AI Agent Skill Repository

AI Agent Skills Directory

Browse reusable skills for Codex, Claude Code, Cursor, finance, research, web scraping, PPT, football analytics, data, marketing, design, and more.

Browse by scenario

Real skills, grouped by the work your agent needs to finish.

Each directory entry links to real skill pages with GitHub adoption, trust score, install handoff, risk notes, and agent-readable metadata. Use these as starting points when you want a shortlist before asking an agent to install anything.

Design to deployment

Frontend and UI skills

Design direction, Figma implementation, UI review, React performance, browser QA, and safe preview deployments.

  • Frontend Design166K stars

    Guidance for distinctive, intentional UI design, typography, visual direction, and non-template-like product…

    Trust 88Quality 100design-creative
  • Material Ui98K stars

    Material UI: Comprehensive React component library that implements Google's Material Design. Free forever.

    Trust 90Quality 100design-creative
  • Design and implementation guidance for distinctive landing pages, portfolios, product demos, and purposeful r…

    Trust 91Quality 100design-creative

Codex, Claude Code, Cursor

Coding agent skills

Code review, repo inspection, testing, planning, shipping, and engineering workflows for coding agents.

  • Code Review169K stars

    Review a diff separately for code standards and spec compliance.

    Trust 91Quality 100coding-agents
  • Open Design83K stars

    🎨 Local-first, open-source Claude Design alternative. 🖥️ Native desktop app. ⚡ 259+ Skills · ✨ 142+ Design…

    Trust 91Quality 100agent-skills
  • Agent Skills81K stars

    Production-grade engineering skills for AI coding agents.

    Trust 86Quality 100agent-skills

Documents and knowledge

Research and RAG skills

Research, recent-events briefings, PDF parsing, markdown conversion, RAG ingestion, and knowledge workflows.

  • Markitdown156K stars

    Python tool for converting files and office documents to Markdown.

    Trust 87Quality 100document-processing
  • PaddleOCR83K stars

    Turn any PDF or image document into structured data for your AI. A powerful, lightweight OCR toolkit that bri…

    Trust 89Quality 100document-processing
  • Docling63K stars

    Get your documents ready for gen AI

    Trust 89Quality 100document-processing

Markets and quant

Finance and trading skills

Stock analysis, market research, quant backtesting, financial data, and investment research skills.

  • TradingAgents88K stars

    TradingAgents: Multi-Agents LLM Financial Trading Framework

    Trust 88Quality 100finance
  • Trading bot which exploits price-spreads between cryptocurrency exchanges :mag::money_with_wings:

    Trust 72Quality 45finance
  • Union74K stars

    The trust-minimized, zero-knowledge bridging protocol, designed for censorship resistance, extremely high sec…

    Trust 91Quality 100web3-analytics

Crawlers and extraction

Web scraping skills

Crawling, scraping, extraction, browser automation, structured data capture, and website-to-markdown workflows.

  • Firecrawl139K stars

    The API to search, scrape, and interact with the web at scale. 🔥

    Trust 87Quality 100agent-frameworks
  • Crawl4AI73K stars

    Web crawling built for AI

    Trust 90Quality 100web-automation
  • Scrapling70K stars

    Adaptive web scraping for agent data collection

    Trust 85Quality 100web-automation

Slides and decks

PPT and presentation skills

Presentation generation, editable PPTX, slide decks, speaker notes, and visual storytelling workflows.

  • Reverse-lookup glossary that turns a vague description of a web animation or motion effect into its exact ter…

    Trust 91Quality 100design-creative
  • Canvas Design166K stars

    Create original visual art, posters, PNG assets, and PDF documents through a clear design philosophy.

    Trust 87Quality 100design-creative

Prompts, B-roll, explainers

Video creation skills

Video-generation prompts, B-roll, Vox-style explainers, camera direction, captions, and creative-production workflows.

  • 利用AI大模型,一键生成高清短视频 Generate short videos with one click using AI LLM.

    Trust 88Quality 100automation
  • List of Computer Science courses with video lectures.

    Trust 85Quality 100ml-automation
  • Agent-led recent-trends research across social, prediction markets, video, code, and the web.

    Trust 91Quality 100research

Images, video, UI

Design and creative skills

Image, video, creative production, UI design, multimodal generation, and visual workflow skills.

  • Apply Anthropic official brand colors, typography, and visual standards to appropriate Anthropic-related arti…

    Trust 88Quality 100design-creative
  • Unsloth67K stars

    Unsloth Studio is a web UI for training and running open models like Gemma 4, Qwen3.6, DeepSeek, gpt-oss loca…

    Trust 90Quality 100media-automation
  • Implement a ChatGPT-like LLM in PyTorch from scratch, step by step

    Trust 85Quality 100ml-automation

Supply tracks

Build the registry by domain, not just by count.

Coding

Coding and developer agents

184

Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills.

177 quality175 maintained

Research

Research and knowledge work

66

Deep research, source comparison, literature review, RAG, knowledge search, and reports.

66 quality65 maintained

Presentation

Presentation and deck workflows

1

PPTX generation, HTML slides, pitch decks, speaker notes, and presentation workflow skills.

1 quality1 maintained

Finance

Finance and quant workflows

14

Market data, SEC filings, portfolio analysis, quant research, backtesting, and risk workflows.

14 quality13 maintained

Marketing

Marketing and growth automation

10

SEO, content operations, lead generation, CRM, email automation, analytics, and growth workflows.

10 quality10 maintained

Design

Design and creative production

48

Design assets, images, video, audio, multimodal media, presentation, and creative production skills.

48 quality47 maintained

Data

Data, BI, and analytics

34

CSV, SQL, notebooks, dashboards, data pipelines, BI, ETL, and spreadsheet analysis.

32 quality31 maintained

Legal

Legal, policy, and compliance

12

Contract analysis, privacy, policy review, compliance checks, governance, and document risk review.

12 quality12 maintained

Education

Education and tutoring

6

Tutoring, course generation, quizzes, learning analytics, classrooms, and teaching workflows.

5 quality5 maintained

World Cup

Football and World Cup analytics

2

Football data, World Cup dashboards, xG, match prediction, scouting, and sports analytics.

2 quality2 maintained

High-intent entry points

Start from the task, not a keyword list.

These shortcuts use the same trust, supply, and relevance signals as the registry API, so humans and agents land on a useful shortlist faster.

Agent-readable index

Decision filters

Choose by scenario, quality, and trust signals.

Showing 1-16 of 365 ranked candidates matching "exploit"

Best blend of quality, stars, freshness, and agent usage

1

Commix

VERIFIEDEXCELLENT · 95TRUST · 82SAFE · REVIEWEDCODING

Automated All-in-One OS Command Injection Exploitation Tool

$ npx skills add commixproject/commix
5.8K stars68 quality82 trustReviewed with permission notes2mo since pushNeeds review
QualityHigh-confidence pick with strong adoption and healthy maintenance signals.
TrustGood trust signals with a few areas worth checking before rollout.Review: License is unclear
Safety gateUsable candidate, but the agent should surface permission and audit notes before installation.

Scenario Testing and QA

CLI + Codex · 4 targets

pythonsecurity
by commixprojectDetailsQuick view
2

Fuxploider

VERIFIEDSTRONG · 70TRUST · 79SAFE · EXPERIMENTALCODING

File upload vulnerability scanner and exploitation tool.

$ npx skills add almandin/fuxploider
3.3K stars51 quality79 trustExperimental1y since pushNeeds review
QualitySolid option that is likely worth shortlisting for production workflows.Check: Repository looks stale
TrustGood trust signals with a few areas worth checking before rollout.Review: Repository looks stale
Safety gateSparse or mixed signals. Useful for discovery, but not for autonomous installation.

Scenario Coding agents

CLI + Codex · 4 targets

pythonsecurity
by almandinDetailsQuick view
3

VcenterKit

VERIFIEDSTRONG · 78TRUST · 82SAFE · REVIEWEDDATA

Vcenter综合渗透利用工具包 | Vcenter Comprehensive Penetration and Exploitation Toolkit

$ npx skills add W01fh4cker/VcenterKit
1.3K stars52 quality82 trustReviewed with permission notes9mo since pushNeeds review
QualitySolid option that is likely worth shortlisting for production workflows.
TrustGood trust signals with a few areas worth checking before rollout.Review: Quality score needs review
Safety gateUsable candidate, but the agent should surface permission and audit notes before installation.

Scenario Data analysis

CLI + Codex · 4 targets

pythonnotebook
by W01fh4ckerDetailsQuick view
4

XAttacker

VERIFIEDPROMISING · 62TRUST · 75SAFE · EXPERIMENTALDESIGN

X Attacker Tool ☣ Website Vulnerability Scanner & Auto Exploiter

$ npx skills add Moham3dRiahi/XAttacker
1.7K stars49 quality75 trustExperimental3y since pushNeeds review
QualityUseful candidate, but compare it with alternatives before adopting.Check: Repository looks stale
TrustGood trust signals with a few areas worth checking before rollout.Review: License is unclear
Safety gateSparse or mixed signals. Useful for discovery, but not for autonomous installation.

Scenario Multimodal media

CLI + Codex · 4 targets

perlsecurity
by Moham3dRiahiDetailsQuick view
5

Paper Collection

VERIFIEDPROMISING · 61TRUST · 78SAFE · EXPERIMENTALRESEARCH

Academic papers related to fuzzing, binary analysis, and exploit dev, which I want to read or have already read

$ npx skills add 0xricksanchez/paper_collection
1.4K stars49 quality78 trustExperimental1y since pushNeeds review
QualityUseful candidate, but compare it with alternatives before adopting.Check: Repository looks stale
TrustGood trust signals with a few areas worth checking before rollout.Review: License is unclear
Safety gateSparse or mixed signals. Useful for discovery, but not for autonomous installation.

Scenario Research agents

CLI + Codex · 4 targets

pythoniot
by 0xricksanchezDetailsQuick view
6

DeepZero

STRONG · 79TRUST · 82SAFE · REVIEWEDRESEARCH

Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands of Windows kernel drivers for e…

$ npx skills add 416rehman/DeepZero
618 stars53 quality82 trustReviewedLangChainPushed todaySafe to try
QualitySolid option that is likely worth shortlisting for production workflows.
TrustGood trust signals with a few areas worth checking before rollout.Review: Quality score needs review
Safety gateGood audit and safety signals with no high-risk permission hints in public metadata.

Scenario Research agents

LangChain + CLI · 4 targets

pythonai-agents
by 416rehmanDetailsQuick view
7

PrivEsc

NEEDS REVIEW · 45TRUST · 68SAFE · BLOCKEDDATA

A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.

$ npx skills add 1N3/PrivEsc
995 stars40 quality68 trustBlocked for auto-install9y since pushRisky
QualityInspect the repository carefully before adding it to an agent workflow.Check: Repository looks stale
TrustPotentially useful, but at least one trust signal needs human inspection.Review: License is unclear
Safety gateThis skill should not be selected by an agent without explicit human security review.

Scenario Database and SQL

CLI + Codex · 4 targets

csql
by 1N3DetailsQuick view
8

CamOver

NEEDS REVIEW · 48TRUST · 70SAFE · EXPERIMENTALCODING

CamOver is a camera exploitation tool that allows to disclosure network camera admin password.

$ npx skills add EntySec/CamOver
590 stars38 quality70 trustExperimental2y since pushNeeds review
QualityInspect the repository carefully before adding it to an agent workflow.Check: Repository looks stale
TrustPotentially useful, but at least one trust signal needs human inspection.Review: Repository looks stale
Safety gateSparse or mixed signals. Useful for discovery, but not for autonomous installation.

Scenario Coding agents

CLI + Codex · 4 targets

pythoniot
by EntySecDetailsQuick view
9

RomBuster

NEEDS REVIEW · 48TRUST · 70SAFE · EXPERIMENTALCODING

RomBuster is a router exploitation tool that allows to disclosure network router admin password.

$ npx skills add EntySec/RomBuster
552 stars38 quality70 trustExperimental2y since pushNeeds review
QualityInspect the repository carefully before adding it to an agent workflow.Check: Repository looks stale
TrustPotentially useful, but at least one trust signal needs human inspection.Review: Repository looks stale
Safety gateSparse or mixed signals. Useful for discovery, but not for autonomous installation.

Scenario Coding agents

CLI + Codex · 4 targets

pythoniot
by EntySecDetailsQuick view
10

Blisqy

NEEDS REVIEW · 41TRUST · 64SAFE · BLOCKEDDATA

Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

$ npx skills add JohnTroony/Blisqy
417 stars37 quality64 trustBlocked for auto-install7y since pushRisky
QualityInspect the repository carefully before adding it to an agent workflow.Check: Repository looks stale
TrustPotentially useful, but at least one trust signal needs human inspection.Review: License is unclear
Safety gateThis skill should not be selected by an agent without explicit human security review.

Scenario Database and SQL

CLI + Codex · 4 targets

pythonsql
by JohnTroonyDetailsQuick view
11

RedTeam

NEEDS REVIEW · 39TRUST · 68SAFE · EXPERIMENTALCODING

This repo offers notes and resources on ethical hacking, covering information gathering, scanning, web hacking, exploitation, and Windows/Linux hacking.

$ npx skills add Hacking-Notes/RedTeam
223 stars35 quality68 trustExperimental1y since pushNeeds review
QualityInspect the repository carefully before adding it to an agent workflow.Check: Repository looks stale
TrustPotentially useful, but at least one trust signal needs human inspection.Review: License is unclear
Safety gateSparse or mixed signals. Useful for discovery, but not for autonomous installation.

Scenario Coding agents

CLI + Codex · 4 targets

notes
by Hacking-NotesDetailsQuick view
12

SQL Injection Cheat Sheet

NEEDS REVIEW · 37TRUST · 64SAFE · BLOCKEDCODING

Cheatsheet to exploit and learn SQL Injection.

$ npx skills add AdmiralGaust/SQL-Injection-cheat-sheet
147 stars34 quality64 trustBlocked for auto-install4y since pushRisky
QualityInspect the repository carefully before adding it to an agent workflow.Check: Repository looks stale
TrustPotentially useful, but at least one trust signal needs human inspection.Review: License is unclear
Safety gateThis skill should not be selected by an agent without explicit human security review.

Scenario Coding agents

CLI + Codex · 4 targets

sql
by AdmiralGaustDetailsQuick view
13

Ctf Skills

VERIFIEDEXCELLENT · 93TRUST · 83SAFE · REVIEWEDRESEARCH

Agent skills for solving CTF challenges - web exploitation, binary pwn, crypto, reverse engineering, forensics, OSINT, and more

$ npx skills add ljagiello/ctf-skills
2.4K stars62 quality83 trustReviewed with permission notesClaude Code + OpenAI Agents3mo since pushSafe to try
QualityHigh-confidence pick with strong adoption and healthy maintenance signals.
TrustGood trust signals with a few areas worth checking before rollout.Review: Documentation summary is thin
Safety gateUsable candidate, but the agent should surface permission and audit notes before installation.

Scenario RAG and knowledge

Claude Code + OpenAI Agents · 4 targets

pythonai-agents
by ljagielloDetailsQuick view
14

Pentest Swarm AI

VERIFIEDEXCELLENT · 100TRUST · 86SAFE · REVIEWEDCODING

Autonomous penetration testing using a swarm of AI agents. Orchestrates recon, classification, exploitation, and reporting specialists with ReAct reasoning — supports bu…

$ npx skills add Armur-Ai/Pentest-Swarm-AI
1.8K stars64 quality86 trustReviewedClaude Code2mo since pushSafe to try
QualityHigh-confidence pick with strong adoption and healthy maintenance signals.
TrustStrong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency/…Review: Documentation summary is thin
Safety gateGood audit and safety signals with no high-risk permission hints in public metadata.

Scenario Testing and QA

Claude Code + CLI · 4 targets

goai-agents
by Armur-AiDetailsQuick view
15

Pentest AI Agents

VERIFIEDEXCELLENT · 93TRUST · 84SAFE · REVIEWEDCODING

Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements, analyze recon, research e…

$ npx skills add 0xSteph/pentest-ai-agents
2.1K stars62 quality84 trustReviewed with permission notesClaude Code1mo since pushSafe to try
QualityHigh-confidence pick with strong adoption and healthy maintenance signals.
TrustGood trust signals with a few areas worth checking before rollout.Review: Documentation summary is thin
Safety gateUsable candidate, but the agent should surface permission and audit notes before installation.

Scenario Testing and QA

Claude Code + CLI · 4 targets

shellai-agents
by 0xStephDetailsQuick view
16

XSRFProbe

VERIFIEDEXCELLENT · 96TRUST · 87SAFE · REVIEWEDLEGAL

The Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.

$ npx skills add 0xInfection/XSRFProbe
1.3K stars64 quality87 trustReviewed22d since pushSafe to try
QualityHigh-confidence pick with strong adoption and healthy maintenance signals.
TrustStrong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency/…Review: Documentation summary is thin
Safety gateGood audit and safety signals with no high-risk permission hints in public metadata.

Scenario Security and compliance

CLI + Codex · 4 targets

pythoncrawler
by 0xInfectionDetailsQuick view

Page 1

Showing the strongest 16 results to keep the registry fast for humans and agents. Refine by use case, platform, stars, or search query for a narrower shortlist.

Try the agent resolve API