Review risk

Best legal and compliance skills for AI agents

Browse skills for contract analysis, policy review, privacy checks, compliance workflows, governance notes, and document risk review.

Builders choosing skills for review contracts and summarize policy risk. Ranked from the OpenAgentSkill index using quality, trust, freshness, adoption, and install readiness.

30
Ranked
1.9M
Stars
94
Top trust

Workflow

Review contracts

Workflow

Summarize policy risk

Workflow

Check privacy requirements

#1

Kyverno

22 fitTrust 94Excellent 100

Unified Policy as Code

Excellent quality, 7.8K stars, and a 22 use-case fit score.

7.8K starsJun 8, 2026 pushProduction candidateGoCompliance
$ npx skills add kyverno/kyverno
#2

Agent Governance Toolkit

22 fitTrust 96Excellent 100

AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.

Excellent quality, 4.1K stars, and a 22 use-case fit score.

4.1K starsJun 8, 2026 pushProduction candidatePythonAI Agents
$ npx skills add microsoft/agent-governance-toolkit
#3

Bearer

21 fitTrust 91Excellent 100

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Excellent quality, 2.7K stars, and a 21 use-case fit score.

2.7K starsJun 15, 2026 pushProduction candidateGoSAST
$ npx skills add Bearer/bearer
#4

Lynis

20 fitTrust 95Excellent 100

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

Excellent quality, 16K stars, and a 20 use-case fit score.

16K starsMay 11, 2026 pushProduction candidateShellSecurity
$ npx skills add CISOfy/lynis
#5

Opa

20 fitTrust 95Excellent 100

Open Policy Agent (OPA) is an open source, general-purpose policy engine.

Excellent quality, 12K stars, and a 20 use-case fit score.

12K starsJun 12, 2026 pushProduction candidateGoCompliance
$ npx skills add open-policy-agent/opa
#6

Cloud Custodian

19 fitTrust 97Excellent 100

Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources

Excellent quality, 6.0K stars, and a 19 use-case fit score.

6.0K starsJun 10, 2026 pushProduction candidatePythonCompliance
$ npx skills add cloud-custodian/cloud-custodian
#7

Siyuan

18 fitTrust 98Excellent 100

A privacy-first, self-hosted, fully open source personal knowledge management software, written in typescript and golang.

Excellent quality, 44K stars, and a 18 use-case fit score.

44K starsJun 15, 2026 pushProduction candidateTypeScriptAI Agents
$ npx skills add siyuan-note/siyuan
#8

Logseq

18 fitTrust 97Excellent 100

A privacy-first, open-source platform for knowledge management and collaboration. Download link: http://github.com/logseq/logseq/releases. roadmap: https://logseq.io/p/NX4mc_ggEV

Excellent quality, 43K stars, and a 18 use-case fit score.

43K starsJun 14, 2026 pushProduction candidateClojureKnowledge Graph
$ npx skills add logseq/logseq
#9

Mlflow

18 fitTrust 98Excellent 100

The open source AI engineering platform for agents, LLMs, and ML models. MLflow enables teams of all sizes to debug, evaluate, monitor, and optimize production-quality AI applications while controlling costs and managing access to models and data.

Excellent quality, 27K stars, and a 18 use-case fit score.

27K starsJun 14, 2026 pushProduction candidatePythonLLMOps
$ npx skills add mlflow/mlflow
#10

Goaccess

17 fitTrust 94Excellent 100

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.

Excellent quality, 21K stars, and a 17 use-case fit score.

21K starsJun 11, 2026 pushProduction candidateCData Analysis
$ npx skills add allinurl/goaccess
#11

Claude Skills

17 fitTrust 95Excellent 100

337 Claude Code skills & agent skills & plugins (30+ Agents, 70+ custom commands, 330+ skills, customizable references, scripts)for Claude Code, Codex, Gemini CLI, Cursor, and 8 more coding agents — engineering, marketing, product, compliance, C-level advisory, research, business operations, commercial & finance, and your daily productivity skills.

Excellent quality, 18K stars, and a 17 use-case fit score.

18K starsJun 12, 2026 pushProduction candidatePythonAI Agents
$ npx skills add alirezarezvani/claude-skills
#12

Wazuh

17 fitTrust 92Excellent 100

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

Excellent quality, 16K stars, and a 17 use-case fit score.

16K starsJun 12, 2026 pushProduction candidateC++Compliance
$ npx skills add wazuh/wazuh
#13

SurfSense

17 fitTrust 98Excellent 100

An open source, privacy focused alternative to NotebookLM for teams with no data limits. Join our Discord: https://discord.gg/ejRNvftDp9

Excellent quality, 14K stars, and a 17 use-case fit score.

14K starsJun 12, 2026 pushProduction candidatePythonRAG
$ npx skills add MODSetter/SurfSense
#14

Bentopdf

17 fitTrust 94Excellent 100

The Privacy First PDF Toolkit

Excellent quality, 14K stars, and a 17 use-case fit score.

14K starsJun 12, 2026 pushProduction candidateJavaScriptPDF
$ npx skills add alam00000/bentopdf
#15

Karate

16 fitTrust 93Excellent 100

Test Automation Made Simple

Excellent quality, 8.9K stars, and a 16 use-case fit score.

8.9K starsJun 14, 2026 pushProduction candidateJavaTesting
$ npx skills add karatelabs/karate
#16

Checkov

16 fitTrust 96Excellent 100

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

Excellent quality, 8.8K stars, and a 16 use-case fit score.

8.8K starsJun 14, 2026 pushProduction candidatePythonStatic Analysis
$ npx skills add bridgecrewio/checkov
#17

OneForAll

16 fitTrust 92Excellent 100

OneForAll是一款功能强大的子域收集工具

Excellent quality, 9.8K stars, and a 16 use-case fit score.

9.8K starsMay 11, 2026 pushProduction candidatePythonOSINT
$ npx skills add shmilylty/OneForAll
#18

Datahaven

16 fitTrust 95Excellent 100

An EVM compatible Substrate chain, powered by StorageHub and secured by EigenLayer

Excellent quality, 7.9K stars, and a 16 use-case fit score.

7.9K starsApr 17, 2026 pushProduction candidateRustAI Agents
$ npx skills add datahaven-xyz/datahaven
#19

Tfsec

16 fitTrust 92Excellent 100

Tfsec is now part of Trivy

Excellent quality, 7.0K stars, and a 16 use-case fit score.

7.0K starsMar 25, 2026 pushProduction candidateGoStatic Analysis
$ npx skills add aquasecurity/tfsec
#20

AutoGPT

16 fitTrust 87Excellent 100

Build and run autonomous AI agents for open-ended tasks

Excellent quality, 185K stars, and a 16 use-case fit score.

185K starsJun 11, 2026 pushProduction candidateAutoGPTPython
$ npx skills add Significant-Gravitas/AutoGPT
#21

Gemini CLI

16 fitTrust 85Excellent 100

Bring a coding agent directly into the terminal

Excellent quality, 105K stars, and a 16 use-case fit score.

105K starsJun 5, 2026 pushStrong shortlistGeminiCLI
$ npx skills add google-gemini/gemini-cli
#22

Superpowers

16 fitTrust 93Excellent 100

An agentic skills framework & software development methodology that works.

Excellent quality, 227K stars, and a 16 use-case fit score.

227K starsJun 13, 2026 pushProduction candidateShellAI Agents
$ npx skills add obra/superpowers
#23

Hermes Agent

16 fitTrust 95Excellent 100

The agent that grows with you

Excellent quality, 192K stars, and a 16 use-case fit score.

192K starsJun 13, 2026 pushProduction candidatePythonAI Agents
$ npx skills add NousResearch/hermes-agent
#24

Markitdown

16 fitTrust 95Excellent 100

Python tool for converting files and office documents to Markdown.

Excellent quality, 154K stars, and a 16 use-case fit score.

154K starsMay 26, 2026 pushProduction candidatePythonPDF
$ npx skills add microsoft/markitdown
#25

Skills

16 fitTrust 91Excellent 100

Public repository for Agent Skills

Excellent quality, 150K stars, and a 16 use-case fit score.

150K starsJun 9, 2026 pushProduction candidatePythonAI Agents
$ npx skills add anthropics/skills
#26

Langchain

16 fitTrust 95Excellent 100

The agent engineering platform.

Excellent quality, 139K stars, and a 16 use-case fit score.

139K starsJun 14, 2026 pushProduction candidatePythonAI Agents
$ npx skills add langchain-ai/langchain
#27

System Prompts And Models Of AI Tools

16 fitTrust 98Excellent 100

FULL Augment Code, Claude Code, Cluely, CodeBuddy, Comet, Cursor, Devin AI, Junie, Kiro, Leap.new, Lovable, Manus, NotionAI, Orchids.app, Perplexity, Poke, Qoder, Replit, Same.dev, Trae, Traycer AI, VSCode Agent, Warp.dev, Windsurf, Xcode, Z.ai Code, Dia & v0. (And other Open Sourced) System Prompts, Internal Tools & AI Models

Excellent quality, 139K stars, and a 16 use-case fit score.

139K starsMay 23, 2026 pushProduction candidateClaude CodeCursor
$ npx skills add x1xhlol/system-prompts-and-models-of-ai-tools
#28

Firecrawl

16 fitTrust 94Excellent 100

The API to search, scrape, and interact with the web at scale. 🔥

Excellent quality, 132K stars, and a 16 use-case fit score.

132K starsJun 12, 2026 pushProduction candidateTypeScriptAI Agents
$ npx skills add firecrawl/firecrawl
#29

Awesome Llm Apps

16 fitTrust 95Excellent 100

100+ AI Agent & RAG apps you can actually run — clone, customize, ship.

Excellent quality, 114K stars, and a 16 use-case fit score.

114K starsJun 13, 2026 pushProduction candidatePythonRAG
$ npx skills add Shubhamsaboo/awesome-llm-apps
#30

Generative AI For Beginners

16 fitTrust 95Excellent 100

21 Lessons, Get Started Building with Generative AI

Excellent quality, 112K stars, and a 16 use-case fit score.

112K starsJun 11, 2026 pushProduction candidateJupyter NotebookSemantic Search
$ npx skills add microsoft/generative-ai-for-beginners

Selection method

How this list is ranked

OpenAgentSkill scores each candidate against the workflow keywords, then balances fit with GitHub stars, quality signals, trust profile, maintenance freshness, and whether there is a clear install path.

How does OpenAgentSkill rank legal and compliance?

The ranking combines workflow fit, quality score, trust profile, GitHub adoption, maintenance freshness, and whether a clear install path exists.

Should I install the top skill immediately?

No. Treat the list as a shortlist, open the skill detail page, inspect the repository and license, then test the install command in a sandbox workflow.

Can my agent consume this ranking through an API?

Yes. Use /api/skills/search with the related task or /api/agent/rankings?slug=best-legal-compliance-skills to fetch ranked skill data.