":"npx skills add projectdiscovery/nuclei","policy":"agent_install_candidate","label":"Agent install candidate","notes":["Install path is available","Repository evidence is available","License is declared","2d since push"]},"agentCompatibility":["Go","Security","Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"low","label":"Low metadata risk","notes":["No major trust warnings detected from available metadata"]}},"audit":{"audit_score":98,"risk_level":"safe_to_try","risk_label":"Safe to try","warnings":[]},"safety":{"score":90,"level":"safe_to_install","label":"Safe to install with normal review","safety_tier":{"tier":"verified","label":"Verified","badge":"VERIFIED","summary":"Strong metadata, audit, install, and review signals. Suitable for agent shortlists after normal workspace review.","recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","auto_install_policy":"allow","reasons":["Verified listing","Safe-to-try audit","90/100 agent safety score"]},"auto_install_allowed":true,"human_review_required":false,"blocked":false,"audit_risk":"safe_to_try","permission_hints":[{"id":"network","label":"Network access","reason":"Skill likely fetches remote pages, APIs, repositories, or external services.","severity":"medium"},{"id":"filesystem","label":"Filesystem access","reason":"Skill may read or write project files, documents, generated artifacts, or local workspace state.","severity":"medium"}],"policy_warnings":[],"constraints_applied":{"max_risk":"medium","needs_install_command":true,"min_stars":0}},"safety_gate":{"tier":"verified","label":"Verified","badge":"VERIFIED","auto_install_policy":"allow","auto_install_allowed":true,"human_review_required":false,"blocked":false,"recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","reasons":["Verified listing","Safe-to-try audit","90/100 agent safety score"]},"decision":{"readiness_score":100,"readiness_label":"Production-ready","headline":"Primary pick for Security and compliance","role":"Primary pick","best_for":["Security and compliance workflows","Claude Code teams","teams that value GitHub adoption signals"],"risks":["No OpenAgentSkill engagement data yet"],"next_steps":["Install it in a sandbox agent and run one Security and compliance task end to end.","Compare output quality, latency, and failure behavior against at least one alternative.","Promote it into production only after reviewing repository permissions, license, and maintenance signals."]},"install_plan":{"target":"codex","label":"Codex install prompt","command":"npx skills add projectdiscovery/nuclei","value":"Install the \"Nuclei\" agent skill from https://github.com/projectdiscovery/nuclei. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","kind":"agent-prompt","steps":["Review Nuclei trust and audit signals before installing.","Send the install prompt to the target agent.","Install in a sandbox or low-risk workspace first.","Pin the repository source and re-check the audit before production use."],"targets":[{"id":"openagentskill-cli","label":"CLI","title":"OpenAgentSkill CLI","kind":"command","value":"npx skills add projectdiscovery/nuclei","description":"Use the registry command when your workflow supports the OpenAgentSkill installer.","copyLabel":"Copy command"},{"id":"codex","label":"Codex","title":"Codex install prompt","kind":"agent-prompt","value":"Install the \"Nuclei\" agent skill from https://github.com/projectdiscovery/nuclei. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","description":"Give Codex a repo-aware install prompt when the skill is not available through a local CLI.","copyLabel":"Copy prompt"},{"id":"claude-code","label":"Claude Code","title":"Claude Code skill prompt","kind":"agent-prompt","value":"Add \"Nuclei\" as a Claude Code skill from https://github.com/projectdiscovery/nuclei. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","description":"Use this prompt to ask Claude Code to add the skill and explain the local activation steps.","copyLabel":"Copy prompt"},{"id":"cursor","label":"Cursor","title":"Cursor rule prompt","kind":"agent-prompt","value":"Turn \"Nuclei\" from https://github.com/projectdiscovery/nuclei into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","description":"Use this when installing as Cursor project rules or reusable agent instructions.","copyLabel":"Copy prompt"}]},"use_cases":[{"slug":"security-compliance","title":"Security and compliance","url":"https://www.openagentskill.com/use-cases/security-compliance"},{"slug":"coding-agents","title":"Coding agents","url":"https://www.openagentskill.com/use-cases/coding-agents"},{"slug":"rag-knowledge","title":"RAG and knowledge","url":"https://www.openagentskill.com/use-cases/rag-knowledge"}],"urls":{"web":"https://www.openagentskill.com/skills/projectdiscovery-nuclei","api":"https://www.openagentskill.com/api/agent/skills/projectdiscovery-nuclei","install_api":"https://www.openagentskill.com/api/skills/projectdiscovery-nuclei/install","audit":"https://www.openagentskill.com/skills/projectdiscovery-nuclei/audit","badge":"https://www.openagentskill.com/api/badge/projectdiscovery-nuclei?metric=audit","repository":"https://github.com/projectdiscovery/nuclei"}},"alternatives":[{"rank":2,"match_score":243,"skill":{"slug":"zaproxy-zaproxy","name":"Zaproxy","description":"The ZAP by Checkmarx Core project","category":"security","repository":"https://github.com/zaproxy/zaproxy","github_repo":"zaproxy/zaproxy"},"recommendation_reasons":["Matches task terms: use, security, scan","Strong GitHub adoption: 15,281 stars","Quality score 72/100","Install handoff is available","Repository freshness signal is available"],"supply_profile":{"track":{"slug":"coding","label":"Coding and developer agents","shortLabel":"Coding","description":"Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills."},"scenario":{"label":"Coding agents","description":"I need a coding agent that can understand a repository, edit code, and review pull requests.","useCases":[{"slug":"coding-agents","title":"Coding agents"},{"slug":"rag-knowledge","title":"RAG and knowledge"},{"slug":"workflow-automation","title":"Workflow automation"}]},"applicableAgents":["Claude Code","CLI","Codex","Cursor","Java"],"install":{"ready":true,"command":"npx skills add zaproxy/zaproxy","primaryTarget":"CLI","targetCount":4},"githubQuality":{"stars":15281,"starsLabel":"15K","forks":2570,"license":"Apache-2.0","qualityScore":100,"trustScore":95,"auditScore":97},"maintenance":{"status":"fresh","label":"5d since push","daysSincePush":5,"lastPushedAt":"2026-06-11T09:00:42+00:00"},"risk":{"level":"safe_to_try","label":"Safe to try","requiresReview":false,"notes":["No major risk signals from available metadata"]},"coverageTags":["Coding","Coding agents","security","scanner","appsec","dast","hacktoberfest","opensource"]},"quality":{"score":100,"tier":"excellent","label":"Excellent","summary":"High-confidence pick with strong adoption and healthy maintenance signals.","signals":[{"label":"GitHub stars","value":"15K","tone":"positive"},{"label":"Freshness","value":"5d ago","tone":"positive"},{"label":"Install ready","value":"Yes","tone":"positive"},{"label":"License","value":"Apache-2.0","tone":"neutral"}],"warnings":[]},"trust":{"version":"trust-score-v2","score":95,"tier":"production","label":"Production candidate","summary":"Strong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency risk, and install availability.","recommendedAction":"Shortlist for production use, then run a normal repository and dependency review.","dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":100,"weight":0.16,"status":"pass","detail":"15K GitHub stars"},{"id":"maintenance","label":"Recent maintenance","score":100,"weight":0.18,"status":"pass","detail":"5d since push"},{"id":"license","label":"License clarity","score":86,"weight":0.1,"status":"pass","detail":"Apache-2.0"},{"id":"documentation","label":"README/SKILL.md completeness","score":74,"weight":0.16,"status":"info","detail":"Public metadata needs stronger README/SKILL.md context"},{"id":"dependency_risk","label":"Dependency risk","score":90,"weight":0.14,"status":"pass","detail":"no major dependency risk hints in public metadata"},{"id":"installability","label":"Install availability","score":92,"weight":0.14,"status":"pass","detail":"npx skills add zaproxy/zaproxy"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.06,"status":"pass","detail":"https://github.com/zaproxy/zaproxy"},{"id":"review_status","label":"Review status","score":88,"weight":0.06,"status":"pass","detail":"AI review data available"}],"checks":[{"status":"pass","label":"GitHub adoption","detail":"15K GitHub stars"},{"status":"pass","label":"Recent maintenance","detail":"5d since push"},{"status":"pass","label":"License clarity","detail":"Apache-2.0"},{"status":"info","label":"README/SKILL.md completeness","detail":"Public metadata needs stronger README/SKILL.md context"},{"status":"pass","label":"Dependency risk","detail":"no major dependency risk hints in public metadata"},{"status":"pass","label":"Install availability","detail":"npx skills add zaproxy/zaproxy"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/zaproxy/zaproxy"},{"status":"pass","label":"Review status","detail":"AI review data available"},{"status":"pass","label":"Ownership","detail":"Listing manually verified"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"}],"strengths":["Manually verified listing","AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Large GitHub adoption signal"],"warnings":[],"evidence":{"stars":"15K GitHub stars","lastPushed":"5d since push","license":"Apache-2.0","repository":"https://github.com/zaproxy/zaproxy","install":"npx skills add zaproxy/zaproxy","documentation":"Usable metadata, review docs"},"installReadiness":{"ready":true,"command":"npx skills add zaproxy/zaproxy","policy":"agent_install_candidate","label":"Agent install candidate","notes":["Install path is available","Repository evidence is available","License is declared","5d since push"]},"agentCompatibility":["Java","Security","Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"low","label":"Low metadata risk","notes":["No major trust warnings detected from available metadata"]}},"audit":{"audit_score":97,"risk_level":"safe_to_try","risk_label":"Safe to try","warnings":[]},"safety":{"score":89,"level":"safe_to_install","label":"Safe to install with normal review","safety_tier":{"tier":"verified","label":"Verified","badge":"VERIFIED","summary":"Strong metadata, audit, install, and review signals. Suitable for agent shortlists after normal workspace review.","recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","auto_install_policy":"allow","reasons":["Verified listing","Safe-to-try audit","89/100 agent safety score"]},"auto_install_allowed":true,"human_review_required":false,"blocked":false,"audit_risk":"safe_to_try","permission_hints":[{"id":"network","label":"Network access","reason":"Skill likely fetches remote pages, APIs, repositories, or external services.","severity":"medium"},{"id":"filesystem","label":"Filesystem access","reason":"Skill may read or write project files, documents, generated artifacts, or local workspace state.","severity":"medium"}],"policy_warnings":[],"constraints_applied":{"max_risk":"medium","needs_install_command":true,"min_stars":0}},"safety_gate":{"tier":"verified","label":"Verified","badge":"VERIFIED","auto_install_policy":"allow","auto_install_allowed":true,"human_review_required":false,"blocked":false,"recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","reasons":["Verified listing","Safe-to-try audit","89/100 agent safety score"]},"decision":{"readiness_score":100,"readiness_label":"Production-ready","headline":"Primary pick for Coding agents","role":"Primary pick","best_for":["Coding agents workflows","Claude Code teams","teams that value GitHub adoption signals"],"risks":["No OpenAgentSkill engagement data yet"],"next_steps":["Install it in a sandbox agent and run one Coding agents task end to end.","Compare output quality, latency, and failure behavior against at least one alternative.","Promote it into production only after reviewing repository permissions, license, and maintenance signals."]},"install_plan":{"target":"codex","label":"Codex install prompt","command":"npx skills add zaproxy/zaproxy","value":"Install the \"Zaproxy\" agent skill from https://github.com/zaproxy/zaproxy. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: The ZAP by Checkmarx Core project","kind":"agent-prompt","steps":["Review Zaproxy trust and audit signals before installing.","Send the install prompt to the target agent.","Install in a sandbox or low-risk workspace first.","Pin the repository source and re-check the audit before production use."],"targets":[{"id":"openagentskill-cli","label":"CLI","title":"OpenAgentSkill CLI","kind":"command","value":"npx skills add zaproxy/zaproxy","description":"Use the registry command when your workflow supports the OpenAgentSkill installer.","copyLabel":"Copy command"},{"id":"codex","label":"Codex","title":"Codex install prompt","kind":"agent-prompt","value":"Install the \"Zaproxy\" agent skill from https://github.com/zaproxy/zaproxy. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: The ZAP by Checkmarx Core project","description":"Give Codex a repo-aware install prompt when the skill is not available through a local CLI.","copyLabel":"Copy prompt"},{"id":"claude-code","label":"Claude Code","title":"Claude Code skill prompt","kind":"agent-prompt","value":"Add \"Zaproxy\" as a Claude Code skill from https://github.com/zaproxy/zaproxy. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: The ZAP by Checkmarx Core project","description":"Use this prompt to ask Claude Code to add the skill and explain the local activation steps.","copyLabel":"Copy prompt"},{"id":"cursor","label":"Cursor","title":"Cursor rule prompt","kind":"agent-prompt","value":"Turn \"Zaproxy\" from https://github.com/zaproxy/zaproxy into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: The ZAP by Checkmarx Core project","description":"Use this when installing as Cursor project rules or reusable agent instructions.","copyLabel":"Copy prompt"}]},"use_cases":[{"slug":"coding-agents","title":"Coding agents","url":"https://www.openagentskill.com/use-cases/coding-agents"},{"slug":"rag-knowledge","title":"RAG and knowledge","url":"https://www.openagentskill.com/use-cases/rag-knowledge"},{"slug":"workflow-automation","title":"Workflow automation","url":"https://www.openagentskill.com/use-cases/workflow-automation"}],"urls":{"web":"https://www.openagentskill.com/skills/zaproxy-zaproxy","api":"https://www.openagentskill.com/api/agent/skills/zaproxy-zaproxy","install_api":"https://www.openagentskill.com/api/skills/zaproxy-zaproxy/install","audit":"https://www.openagentskill.com/skills/zaproxy-zaproxy/audit","badge":"https://www.openagentskill.com/api/badge/zaproxy-zaproxy?metric=audit","repository":"https://github.com/zaproxy/zaproxy"}},{"rank":3,"match_score":242.4,"skill":{"slug":"future-architect-vuls","name":"Vuls","description":"Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices","category":"security","repository":"https://github.com/future-architect/vuls","github_repo":"future-architect/vuls"},"recommendation_reasons":["Matches task terms: use, security, scan","Strong GitHub adoption: 12,181 stars","Quality score 72/100","Install handoff is available","Repository freshness signal is available"],"supply_profile":{"track":{"slug":"coding","label":"Coding and developer agents","shortLabel":"Coding","description":"Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills."},"scenario":{"label":"Coding agents","description":"I need a coding agent that can understand a repository, edit code, and review pull requests.","useCases":[{"slug":"security-compliance","title":"Security and compliance"},{"slug":"coding-agents","title":"Coding agents"},{"slug":"rag-knowledge","title":"RAG and knowledge"}]},"applicableAgents":["Claude Code","CLI","Codex","Cursor","Go"],"install":{"ready":true,"command":"npx skills add future-architect/vuls","primaryTarget":"CLI","targetCount":4},"githubQuality":{"stars":12181,"starsLabel":"12K","forks":1235,"license":"GPL-3.0","qualityScore":100,"trustScore":97,"auditScore":98},"maintenance":{"status":"fresh","label":"4d since push","daysSincePush":4,"lastPushedAt":"2026-06-12T04:28:13+00:00"},"risk":{"level":"safe_to_try","label":"Safe to try","requiresReview":false,"notes":["No major risk signals from available metadata"]},"coverageTags":["Coding","Coding agents","security","scanner","administrator","cybersecurity","freebsd","go"]},"quality":{"score":100,"tier":"excellent","label":"Excellent","summary":"High-confidence pick with strong adoption and healthy maintenance signals.","signals":[{"label":"GitHub stars","value":"12K","tone":"positive"},{"label":"Freshness","value":"4d ago","tone":"positive"},{"label":"Install ready","value":"Yes","tone":"positive"},{"label":"License","value":"GPL-3.0","tone":"neutral"}],"warnings":[]},"trust":{"version":"trust-score-v2","score":97,"tier":"production","label":"Production candidate","summary":"Strong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency risk, and install availability.","recommendedAction":"Shortlist for production use, then run a normal repository and dependency review.","dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":100,"weight":0.16,"status":"pass","detail":"12K GitHub stars"},{"id":"maintenance","label":"Recent maintenance","score":100,"weight":0.18,"status":"pass","detail":"4d since push"},{"id":"license","label":"License clarity","score":86,"weight":0.1,"status":"pass","detail":"GPL-3.0"},{"id":"documentation","label":"README/SKILL.md completeness","score":90,"weight":0.16,"status":"pass","detail":"Metadata includes enough usage and workflow context"},{"id":"dependency_risk","label":"Dependency risk","score":80,"weight":0.14,"status":"info","detail":"external package install surface"},{"id":"installability","label":"Install availability","score":92,"weight":0.14,"status":"pass","detail":"npx skills add future-architect/vuls"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.06,"status":"pass","detail":"https://github.com/future-architect/vuls"},{"id":"review_status","label":"Review status","score":88,"weight":0.06,"status":"pass","detail":"AI review data available"}],"checks":[{"status":"pass","label":"GitHub adoption","detail":"12K GitHub stars"},{"status":"pass","label":"Recent maintenance","detail":"4d since push"},{"status":"pass","label":"License clarity","detail":"GPL-3.0"},{"status":"pass","label":"README/SKILL.md completeness","detail":"Metadata includes enough usage and workflow context"},{"status":"info","label":"Dependency risk","detail":"external package install surface"},{"status":"pass","label":"Install availability","detail":"npx skills add future-architect/vuls"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/future-architect/vuls"},{"status":"pass","label":"Review status","detail":"AI review data available"},{"status":"pass","label":"Ownership","detail":"Listing manually verified"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"}],"strengths":["Manually verified listing","AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Large GitHub adoption signal"],"warnings":[],"evidence":{"stars":"12K GitHub stars","lastPushed":"4d since push","license":"GPL-3.0","repository":"https://github.com/future-architect/vuls","install":"npx skills add future-architect/vuls","documentation":"Strong README/SKILL.md context"},"installReadiness":{"ready":true,"command":"npx skills add future-architect/vuls","policy":"agent_install_candidate","label":"Agent install candidate","notes":["Install path is available","Repository evidence is available","License is declared","4d since push"]},"agentCompatibility":["Go","Security","Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"low","label":"Low metadata risk","notes":["No major trust warnings detected from available metadata"]}},"audit":{"audit_score":98,"risk_level":"safe_to_try","risk_label":"Safe to try","warnings":[]},"safety":{"score":90,"level":"safe_to_install","label":"Safe to install with normal review","safety_tier":{"tier":"verified","label":"Verified","badge":"VERIFIED","summary":"Strong metadata, audit, install, and review signals. Suitable for agent shortlists after normal workspace review.","recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","auto_install_policy":"allow","reasons":["Verified listing","Safe-to-try audit","90/100 agent safety score"]},"auto_install_allowed":true,"human_review_required":false,"blocked":false,"audit_risk":"safe_to_try","permission_hints":[{"id":"network","label":"Network access","reason":"Skill likely fetches remote pages, APIs, repositories, or external services.","severity":"medium"},{"id":"filesystem","label":"Filesystem access","reason":"Skill may read or write project files, documents, generated artifacts, or local workspace state.","severity":"medium"}],"policy_warnings":[],"constraints_applied":{"max_risk":"medium","needs_install_command":true,"min_stars":0}},"safety_gate":{"tier":"verified","label":"Verified","badge":"VERIFIED","auto_install_policy":"allow","auto_install_allowed":true,"human_review_required":false,"blocked":false,"recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","reasons":["Verified listing","Safe-to-try audit","90/100 agent safety score"]},"decision":{"readiness_score":100,"readiness_label":"Production-ready","headline":"Primary pick for Security and compliance","role":"Primary pick","best_for":["Security and compliance workflows","Claude Code teams","teams that value GitHub adoption signals"],"risks":["No OpenAgentSkill engagement data yet"],"next_steps":["Install it in a sandbox agent and run one Security and compliance task end to end.","Compare output quality, latency, and failure behavior against at least one alternative.","Promote it into production only after reviewing repository permissions, license, and maintenance signals."]},"install_plan":{"target":"codex","label":"Codex install prompt","command":"npx skills add future-architect/vuls","value":"Install the \"Vuls\" agent skill from https://github.com/future-architect/vuls. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices","kind":"agent-prompt","steps":["Review Vuls trust and audit signals before installing.","Send the install prompt to the target agent.","Install in a sandbox or low-risk workspace first.","Pin the repository source and re-check the audit before production use."],"targets":[{"id":"openagentskill-cli","label":"CLI","title":"OpenAgentSkill CLI","kind":"command","value":"npx skills add future-architect/vuls","description":"Use the registry command when your workflow supports the OpenAgentSkill installer.","copyLabel":"Copy command"},{"id":"codex","label":"Codex","title":"Codex install prompt","kind":"agent-prompt","value":"Install the \"Vuls\" agent skill from https://github.com/future-architect/vuls. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices","description":"Give Codex a repo-aware install prompt when the skill is not available through a local CLI.","copyLabel":"Copy prompt"},{"id":"claude-code","label":"Claude Code","title":"Claude Code skill prompt","kind":"agent-prompt","value":"Add \"Vuls\" as a Claude Code skill from https://github.com/future-architect/vuls. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices","description":"Use this prompt to ask Claude Code to add the skill and explain the local activation steps.","copyLabel":"Copy prompt"},{"id":"cursor","label":"Cursor","title":"Cursor rule prompt","kind":"agent-prompt","value":"Turn \"Vuls\" from https://github.com/future-architect/vuls into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices","description":"Use this when installing as Cursor project rules or reusable agent instructions.","copyLabel":"Copy prompt"}]},"use_cases":[{"slug":"security-compliance","title":"Security and compliance","url":"https://www.openagentskill.com/use-cases/security-compliance"},{"slug":"coding-agents","title":"Coding agents","url":"https://www.openagentskill.com/use-cases/coding-agents"},{"slug":"rag-knowledge","title":"RAG and knowledge","url":"https://www.openagentskill.com/use-cases/rag-knowledge"}],"urls":{"web":"https://www.openagentskill.com/skills/future-architect-vuls","api":"https://www.openagentskill.com/api/agent/skills/future-architect-vuls","install_api":"https://www.openagentskill.com/api/skills/future-architect-vuls/install","audit":"https://www.openagentskill.com/skills/future-architect-vuls/audit","badge":"https://www.openagentskill.com/api/badge/future-architect-vuls?metric=audit","repository":"https://github.com/future-architect/vuls"}},{"rank":4,"match_score":236,"skill":{"slug":"mobsf-mobile-security-framework-mobsf","name":"Mobile Security Framework MobSF","description":"Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.","category":"development","repository":"https://github.com/MobSF/Mobile-Security-Framework-MobSF","github_repo":"MobSF/Mobile-Security-Framework-MobSF"},"recommendation_reasons":["Matches task terms: use, security, code","Strong GitHub adoption: 21,211 stars","Quality score 73/100","Install handoff is available","Repository freshness signal is available"],"supply_profile":{"track":{"slug":"coding","label":"Coding and developer agents","shortLabel":"Coding","description":"Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills."},"scenario":{"label":"Coding agents","description":"I need a coding agent that can understand a repository, edit code, and review pull requests.","useCases":[{"slug":"coding-agents","title":"Coding agents"},{"slug":"browser-automation","title":"Browser automation"},{"slug":"rag-knowledge","title":"RAG and knowledge"}]},"applicableAgents":["Claude Code","CLI","Codex","Cursor","JavaScript"],"install":{"ready":true,"command":"npx skills add MobSF/Mobile-Security-Framework-MobSF","primaryTarget":"CLI","targetCount":4},"githubQuality":{"stars":21211,"starsLabel":"21K","forks":3697,"license":"GPL-3.0","qualityScore":100,"trustScore":97,"auditScore":98},"maintenance":{"status":"fresh","label":"27d since push","daysSincePush":27,"lastPushedAt":"2026-05-19T21:45:53+00:00"},"risk":{"level":"safe_to_try","label":"Safe to try","requiresReview":false,"notes":["No major risk signals from available metadata"]},"coverageTags":["Coding","Coding agents","development","static-analysis","code-quality","android-security","api-testing","apk"]},"quality":{"score":100,"tier":"excellent","label":"Excellent","summary":"High-confidence pick with strong adoption and healthy maintenance signals.","signals":[{"label":"GitHub stars","value":"21K","tone":"positive"},{"label":"Freshness","value":"27d ago","tone":"positive"},{"label":"Install ready","value":"Yes","tone":"positive"},{"label":"License","value":"GPL-3.0","tone":"neutral"}],"warnings":[]},"trust":{"version":"trust-score-v2","score":97,"tier":"production","label":"Production candidate","summary":"Strong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency risk, and install availability.","recommendedAction":"Shortlist for production use, then run a normal repository and dependency review.","dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":100,"weight":0.16,"status":"pass","detail":"21K GitHub stars"},{"id":"maintenance","label":"Recent maintenance","score":100,"weight":0.18,"status":"pass","detail":"27d since push"},{"id":"license","label":"License clarity","score":86,"weight":0.1,"status":"pass","detail":"GPL-3.0"},{"id":"documentation","label":"README/SKILL.md completeness","score":90,"weight":0.16,"status":"pass","detail":"Metadata includes enough usage and workflow context"},{"id":"dependency_risk","label":"Dependency risk","score":82,"weight":0.14,"status":"pass","detail":"network or browser surface"},{"id":"installability","label":"Install availability","score":92,"weight":0.14,"status":"pass","detail":"npx skills add MobSF/Mobile-Security-Framework-MobSF"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.06,"status":"pass","detail":"https://github.com/MobSF/Mobile-Security-Framework-MobSF"},{"id":"review_status","label":"Review status","score":88,"weight":0.06,"status":"pass","detail":"AI review data available"}],"checks":[{"status":"pass","label":"GitHub adoption","detail":"21K GitHub stars"},{"status":"pass","label":"Recent maintenance","detail":"27d since push"},{"status":"pass","label":"License clarity","detail":"GPL-3.0"},{"status":"pass","label":"README/SKILL.md completeness","detail":"Metadata includes enough usage and workflow context"},{"status":"pass","label":"Dependency risk","detail":"network or browser surface"},{"status":"pass","label":"Install availability","detail":"npx skills add MobSF/Mobile-Security-Framework-MobSF"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/MobSF/Mobile-Security-Framework-MobSF"},{"status":"pass","label":"Review status","detail":"AI review data available"},{"status":"pass","label":"Ownership","detail":"Listing manually verified"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"}],"strengths":["Manually verified listing","AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Large GitHub adoption signal"],"warnings":[],"evidence":{"stars":"21K GitHub stars","lastPushed":"27d since push","license":"GPL-3.0","repository":"https://github.com/MobSF/Mobile-Security-Framework-MobSF","install":"npx skills add MobSF/Mobile-Security-Framework-MobSF","documentation":"Strong README/SKILL.md context"},"installReadiness":{"ready":true,"command":"npx skills add MobSF/Mobile-Security-Framework-MobSF","policy":"agent_install_candidate","label":"Agent install candidate","notes":["Install path is available","Repository evidence is available","License is declared","27d since push"]},"agentCompatibility":["JavaScript","Static Analysis","Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"low","label":"Low metadata risk","notes":["No major trust warnings detected from available metadata"]}},"audit":{"audit_score":98,"risk_level":"safe_to_try","risk_label":"Safe to try","warnings":[]},"safety":{"score":90,"level":"safe_to_install","label":"Safe to install with normal review","safety_tier":{"tier":"verified","label":"Verified","badge":"VERIFIED","summary":"Strong metadata, audit, install, and review signals. Suitable for agent shortlists after normal workspace review.","recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","auto_install_policy":"allow","reasons":["Verified listing","Safe-to-try audit","90/100 agent safety score"]},"auto_install_allowed":true,"human_review_required":false,"blocked":false,"audit_risk":"safe_to_try","permission_hints":[{"id":"network","label":"Network access","reason":"Skill likely fetches remote pages, APIs, repositories, or external services.","severity":"medium"},{"id":"filesystem","label":"Filesystem access","reason":"Skill may read or write project files, documents, generated artifacts, or local workspace state.","severity":"medium"}],"policy_warnings":[],"constraints_applied":{"max_risk":"medium","needs_install_command":true,"min_stars":0}},"safety_gate":{"tier":"verified","label":"Verified","badge":"VERIFIED","auto_install_policy":"allow","auto_install_allowed":true,"human_review_required":false,"blocked":false,"recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","reasons":["Verified listing","Safe-to-try audit","90/100 agent safety score"]},"decision":{"readiness_score":100,"readiness_label":"Production-ready","headline":"Primary pick for Coding agents","role":"Primary pick","best_for":["Coding agents workflows","Claude Code teams","teams that value GitHub adoption signals"],"risks":["No OpenAgentSkill engagement data yet"],"next_steps":["Install it in a sandbox agent and run one Coding agents task end to end.","Compare output quality, latency, and failure behavior against at least one alternative.","Promote it into production only after reviewing repository permissions, license, and maintenance signals."]},"install_plan":{"target":"codex","label":"Codex install prompt","command":"npx skills add MobSF/Mobile-Security-Framework-MobSF","value":"Install the \"Mobile Security Framework MobSF\" agent skill from https://github.com/MobSF/Mobile-Security-Framework-MobSF. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.","kind":"agent-prompt","steps":["Review Mobile Security Framework MobSF trust and audit signals before installing.","Send the install prompt to the target agent.","Install in a sandbox or low-risk workspace first.","Pin the repository source and re-check the audit before production use."],"targets":[{"id":"openagentskill-cli","label":"CLI","title":"OpenAgentSkill CLI","kind":"command","value":"npx skills add MobSF/Mobile-Security-Framework-MobSF","description":"Use the registry command when your workflow supports the OpenAgentSkill installer.","copyLabel":"Copy command"},{"id":"codex","label":"Codex","title":"Codex install prompt","kind":"agent-prompt","value":"Install the \"Mobile Security Framework MobSF\" agent skill from https://github.com/MobSF/Mobile-Security-Framework-MobSF. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.","description":"Give Codex a repo-aware install prompt when the skill is not available through a local CLI.","copyLabel":"Copy prompt"},{"id":"claude-code","label":"Claude Code","title":"Claude Code skill prompt","kind":"agent-prompt","value":"Add \"Mobile Security Framework MobSF\" as a Claude Code skill from https://github.com/MobSF/Mobile-Security-Framework-MobSF. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.","description":"Use this prompt to ask Claude Code to add the skill and explain the local activation steps.","copyLabel":"Copy prompt"},{"id":"cursor","label":"Cursor","title":"Cursor rule prompt","kind":"agent-prompt","value":"Turn \"Mobile Security Framework MobSF\" from https://github.com/MobSF/Mobile-Security-Framework-MobSF into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.","description":"Use this when installing as Cursor project rules or reusable agent instructions.","copyLabel":"Copy prompt"}]},"use_cases":[{"slug":"coding-agents","title":"Coding agents","url":"https://www.openagentskill.com/use-cases/coding-agents"},{"slug":"browser-automation","title":"Browser automation","url":"https://www.openagentskill.com/use-cases/browser-automation"},{"slug":"rag-knowledge","title":"RAG and knowledge","url":"https://www.openagentskill.com/use-cases/rag-knowledge"}],"urls":{"web":"https://www.openagentskill.com/skills/mobsf-mobile-security-framework-mobsf","api":"https://www.openagentskill.com/api/agent/skills/mobsf-mobile-security-framework-mobsf","install_api":"https://www.openagentskill.com/api/skills/mobsf-mobile-security-framework-mobsf/install","audit":"https://www.openagentskill.com/skills/mobsf-mobile-security-framework-mobsf/audit","badge":"https://www.openagentskill.com/api/badge/mobsf-mobile-security-framework-mobsf?metric=audit","repository":"https://github.com/MobSF/Mobile-Security-Framework-MobSF"}},{"rank":5,"match_score":232.2,"skill":{"slug":"hesreallyhim-awesome-claude-code","name":"Awesome Claude Code","description":"A curated list of awesome skills, hooks, slash-commands, agent orchestrators, applications, and plugins for Claude Code by Anthropic","category":"development","repository":"https://github.com/hesreallyhim/awesome-claude-code","github_repo":"hesreallyhim/awesome-claude-code"},"recommendation_reasons":["Matches task terms: use, security, code","Strong GitHub adoption: 46,427 stars","Quality score 73/100","Install handoff is available","Repository freshness signal is available"],"supply_profile":{"track":{"slug":"coding","label":"Coding and developer agents","shortLabel":"Coding","description":"Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills."},"scenario":{"label":"Coding agents","description":"I need a coding agent that can understand a repository, edit code, and review pull requests.","useCases":[{"slug":"coding-agents","title":"Coding agents"},{"slug":"rag-knowledge","title":"RAG and knowledge"},{"slug":"workflow-automation","title":"Workflow automation"}]},"applicableAgents":["Claude Code","CLI","Codex","Cursor","Python"],"install":{"ready":true,"command":"npx skills add hesreallyhim/awesome-claude-code","primaryTarget":"CLI","targetCount":4},"githubQuality":{"stars":46427,"starsLabel":"46K","forks":4046,"license":"Unknown","qualityScore":100,"trustScore":91,"auditScore":93},"maintenance":{"status":"active","label":"2mo since push","daysSincePush":49,"lastPushedAt":"2026-04-27T14:40:18+00:00"},"risk":{"level":"safe_to_try","label":"Safe to try","requiresReview":true,"notes":["License is unclear","License clarity: Unknown"]},"coverageTags":["Coding","Coding agents","development","claude-code","agent-skills","developer-tools","agentic-code","agentic-coding"]},"quality":{"score":100,"tier":"excellent","label":"Excellent","summary":"High-confidence pick with strong adoption and healthy maintenance signals.","signals":[{"label":"GitHub stars","value":"46K","tone":"positive"},{"label":"Freshness","value":"2mo ago","tone":"positive"},{"label":"Install ready","value":"Yes","tone":"positive"},{"label":"License","value":"Unknown","tone":"neutral"}],"warnings":[]},"trust":{"version":"trust-score-v2","score":91,"tier":"production","label":"Production candidate","summary":"Strong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency risk, and install availability.","recommendedAction":"Shortlist for production use, then run a normal repository and dependency review.","dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":100,"weight":0.16,"status":"pass","detail":"46K GitHub stars"},{"id":"maintenance","label":"Recent maintenance","score":88,"weight":0.18,"status":"pass","detail":"2mo since push"},{"id":"license","label":"License clarity","score":42,"weight":0.1,"status":"warn","detail":"Unknown"},{"id":"documentation","label":"README/SKILL.md completeness","score":90,"weight":0.16,"status":"pass","detail":"Metadata includes enough usage and workflow context"},{"id":"dependency_risk","label":"Dependency risk","score":90,"weight":0.14,"status":"pass","detail":"no major dependency risk hints in public metadata"},{"id":"installability","label":"Install availability","score":92,"weight":0.14,"status":"pass","detail":"npx skills add hesreallyhim/awesome-claude-code"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.06,"status":"pass","detail":"https://github.com/hesreallyhim/awesome-claude-code"},{"id":"review_status","label":"Review status","score":88,"weight":0.06,"status":"pass","detail":"AI review data available"}],"checks":[{"status":"pass","label":"GitHub adoption","detail":"46K GitHub stars"},{"status":"pass","label":"Recent maintenance","detail":"2mo since push"},{"status":"warn","label":"License clarity","detail":"Unknown"},{"status":"pass","label":"README/SKILL.md completeness","detail":"Metadata includes enough usage and workflow context"},{"status":"pass","label":"Dependency risk","detail":"no major dependency risk hints in public metadata"},{"status":"pass","label":"Install availability","detail":"npx skills add hesreallyhim/awesome-claude-code"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/hesreallyhim/awesome-claude-code"},{"status":"pass","label":"Review status","detail":"AI review data available"},{"status":"pass","label":"Ownership","detail":"Listing manually verified"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"}],"strengths":["Manually verified listing","AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Large GitHub adoption signal"],"warnings":["License is unclear","License clarity: Unknown"],"evidence":{"stars":"46K GitHub stars","lastPushed":"2mo since push","license":"Unknown","repository":"https://github.com/hesreallyhim/awesome-claude-code","install":"npx skills add hesreallyhim/awesome-claude-code","documentation":"Strong README/SKILL.md context"},"installReadiness":{"ready":true,"command":"npx skills add hesreallyhim/awesome-claude-code","policy":"human_review_before_install","label":"Human review before install","notes":["Install path is available","Repository evidence is available","License is unclear","2mo since push"]},"agentCompatibility":["Python","Claude Code","Codex","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"medium","label":"Review before production","notes":["License is unclear","License clarity: Unknown"]}},"audit":{"audit_score":93,"risk_level":"safe_to_try","risk_label":"Safe to try","warnings":["License is unclear","License clarity: Unknown"]},"safety":{"score":77,"level":"review_before_install","label":"Review before install","safety_tier":{"tier":"reviewed","label":"Reviewed","badge":"REVIEWED","summary":"Good audit and safety signals with no high-risk permission hints in public metadata.","recommended_action":"Review the audit page, then allow agent install in a sandboxed workflow.","auto_install_policy":"review","reasons":["Safe-to-try audit","77/100 agent safety score"]},"auto_install_allowed":false,"human_review_required":true,"blocked":false,"audit_risk":"safe_to_try","permission_hints":[{"id":"network","label":"Network access","reason":"Skill likely fetches remote pages, APIs, repositories, or external services.","severity":"medium"},{"id":"filesystem","label":"Filesystem access","reason":"Skill may read or write project files, documents, generated artifacts, or local workspace state.","severity":"medium"}],"policy_warnings":["License is unclear"],"constraints_applied":{"max_risk":"medium","needs_install_command":true,"min_stars":0}},"safety_gate":{"tier":"reviewed","label":"Reviewed","badge":"REVIEWED","auto_install_policy":"review","auto_install_allowed":false,"human_review_required":true,"blocked":false,"recommended_action":"Review the audit page, then allow agent install in a sandboxed workflow.","reasons":["Safe-to-try audit","77/100 agent safety score"]},"decision":{"readiness_score":100,"readiness_label":"Production-ready","headline":"Primary pick for Coding agents","role":"Primary pick","best_for":["Coding agents workflows","Claude Code teams","teams that value GitHub adoption signals"],"risks":["No OpenAgentSkill engagement data yet"],"next_steps":["Install it in a sandbox agent and run one Coding agents task end to end.","Compare output quality, latency, and failure behavior against at least one alternative.","Promote it into production only after reviewing repository permissions, license, and maintenance signals."]},"install_plan":{"target":"codex","label":"Codex install prompt","command":"npx skills add hesreallyhim/awesome-claude-code","value":"Install the \"Awesome Claude Code\" agent skill from https://github.com/hesreallyhim/awesome-claude-code. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: A curated list of awesome skills, hooks, slash-commands, agent orchestrators, applications, and plugins for Claude Code by Anthropic","kind":"agent-prompt","steps":["Review Awesome Claude Code trust and audit signals before installing.","Send the install prompt to the target agent.","Install in a sandbox or low-risk workspace first.","Pin the repository source and re-check the audit before production use."],"targets":[{"id":"openagentskill-cli","label":"CLI","title":"OpenAgentSkill CLI","kind":"command","value":"npx skills add hesreallyhim/awesome-claude-code","description":"Use the registry command when your workflow supports the OpenAgentSkill installer.","copyLabel":"Copy command"},{"id":"codex","label":"Codex","title":"Codex install prompt","kind":"agent-prompt","value":"Install the \"Awesome Claude Code\" agent skill from https://github.com/hesreallyhim/awesome-claude-code. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: A curated list of awesome skills, hooks, slash-commands, agent orchestrators, applications, and plugins for Claude Code by Anthropic","description":"Give Codex a repo-aware install prompt when the skill is not available through a local CLI.","copyLabel":"Copy prompt"},{"id":"claude-code","label":"Claude Code","title":"Claude Code skill prompt","kind":"agent-prompt","value":"Add \"Awesome Claude Code\" as a Claude Code skill from https://github.com/hesreallyhim/awesome-claude-code. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: A curated list of awesome skills, hooks, slash-commands, agent orchestrators, applications, and plugins for Claude Code by Anthropic","description":"Use this prompt to ask Claude Code to add the skill and explain the local activation steps.","copyLabel":"Copy prompt"},{"id":"cursor","label":"Cursor","title":"Cursor rule prompt","kind":"agent-prompt","value":"Turn \"Awesome Claude Code\" from https://github.com/hesreallyhim/awesome-claude-code into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: A curated list of awesome skills, hooks, slash-commands, agent orchestrators, applications, and plugins for Claude Code by Anthropic","description":"Use this when installing as Cursor project rules or reusable agent instructions.","copyLabel":"Copy prompt"}]},"use_cases":[{"slug":"coding-agents","title":"Coding agents","url":"https://www.openagentskill.com/use-cases/coding-agents"},{"slug":"rag-knowledge","title":"RAG and knowledge","url":"https://www.openagentskill.com/use-cases/rag-knowledge"},{"slug":"workflow-automation","title":"Workflow automation","url":"https://www.openagentskill.com/use-cases/workflow-automation"}],"urls":{"web":"https://www.openagentskill.com/skills/hesreallyhim-awesome-claude-code","api":"https://www.openagentskill.com/api/agent/skills/hesreallyhim-awesome-claude-code","install_api":"https://www.openagentskill.com/api/skills/hesreallyhim-awesome-claude-code/install","audit":"https://www.openagentskill.com/skills/hesreallyhim-awesome-claude-code/audit","badge":"https://www.openagentskill.com/api/badge/hesreallyhim-awesome-claude-code?metric=audit","repository":"https://github.com/hesreallyhim/awesome-claude-code"}}],"blocked_candidates":[],"agent_workflow":{"mode":"resolve_review_install","recommended_action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task.","selected_skill":{"slug":"projectdiscovery-nuclei","name":"Nuclei","url":"https://www.openagentskill.com/skills/projectdiscovery-nuclei","repository":"https://github.com/projectdiscovery/nuclei"},"install":{"target":"codex","label":"Codex install prompt","kind":"agent-prompt","command":"npx skills add projectdiscovery/nuclei","value":"Install the \"Nuclei\" agent skill from https://github.com/projectdiscovery/nuclei. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.","api":"https://www.openagentskill.com/api/skills/projectdiscovery-nuclei/install"},"copy_paste_prompt":"Task: Use Security Code Scan\nUse Nuclei from https://www.openagentskill.com/skills/projectdiscovery-nuclei.\nReview the audit first: https://www.openagentskill.com/skills/projectdiscovery-nuclei/audit\nInstall handoff: https://www.openagentskill.com/api/skills/projectdiscovery-nuclei/install\nInstall command: npx skills add projectdiscovery/nuclei\nIf audit or policy warnings look unsafe for this workspace, use one of the alternatives instead.","api_sequence":[{"step":1,"label":"Resolve task","method":"GET","url":"https://www.openagentskill.com/api/agent/resolve?task=Use%20Security%20Code%20Scan&agent=codex&max_risk=medium"},{"step":2,"label":"Fetch selected skill profile","method":"GET","url":"https://www.openagentskill.com/api/agent/skills/projectdiscovery-nuclei"},{"step":3,"label":"Fetch install handoff","method":"GET","url":"https://www.openagentskill.com/api/skills/projectdiscovery-nuclei/install"},{"step":4,"label":"Review audit","method":"GET","url":"https://www.openagentskill.com/skills/projectdiscovery-nuclei/audit"}],"review_checklist":["Safety tier: Verified","Safety score: 90/100 Safe to install with normal review","Audit score: 98/100 Safe to try","Trust score: 98/100 Production candidate","Readiness: 100/100 Production-ready"],"fallback_strategy":[{"slug":"zaproxy-zaproxy","name":"Zaproxy","reason":"Matches task terms: use, security, scan","url":"https://www.openagentskill.com/skills/zaproxy-zaproxy","install_api":"https://www.openagentskill.com/api/skills/zaproxy-zaproxy/install"},{"slug":"future-architect-vuls","name":"Vuls","reason":"Matches task terms: use, security, scan","url":"https://www.openagentskill.com/skills/future-architect-vuls","install_api":"https://www.openagentskill.com/api/skills/future-architect-vuls/install"},{"slug":"mobsf-mobile-security-framework-mobsf","name":"Mobile Security Framework MobSF","reason":"Matches task terms: use, security, code","url":"https://www.openagentskill.com/skills/mobsf-mobile-security-framework-mobsf","install_api":"https://www.openagentskill.com/api/skills/mobsf-mobile-security-framework-mobsf/install"}],"expected_agent_output":{"selected_skill":"slug and name","install_command":"command or agent prompt used","risk_summary":"audit, trust, and policy notes","next_step":"what the agent will do after install"}},"policy_decision":{"status":"approved_for_agent_install","summary":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task."},"agent_decision":{"input_task":"Use Security Code Scan","recommended_skill":{"slug":"projectdiscovery-nuclei","name":"Nuclei","url":"https://www.openagentskill.com/skills/projectdiscovery-nuclei","audit_url":"https://www.openagentskill.com/skills/projectdiscovery-nuclei/audit","repository":"https://github.com/projectdiscovery/nuclei","safety_tier":"Verified","auto_install_policy":"allow"},"alternative_skills":[{"slug":"zaproxy-zaproxy","name":"Zaproxy","url":"https://www.openagentskill.com/skills/zaproxy-zaproxy","install_command":"npx skills add zaproxy/zaproxy","why_consider":"Matches task terms: use, security, scan","risk":{"level":"Safe to try","safety_tier":"Verified","safety":"89/100 Safe to install with normal review","trust":"95/100 Production candidate","notes":[]}},{"slug":"future-architect-vuls","name":"Vuls","url":"https://www.openagentskill.com/skills/future-architect-vuls","install_command":"npx skills add future-architect/vuls","why_consider":"Matches task terms: use, security, scan","risk":{"level":"Safe to try","safety_tier":"Verified","safety":"90/100 Safe to install with normal review","trust":"97/100 Production candidate","notes":[]}},{"slug":"mobsf-mobile-security-framework-mobsf","name":"Mobile Security Framework MobSF","url":"https://www.openagentskill.com/skills/mobsf-mobile-security-framework-mobsf","install_command":"npx skills add MobSF/Mobile-Security-Framework-MobSF","why_consider":"Matches task terms: use, security, code","risk":{"level":"Safe to try","safety_tier":"Verified","safety":"90/100 Safe to install with normal review","trust":"97/100 Production candidate","notes":[]}}],"install_command":"npx skills add projectdiscovery/nuclei","install_target":"Codex install prompt","why_recommended":["Matches task terms: use, security, scan","Strong GitHub adoption: 29,159 stars","Quality score 74/100","Install handoff is available","Repository freshness signal is available","Primary pick for Security and compliance"],"risk_summary":{"level":"Safe to try","safety_tier":"Verified","safety":"90/100 Safe to install with normal review","trust":"98/100 Production candidate","notes":[]},"safety_gate":{"tier":"verified","label":"Verified","auto_install_policy":"allow","action":"Allow agent install in a sandbox or low-risk workspace, then promote after one successful narrow task."},"agent_next_steps":["Read the audit URL before installing.","Install in a sandbox or low-risk workspace first.","Use install command: npx skills add projectdiscovery/nuclei","After installation, run one narrow task and report output, warnings, and files touched."]},"benchmark":{"endpoint":"https://www.openagentskill.com/api/agent/evals","note":"Use the evals endpoint to regression-test recommendation quality before changing ranking logic."},"meta":{"endpoint":"/api/agent/resolve","api_version":"2.0","generated_at":"2026-06-16T13:25:10.804Z","total_skills_searched":735,"total_candidates":15,"candidate_pool":{"sort":"quality","size":735,"note":"Resolver searches the highest-quality candidate pool for low-latency agent use. Browse /skills for the full public index."},"contract":{"best_skill":"recommendation.best_skill","install":"recommendation.install","why":"recommendation.why_recommended","risk":"recommendation.risk","alternatives":"recommendation.alternatives"}}}