Security agents

Best AI agent skills for security review

Ranked OpenAgentSkill shortlist for agents that scan dependencies, review permissions, inspect secrets, summarize vulnerabilities, and prepare safe remediation steps.

Developers and security-minded teams that want agents to inspect repositories before running third-party code or shipping changes. Ranked from the OpenAgentSkill index using quality, trust, freshness, adoption, and install readiness.

best AI agent skills for security reviewAI agents
30
Ranked
3.0M
Stars
90
Top trust
Agent proven

Search intent

Find AI agent skills for vulnerability scanning, secret review, dependency risk, security audit notes, and safe remediation workflows.

These pages are generated from real registry records. The list below is not a generic article; every row links to a skill profile with install, trust, audit, and risk fields.

#1

Skills

22 fitTrust 90Excellent 100Agent Proven Audit 94 · Safe to try

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

Excellent quality, 6.6K stars, and a 22 use-case fit score.

Best suited scenario

Inspect risky files

6.6K starsAug 14, 2026 pushProduction candidateNeeds first agent runPythonAI Agents
$ npx skills add trailofbits/skills
#2

SkillSpector

20 fitTrust 91Excellent 100Agent Proven Audit 94 · Safe to try

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, and security risks.

Excellent quality, 14K stars, and a 20 use-case fit score.

Best suited scenario

Inspect risky files

14K starsJul 27, 2026 pushProduction candidateNeeds first agent runPythonAI Agents
$ npx skills add NVIDIA/SkillSpector
#3

Code Review

19 fitTrust 89Excellent 100Agent Proven Audit 92 · Safe to try

Review a branch or diff against repository standards and the originating spec in two independent analysis passes.

Excellent quality, 169K stars, and a 19 use-case fit score.

Best suited scenario

Inspect source files

169K starsJul 13, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add mattpocock/skills --skill code-review
#4

Web Design Guidelines

18 fitTrust 88Excellent 100Agent Proven Audit 92 · Safe to try

Review UI code for web interface guidelines, UX quality, accessibility, and interaction design best practices.

Excellent quality, 30K stars, and a 18 use-case fit score.

Best suited scenario

Inspect visual requirements

30K starsAug 21, 2026 pushProduction candidateNeeds first agent runCodexClaude Code
$ npx skills add vercel-labs/agent-skills --skill web-design-guidelines
#5

Claude Skills

17 fitTrust 88Excellent 100Agent Proven Audit 93 · Needs review

337 Claude Code skills & agent skills & plugins (30+ Agents, 70+ custom commands, 330+ skills, customizable references, scripts)for Claude Code, Codex, Gemini CLI, Cursor, and 8 more coding agents — engineering, marketing, product, compliance, C-level advisory, research, business operations, commercial & finance, and your daily productivity skills.

Excellent quality, 25K stars, and a 17 use-case fit score.

Best suited scenario

Search sources

25K starsAug 17, 2026 pushProduction candidateNeeds first agent runPythonAI Agents
$ npx skills add alirezarezvani/claude-skills
#6

Reverse Skill

17 fitTrust 88Excellent 100Agent Proven Audit 93 · Safe to try

Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline, and other AI coding clients 逆向/渗透/安全技能路由包 - AI 自动路由 + 按需自举工具链 + 自动进化经验库 | 支持 Claude Code / Kiro / Cursor / Cline 等代码 AI 客户端

Excellent quality, 26K stars, and a 17 use-case fit score.

Best suited scenario

Inspect source files

26K starsAug 16, 2026 pushProduction candidateNeeds first agent runPowerShellClaude Code
$ npx skills add zhaoxuya520/reverse-skill
#7

Promptfoo

17 fitTrust 89Excellent 100Agent Proven Audit 92 · Safe to try

Test your prompts, agents, and RAGs. Red teaming/pentesting/vulnerability scanning for AI. Compare performance of GPT, Claude, Gemini, DeepSeek, and more. Simple declarative configs with command line and CI/CD integration. Used by OpenAI and Anthropic.

Excellent quality, 22K stars, and a 17 use-case fit score.

Best suited scenario

Run test suites

22K starsJun 15, 2026 pushProduction candidateNeeds first agent runTypeScriptRAG
$ npx skills add promptfoo/promptfoo
#8

Edict

17 fitTrust 90Excellent 100Agent Proven Audit 93 · Safe to try

🏛️ 三省六部制 · OpenClaw Multi-Agent Orchestration System — 9 specialized AI agents with real-time dashboard, model config, and full audit trails

Excellent quality, 16K stars, and a 17 use-case fit score.

Best suited scenario

Move data between tools

16K starsJun 4, 2026 pushProduction candidateNeeds first agent runPythonWorkflow
$ npx skills add cft0808/edict
#9

Visual Explainer

16 fitTrust 89Excellent 99Agent Proven Audit 92 · Safe to try

Agent skill that generates rich HTML pages or slide decks for diagrams, diff reviews, plan audits, data tables, and project recaps

Excellent quality, 9.3K stars, and a 16 use-case fit score.

Best suited scenario

Inspect repository metadata

9.3K starsJun 25, 2026 pushProduction candidateNeeds first agent runHTMLAI Agents
$ npx skills add nicobailon/visual-explainer
#10

Frontend Design

16 fitTrust 89Excellent 100Agent Proven 51Audit 92 · Safe to try

Guidance for distinctive, intentional UI design, typography, visual direction, and non-template-like product interfaces.

Excellent quality, 171K stars, and a 16 use-case fit score.

Best suited scenario

Inspect visual requirements

171K starsAug 21, 2026 pushProduction candidateEarly agent signalClaude CodeCodex
$ npx skills add anthropics/skills --skill frontend-design
#11

Claude Ads

16 fitTrust 89Excellent 100Agent Proven Audit 92 · Safe to try

Comprehensive paid advertising audit & optimization skill for Claude Code. 250+ checks across Google, Meta, YouTube, LinkedIn, TikTok, Microsoft & Apple Ads with weighted scoring, parallel agents, industry templates, and AI creative generation.

Excellent quality, 7.9K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

7.9K starsJul 13, 2026 pushProduction candidateNeeds first agent runPythonClaude Code
$ npx skills add AgriciDaniel/claude-ads
#12

Taste Skill: Anti-Slop Frontend

16 fitTrust 84Excellent 100Agent Proven 33Audit 94 · Safe to try

Design and implementation guidance for distinctive landing pages, portfolios, product demos, and purposeful redesigns.

Excellent quality, 79K stars, and a 16 use-case fit score.

Best suited scenario

Inspect visual requirements

79K starsAug 21, 2026 pushStrong shortlistEarly agent signalCodexClaude Code
$ npx skills add Leonxlnx/taste-skill --skill design-taste-frontend
#13

Webapp Testing

16 fitTrust 87Excellent 100Agent Proven Audit 92 · Safe to try

Use Playwright to interact with and test local web applications, capture screenshots, debug UI behavior, and inspect browser logs.

Excellent quality, 171K stars, and a 16 use-case fit score.

Best suited scenario

Navigate pages

171K starsAug 21, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add anthropics/skills --skill webapp-testing
#14

Canvas Design

16 fitTrust 87Excellent 100Agent Proven Audit 92 · Safe to try

Create original visual art, posters, PNG assets, and PDF documents through a clear design philosophy.

Excellent quality, 171K stars, and a 16 use-case fit score.

Best suited scenario

Read uploaded files

171K starsAug 21, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add anthropics/skills --skill canvas-design
#15

Graphify

16 fitTrust 85Excellent 100Agent Proven Audit 90 · Safe to try

A tool that converts codebases, SQL schemas, and other files into queryable knowledge graphs for AI coding assistants.

Excellent quality, 92K stars, and a 16 use-case fit score.

Best suited scenario

Understand table relationships

92K starsJul 20, 2026 pushStrong shortlistNeeds first agent runPython
$ npx skills add Graphify-Labs/graphify
#16

Claude Code System Prompts

16 fitTrust 87Excellent 100Agent Proven Audit 91 · Safe to try

All parts of Claude Code's system prompt, 27 builtin tool descriptions, sub agent prompts (Plan/Explore/Task), utility prompts (CLAUDE.md, compact, statusline, magic docs, WebFetch, Bash cmd, security review, agent creation). Updated for each Claude Code version.

Excellent quality, 12K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

12K starsJul 6, 2026 pushProduction candidateNeeds first agent runJavaScriptClaude Code
$ npx skills add Piebald-AI/claude-code-system-prompts
#17

Caveman

16 fitTrust 88Excellent 100Agent Proven Audit 92 · Safe to try

🪨 why use many token when few token do trick — Claude Code skill that cuts 65% of tokens by talking like caveman

Excellent quality, 97K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

97K starsAug 11, 2026 pushProduction candidateNeeds first agent runJavaScriptClaude Code
$ npx skills add JuliusBrussee/caveman
#18

Anthropic Brand Guidelines

16 fitTrust 88Excellent 100Agent Proven Audit 92 · Safe to try

Apply Anthropic official brand colors, typography, and visual standards to appropriate Anthropic-related artifacts.

Excellent quality, 171K stars, and a 16 use-case fit score.

Best suited scenario

Inspect visual requirements

171K starsAug 21, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add anthropics/skills --skill brand-guidelines
#19

Grill With Docs

16 fitTrust 87Excellent 100Agent Proven Audit 90 · Safe to try

A relentless interview that pressure-tests a plan against the codebase, sharpens domain language, and updates CONTEXT.md and ADRs when decisions become durable.

Excellent quality, 165K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

165K starsJul 10, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add mattpocock/skills --skill grill-with-docs
#20

To Spec

16 fitTrust 87Excellent 100Agent Proven Audit 90 · Safe to try

Turn the current conversation and codebase context into a structured implementation spec, then publish it to the configured project issue tracker.

Excellent quality, 165K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

165K starsJul 10, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add mattpocock/skills --skill to-spec
#21

Open Design

16 fitTrust 91Excellent 100Agent Proven Audit 94 · Safe to try

🎨 Local-first, open-source Claude Design alternative. 🖥️ Native desktop app. ⚡ 259+ Skills · ✨ 142+ Design Systems 🖼️ Web · desktop · mobile prototypes · slides · images · videos · HyperFrames 📦 Sandboxed preview · HTML/PDF/PPTX/MP4 export 🤖 Claude Code / OpenClaw / Codex / Cursor / OpenCode / Qwen / Copilot / Hermes / Kimi & 17+ CLIs.

Excellent quality, 88K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

88K starsAug 17, 2026 pushProduction candidateNeeds first agent runTypeScriptAI Agents
$ npx skills add nexu-io/open-design
#22

To Tickets

16 fitTrust 87Excellent 100Agent Proven Audit 90 · Safe to try

Break a plan, spec, or conversation into independently actionable tracer-bullet tickets with explicit blocking relationships.

Excellent quality, 177K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

177K starsJul 17, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add mattpocock/skills --skill to-tickets
#23

Gemini CLI

16 fitTrust 82Excellent 100Agent Proven Audit 87 · Needs review

Bring a coding agent directly into the terminal

Excellent quality, 106K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

106K starsJul 19, 2026 pushStrong shortlistNeeds first agent runGeminiCLI
$ npx skills add google-gemini/gemini-cli
#24

Superpowers

16 fitTrust 85Excellent 100Agent Proven Audit 89 · Safe to try

An agentic skills framework & software development methodology that works.

Excellent quality, 257K stars, and a 16 use-case fit score.

Best suited scenario

Inspect repository metadata

257K starsJul 17, 2026 pushStrong shortlistNeeds first agent runShellAI Agents
$ npx skills add obra/superpowers
#25

Implement

16 fitTrust 87Excellent 100Agent Proven Audit 90 · Safe to try

Implement work from an approved spec or ticket set, run focused and full tests, invoke code review, and commit the result to the current branch.

Excellent quality, 176K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

176K starsJul 17, 2026 pushProduction candidateNeeds first agent runClaude CodeCodex
$ npx skills add mattpocock/skills --skill implement
#26

Browser Use

16 fitTrust 87Excellent 100Agent Proven Audit 90 · Safe to try

🌐 Make websites accessible for AI agents. Automate tasks online with ease.

Excellent quality, 99K stars, and a 16 use-case fit score.

Best suited scenario

Navigate pages

99K starsJun 13, 2026 pushProduction candidateNeeds first agent runPythonAI Agents
$ npx skills add browser-use/browser-use
#27

Codex

16 fitTrust 85Excellent 100Agent Proven Audit 89 · Safe to try

Lightweight coding agent that runs in your terminal

Excellent quality, 91K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

91K starsJun 16, 2026 pushStrong shortlistNeeds first agent runRustCoding Agent
$ npx skills add openai/codex
#28

Ui Ux Pro Max Skill

16 fitTrust 90Excellent 100Agent Proven Audit 92 · Safe to try

An AI agent skill that provides design intelligence and UI/UX guidelines for building professional interfaces across multiple platforms.

Excellent quality, 107K stars, and a 16 use-case fit score.

Best suited scenario

Navigate pages

107K starsJul 14, 2026 pushProduction candidateNeeds first agent runPythonClaude Code
$ npx skills add nextlevelbuilder/ui-ux-pro-max-skill
#29

Andrej Karpathy Skills

16 fitTrust 85Excellent 100Agent Proven Audit 87 · Safe to try

A single CLAUDE.md file to improve Claude Code behavior, derived from Andrej Karpathy's observations on LLM coding pitfalls.

Excellent quality, 175K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

175K starsApr 20, 2026 pushStrong shortlistNeeds first agent runClaude Code
$ npx skills add multica-ai/andrej-karpathy-skills
#30

Ponytail

16 fitTrust 90Excellent 100Agent Proven Audit 92 · Safe to try

Makes your AI agent think like the laziest senior dev in the room. The best code is the code you never wrote.

Excellent quality, 86K stars, and a 16 use-case fit score.

Best suited scenario

Inspect source files

86K starsJul 15, 2026 pushProduction candidateNeeds first agent runJavaScriptAI Agents
$ npx skills add DietrichGebert/ponytail

Selection method

How this list is ranked

OpenAgentSkill scores each candidate against the workflow keywords, then balances fit with GitHub stars, quality signals, trust profile, Agent Proven outcome evidence, maintenance freshness, and whether there is a clear install path.

How does OpenAgentSkill rank security review?

The ranking combines workflow fit, quality score, trust profile, GitHub adoption, maintenance freshness, and whether a clear install path exists.

Should I install the top skill immediately?

No. Treat the list as a shortlist, open the skill detail page, inspect the repository and license, then test the install command in a sandbox workflow.

Can my agent consume this ranking through an API?

Yes. Use /api/skills/search with the related task or /api/agent/rankings?slug=best-security-review-skills to fetch ranked skill data.