Decision filters

Choose skills by scenario, quality, and trust signals.

60 skills matching "quality"

Best blend of quality, stars, freshness, and agent usage

1

Agent Skills

VERIFIEDEXCELLENT · 100

Production-grade engineering skills for AI coding agents.

$ npx skills add addyosmani/agent-skills
45.2K stars75 qualityClaude Code + Cursor
High-confidence pick with strong adoption and healthy maintenance signals.
by addyosmaniQuick view
2

Awesome Claude Code

VERIFIEDEXCELLENT · 100

A curated list of awesome skills, hooks, slash-commands, agent orchestrators, applications, and plugins for Claude Code by Anthropic

$ npx skills add hesreallyhim/awesome-claude-code
44.6K stars75 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
by hesreallyhimQuick view
3

Mlflow

VERIFIEDEXCELLENT · 100

The open source AI engineering platform for agents, LLMs, and ML models. MLflow enables teams of all sizes to debug, evaluate, monitor, and optimize production-quality AI applications while controlling costs and managing access to models and data.

$ npx skills add mlflow/mlflow
26.1K stars74 qualityClaude Code + LangChain
High-confidence pick with strong adoption and healthy maintenance signals.
pythonllmops
by mlflowQuick view
4

SVF

VERIFIEDEXCELLENT · 99

Static Value-Flow Analysis Framework for Source Code

$ npx skills add SVF-tools/SVF
1.7K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
c++static-analysis
by SVF-toolsQuick view
5

CodeBoarding

VERIFIEDEXCELLENT · 98

Interactive architecture diagrams for codebases

$ npx skills add CodeBoarding/CodeBoarding
1.7K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
pythonstatic-analysis
by CodeBoardingQuick view
6

Nft

VERIFIEDEXCELLENT · 97

Node.js dependency tracing utility

$ npx skills add vercel/nft
1.6K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javascriptstatic-analysis
by vercelQuick view
7

Agent Rules Books

VERIFIEDEXCELLENT · 100

AGENTS.md rules / skills for AI coding agents: Codex, Cursor & Claude Code. Inspired by Clean Code, Refactoring, DDD, Clean Architecture and DDIA programming books.

$ npx skills add ciembor/agent-rules-books
1.6K stars64 qualityClaude Code + OpenAI Agents
High-confidence pick with strong adoption and healthy maintenance signals.
ai-agents
by ciemborQuick view
8

Phpdoc Parser

VERIFIEDEXCELLENT · 100

Next-gen phpDoc parser with support for intersection types and generics

$ npx skills add phpstan/phpdoc-parser
1.5K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
phpstatic-analysis
by phpstanQuick view
9

PHP CodeSniffer

VERIFIEDEXCELLENT · 100

PHP_CodeSniffer tokenizes PHP files and detects violations of a defined set of coding standards.

$ npx skills add PHPCSStandards/PHP_CodeSniffer
1.5K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
phpstatic-analysis
by PHPCSStandardsQuick view
10

Kubesec

VERIFIEDEXCELLENT · 97

Security risk analysis for Kubernetes resources

$ npx skills add controlplaneio/kubesec
1.5K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
gostatic-analysis
by controlplaneioQuick view
11

R2frida

VERIFIEDEXCELLENT · 97

Radare2 and Frida better together.

$ npx skills add nowsecure/r2frida
1.4K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
typescriptstatic-analysis
by nowsecureQuick view
12

Horusec

VERIFIEDEXCELLENT · 100

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

$ npx skills add ZupIT/horusec
1.3K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
gostatic-analysis
by ZupITQuick view
13

Phpqa

VERIFIEDEXCELLENT · 100

Docker image that provides static analysis tools for PHP

$ npx skills add jakzal/phpqa
1.3K stars64 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
dockerfilestatic-analysis
by jakzalQuick view
14

CrossHair

VERIFIEDEXCELLENT · 97

An analysis tool for Python that blurs the line between testing and type systems.

$ npx skills add pschanely/CrossHair
1.3K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
pythonstatic-analysis
by pschanelyQuick view
15

SonarJS

VERIFIEDEXCELLENT · 97

SonarSource Static Analyzer for JavaScript and TypeScript

$ npx skills add SonarSource/SonarJS
1.2K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
typescriptstatic-analysis
by SonarSourceQuick view
16

Sonar Java

VERIFIEDEXCELLENT · 97

:coffee: SonarSource Static Analyzer for Java Code Quality and Security

$ npx skills add SonarSource/sonar-java
1.2K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javastatic-analysis
by SonarSourceQuick view
17

Semgrep Rules

VERIFIEDEXCELLENT · 97

Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.

$ npx skills add semgrep/semgrep-rules
1.2K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
hclstatic-analysis
by semgrepQuick view
18

Meziantou.Analyzer

VERIFIEDEXCELLENT · 100

A powerful C# Roslyn analyzer that uses static analysis to detect bugs, surface security issues, and enforce best practices—helping developers and AI write more reliable code.

$ npx skills add meziantou/Meziantou.Analyzer
1.1K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
c#static-analysis
by meziantouQuick view
19

OpenSCA Cli

VERIFIEDEXCELLENT · 100

OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.

$ npx skills add XmirrorSecurity/OpenSCA-cli
1.1K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
gostatic-analysis
by XmirrorSecurityQuick view
20

Jspecify

VERIFIEDEXCELLENT · 100

An artifact of fully-specified annotations to power static-analysis checks, beginning with nullness analysis.

$ npx skills add jspecify/jspecify
1.1K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javastatic-analysis
by jspecifyQuick view
21

Zuban

VERIFIEDEXCELLENT · 91

Python Type Checker / Language Server

$ npx skills add zubanls/zuban
1.1K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
ruststatic-analysis
by zubanlsQuick view
22

Vet

VERIFIEDEXCELLENT · 100

Protect against malicious open source packages 🤖

$ npx skills add safedep/vet
1.1K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
gostatic-analysis
by safedepQuick view
23

Phasar

VERIFIEDEXCELLENT · 90

A LLVM-based static analysis framework.

$ npx skills add secure-software-engineering/phasar
1.0K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
c++static-analysis
by secure-software-engineeringQuick view
24

Moai Adk

VERIFIEDEXCELLENT · 100

SPEC-First Agentic Development Kit for Claude Code — 24 AI agents + 52 skills with TDD/DDD quality gates, 16-language projects, 4-language docs. Go CLI, zero deps.

$ npx skills add modu-ai/moai-adk
1.0K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
goai-agents
by modu-aiQuick view
25

Pyscn

VERIFIEDEXCELLENT · 95

An Intelligent Python Code Quality Analyzer

$ npx skills add ludo-technologies/pyscn
1.0K stars63 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
gostatic-analysis
by ludo-technologiesQuick view
26

Tai E

VERIFIEDEXCELLENT · 98

An easy-to-learn/use static analysis framework for Java

$ npx skills add pascal-lab/Tai-e
1.8K stars61 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javastatic-analysis
by pascal-labQuick view
27

Appshark

VERIFIEDEXCELLENT · 98

Appshark is a static taint analysis platform to scan vulnerabilities in an Android app.

$ npx skills add bytedance/appshark
1.7K stars61 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
kotlinstatic-analysis
by bytedanceQuick view
28

Pysonar2

VERIFIEDEXCELLENT · 97

PySonar2: a semantic indexer for Python with interprocedual type inference

$ npx skills add yinwang0/pysonar2
1.4K stars61 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javastatic-analysis
by yinwang0Quick view
29

Ipyflow

VERIFIEDEXCELLENT · 90

A reactive Python kernel for Jupyter notebooks.

$ npx skills add ipyflow/ipyflow
1.3K stars60 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
pythonstatic-analysis
by ipyflowQuick view
30

Phpat

VERIFIEDEXCELLENT · 96

✔️ PHP Architecture Tester - Easy architecture testing for PHP

$ npx skills add carlosas/phpat
1.3K stars60 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
phpstatic-analysis
by carlosasQuick view
31

FlowDroid

VERIFIEDEXCELLENT · 90

FlowDroid Static Data Flow Tracker

$ npx skills add secure-software-engineering/FlowDroid
1.2K stars60 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javastatic-analysis
by secure-software-engineeringQuick view
32

Markpdfdown

VERIFIEDEXCELLENT · 94

A high-quality PDF to Markdown tool based on large language model visual recognition. 一款基于大模型视觉识别的高质量PDF转Markdown工具

$ npx skills add MarkPDFdown/markpdfdown
1.7K stars57 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
pythonpdf
by MarkPDFdownQuick view
33

Sonar Dotnet

STRONG · 76

Code analyzer for C# and VB.NET projects

$ npx skills add SonarSource/sonar-dotnet
905 stars54 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
c#static-analysis
by SonarSourceQuick view
34

JET.Jl

EXCELLENT · 87

A code analyzer for Julia. No need for additional type annotations.

$ npx skills add aviatesk/JET.jl
863 stars54 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
juliastatic-analysis
by aviateskQuick view
35

Skott

EXCELLENT · 87

All-in-one devtool to automatically analyze, search and visualize project modules and dependencies from JavaScript, TypeScript (JSX/TSX) and Node.js (ES6, CommonJS)

$ npx skills add antoine-coulon/skott
857 stars54 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
typescriptstatic-analysis
by antoine-coulonQuick view
36

WALA

EXCELLENT · 87

T.J. Watson Libraries for Analysis, with front ends for Java, Android, and JavaScript, and many common static program analyses.

$ npx skills add wala/WALA
851 stars54 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javastatic-analysis
by walaQuick view
37

Rubocop Rspec

STRONG · 81

Code style checking for RSpec files.

$ npx skills add rubocop/rubocop-rspec
845 stars54 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
rubystatic-analysis
by rubocopQuick view
38

SootUp

EXCELLENT · 86

A new version of Soot with a completely overhauled architecture

$ npx skills add soot-oss/SootUp
787 stars54 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
javastatic-analysis
by soot-ossQuick view
39

Phpstan Symfony

STRONG · 80

Symfony extension for PHPStan

$ npx skills add phpstan/phpstan-symfony
787 stars54 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
phpstatic-analysis
by phpstanQuick view
40

Extra strict and opinionated rules for PHPStan

$ npx skills add phpstan/phpstan-strict-rules
696 stars54 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
phpstatic-analysis
by phpstanQuick view
41

Cake

STRONG · 75

Cake a C23 front end and transpiler written in C

$ npx skills add thradams/cake
676 stars54 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
cstatic-analysis
by thradamsQuick view
42

Phpstan Doctrine

STRONG · 80

Doctrine extensions for PHPStan

$ npx skills add phpstan/phpstan-doctrine
667 stars53 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
phpstatic-analysis
by phpstanQuick view
43

Sonarlint Intellij

EXCELLENT · 85

SonarQube plugin for JetBrains IDEs providing code quality and security feedback directly in the IDE

$ npx skills add SonarSource/sonarlint-intellij
635 stars53 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
kotlinstatic-analysis
by SonarSourceQuick view
44

Pep8speaks

EXCELLENT · 85

A GitHub :octocat: app to automatically review Python code style over Pull Requests

$ npx skills add pep8speaks-org/pep8speaks
619 stars53 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
pythonstatic-analysis
by pep8speaks-orgQuick view
45

Sonarlint Vscode

EXCELLENT · 85

SonarQube extension for Visual Studio Code providing code quality and security feedback directly in the editor

$ npx skills add SonarSource/sonarlint-vscode
616 stars53 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
cssstatic-analysis
by SonarSourceQuick view
46

CodeCompass

EXCELLENT · 85

CodeCompass is a software comprehension tool for large scale software written in C/C++, C# and Python.

$ npx skills add Ericsson/CodeCompass
601 stars53 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
c++static-analysis
by EricssonQuick view
47

:ab: Tool to compare two revisions of a class API to check for BC breaks

$ npx skills add Roave/BackwardCompatibilityCheck
596 stars53 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
phpstatic-analysis
by RoaveQuick view
48

Gitleaks Action

STRONG · 74

Protect your secrets using Gitleaks-Action

$ npx skills add gitleaks/gitleaks-action
586 stars53 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
javascriptstatic-analysis
by gitleaksQuick view
49

Astroid

EXCELLENT · 85

A common base representation of python source code for pylint and other projects

$ npx skills add pylint-dev/astroid
576 stars53 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
pythonstatic-analysis
by pylint-devQuick view
50

🌟 A curated collection of free, high quality AI tools 🤖, APIs 🔗, datasets 📊, and learning resources 📚 covering machine learning 🧠, deep learning 🧩, generative AI 🎨, NLP 💬, and data science 📈. Designed to help developers 👩‍💻, researchers 🔬, and creators ✨ explore and build with AI faster ⚡.

$ npx skills add CelaDaniel/free-ai-resources-x
523 stars53 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
ai-agents
by CelaDanielQuick view
51

Crabviz

VERIFIEDEXCELLENT · 85

Generate interactive call graphs for various languages

$ npx skills add chanhx/crabviz
1.4K stars53 qualityClaude Code
High-confidence pick with strong adoption and healthy maintenance signals.
typescriptstatic-analysis
by chanhxQuick view
52

Tai E Assignments

VERIFIEDSTRONG · 78

Tai-e assignments for static program analysis

$ npx skills add pascal-lab/Tai-e-assignments
1.2K stars52 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
javastatic-analysis
by pascal-labQuick view
53

Security Tools

STRONG · 81

My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.

$ npx skills add bl4de/security-tools
921 stars51 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
pythonstatic-analysis
by bl4deQuick view
54

Semgrep Rules

STRONG · 80

A collection of my Semgrep rules to facilitate vulnerability research.

$ npx skills add 0xdea/semgrep-rules
813 stars51 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
cstatic-analysis
by 0xdeaQuick view
55

Mobsfscan

STRONG · 80

mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and Objective C Code. mobsfscan uses MobSF static analysis rules and is powered by semgrep and libsast pattern matcher.

$ npx skills add MobSF/mobsfscan
757 stars51 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
pythonstatic-analysis
by MobSFQuick view
56

Siteone Crawler

STRONG · 80

SiteOne Crawler is a cross-platform website crawler and analyzer for SEO, security, accessibility, and performance optimization—ideal for developers, DevOps, QA engineers, and consultants. Supports Windows, macOS, and Linux (x64 and arm64).

$ npx skills add janreges/siteone-crawler
754 stars51 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
rustcrawler
by janregesQuick view
57

Packj

STRONG · 80

Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

$ npx skills add ossillate-inc/packj
686 stars51 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
pythonstatic-analysis
by ossillate-incQuick view
58

Prealloc

STRONG · 79

prealloc is a Go static analysis tool to find slice declarations that could potentially be preallocated.

$ npx skills add alexkohler/prealloc
665 stars50 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
gostatic-analysis
by alexkohlerQuick view
59

Phpmnd

STRONG · 73

PHP Magic Number Detector

$ npx skills add povils/phpmnd
583 stars50 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.
phpstatic-analysis
by povilsQuick view
60

Sobelow

VERIFIEDSTRONG · 73

Security-focused static analysis for the Phoenix Framework

$ npx skills add nccgroup/sobelow
1.8K stars49 qualityClaude Code
Solid option that is likely worth shortlisting for production workflows.Check: Repository looks stale
elixirstatic-analysis
by nccgroupQuick view