Search Skills
Search across 54932 indexed skills
correlating-threat-campaigns
Use this skill when: Multiple unrelated-appearing incidents share IOCs (same C2 IP, same malware hash, similar TTPs) An ISAC partner shares indicators...
implementing-dmarc-dkim-spf-email-security
SPF, DKIM, and DMARC form the three pillars of email authentication. Together they prevent domain spoofing, validate message integrity, and define pol...
owasp-agentic
This SKILL.md is the entrypoint for the OWASP Agentic Top 10 skill. The skill encodes the OWASP Top 10 for Agentic Applications (2026) as structured, ...
owasp-cicd
This SKILL.md is the entrypoint for the OWASP CI/CD Top 10 skill. The skill encodes the OWASP Top 10 CI/CD Security Risks as structured, machine-reada...
owasp-llm
This SKILL.md is the entrypoint for the OWASP LLM Top 10 skill. The skill encodes the OWASP Top 10 for LLM Applications (2025) as structured, machine-...
owasp-infrastructure
This SKILL.md is the entrypoint for the OWASP Infrastructure Top 10 skill. The skill encodes the OWASP Infrastructure Security Top 10 (2024) as struct...
owasp-docker
This SKILL.md is the entrypoint for the OWASP Docker Top 6 skill. The skill encodes the OWASP Docker Security Top 6 as structured, machine-readable re...
secure-by-design
This SKILL.md is the entrypoint for the Secure by Design skill. The skill synthesizes the UK Government Secure by Design Principles (10 principles) an...
owasp-top-10
This SKILL.md is the entrypoint for the OWASP Top 10 skill. The skill encodes the OWASP Top 10 for Web Applications (2025) as structured, machine-read...
owasp-mcp
This SKILL.md is the entrypoint for the MCP Vulnerabilities skill. The skill encodes the OWASP MCP Top 10 (2025) as structured, machine-readable refer...
github-archive
Purpose: Query immutable GitHub event history via BigQuery to obtain tamper-proof forensic evidence for security investigations. Investigating securit...
code-health
Runs a comprehensive code health scan using the Centinela (QA) agent. Periodic codebase hygiene check Before a release to ensure no dead code or unres...