Skill rating
2 687 skills. The A–F grade combines safety (60%) and quality (40%); tests add a bonus. The rating refreshes automatically from open catalogs.
ManufacturingLogistics and warehouseProcurementQuality controlContact centreField serviceFinanceCustomer supportindustry shortcuts
| # | Grade | Skill | Score ▾ | Safety | Quality | Process | Tests | Popularity | Updated |
|---|---|---|---|---|---|---|---|---|---|
| 51 | A | Govern Power Automate flows and Power Apps at scale using the FlowStudio MCP cached store. Classify flows by business impact, detect orphaned resources, audit connector usage, enforce compliance stand | 100 | 84 | D | — | ★ 38 928 | 35 h ago | |
| 52 | A | Automated security scanning and vulnerability detection for web applications, APIs, and infrastructure. Use when you need to scan targets for vulnerabilities, check SSL certificates, find open ports, | 99 | 87 | C | — | ↓ 12 246 ★ 4 | 11 May 2026 | |
| 53 | A | Use when building email features, emails going to spam, high bounce rates, setting up SPF/DKIM/DMARC authentication, implementing email capture, ensuring compliance (CAN-SPAM, GDPR, CASL), handling we | 100 | 86 | D | — | ↓ 5 105 ★ 11 | 11 May 2026 | |
| 54 | A | quality-documentation-managerProcedureQuality controlWriting and documentsalirezarezvani/claude-skillsAgent Skills Document control system management for medical device QMS. Covers document numbering, version control, change management, and 21 CFR Part 11 compliance. Use when working on document control procedures | 100 | 84 | C | — | ★ 25 878 | 14 d ago | |
| 55 | A | Framework for rolling out organizational changes without chaos. Covers the ADKAR model adapted for startups, communication templates, resistance patterns, and change fatigue management. Handles proces | 100 | 85 | C | — | ★ 25 878 | 14 d ago | |
| 56 | A | International market expansion strategy. Market selection, entry modes, localization, regulatory compliance, and go-to-market by region. Use when expanding to new countries, evaluating international m | 100 | 85 | C | — | ★ 25 878 | 14 d ago | |
| 57 | A | Scrapes Amazon product data from ASINs using browseract.com automation API and performs surgical competitive analysis. Compares specifications, pricing, review quality, and visual strategies to identi | 99 | 86 | B | — | ↓ 6 484 ★ 7 | 11 May 2026 | |
| 58 | A | Swift Concurrency review and remediation for Swift 6.2+. Use when asked to review Swift Concurrency usage, improve concurrency compliance, or fix Swift concurrency compiler errors in a feature or file | 100 | 84 | C | — | ↓ 3 924 ★ 5 | 11 May 2026 | |
| 59 | A | Analyze any public company's AI exposure using the 8-dimension AI Exposure Index. Fetches last 4 10-K filings (or international equivalents), O*NET data, patents, and earnings transcripts to score vul | 98 | 99 | C | — | ↓ 911 ★ 1 | 11 May 2026 | |
| 60 | A | Manage Microsoft Intune and Entra ID device management via the Microsoft Graph API. Use this skill whenever the user mentions Intune, MDM, managed devices, device compliance, device sync/reboot/lock/w | 100 | 95 | C | — | ↓ 1 776 | 9 Jul 2026 | |
| 61 | A | quality-documentation-managerProcedureQuality controlWriting and documentsLeoYeAI/openclaw-master-skillsAgent Skills Document control system management for medical device QMS. Covers document numbering, version control, change management, and 21 CFR Part 11 compliance. Use for document control procedures, change con | 100 | 90 | C | — | ★ 2 141 | 20 Jul 2026 | |
| 62 | A | Check Point R80+/R81.x rulebase layer analysis with blade activation audit, SmartConsole management plane validation, NAT policy review, identity awareness assessment, and compliance verification. Sys | 100 | 89 | C | — | ★ 2 141 | 20 Jul 2026 | |
| 63 | A | n8n-workflow-automationProcedureZapierSecurityWriting and documentsLeoYeAI/openclaw-master-skillsAgent Skills Designs and outputs n8n workflow JSON with robust triggers, idempotency, error handling, logging, retries, and human-in-the-loop review queues. Use when you need an auditable automation that won’t sil | 100 | 91 | A | — | ★ 2 141 | 20 Jul 2026 | |
| 64 | A | AI compliance and policy engine — evaluate scan results against OWASP, NIST, SOC 2, ISO 27001, CMMC, EU AI Act, AISVS v1.0, and related frameworks. Generate SBOMs and compliance reports. Use when: "co | 100 | 90 | D | — | ★ 2 141 | 20 Jul 2026 | |
| 65 | A | cisco-firewall-auditAnalyzerInfrastructureData and analyticsLeoYeAI/openclaw-master-skillsAgent Skills Dual-platform Cisco ASA and Firepower Threat Defense (FTD) firewall audit with ACL analysis, NAT policy validation, Modular Policy Framework / Access Control Policy evaluation, Snort IPS assessment, V | 100 | 89 | C | — | ★ 2 141 | 20 Jul 2026 | |
| 66 | A | CIS benchmark compliance assessment for network infrastructure devices. Maps device configuration against CIS benchmark controls organized by Management Plane, Control Plane, and Data Plane categories | 100 | 89 | C | — | ★ 2 141 | 20 Jul 2026 | |
| 67 | A | Operational playbook for selling virtual services on 闲鱼 (Xianyu). Use proactively whenever the user mentions '闲鱼', 'Xianyu', '闲鱼副业', '闲鱼卖服务', '闲鱼上架', '闲鱼标题', '闲鱼运营', '闲鱼流量', '闲鱼账号', '闲鱼推广', or wants t | 100 | 90 | B | evals | ★ 2 141 | 20 Jul 2026 | |
| 68 | A | GDPR and German DSGVO compliance automation. Scans codebases for privacy risks, generates DPIA documentation, tracks data subject rights requests. Use for GDPR compliance assessments, privacy audits, | 100 | 91 | C | — | ★ 2 141 | 20 Jul 2026 | |
| 69 | A | Open security platform for agentic infrastructure — checks packages for CVEs (OSV, NVD, EPSS, KEV), scans container images, verifies provenance, scans filesystems, and generates SBOMs. Use when: "chec | 100 | 90 | D | — | ★ 2 141 | 20 Jul 2026 | |
| 70 | A | steward-opsProcedureWordExcelData and analyticsInfrastructureLeoYeAI/openclaw-master-skillsAgent Skills World-class autonomous admin, personal ops, chief-of-staff skill system. Use ANY time user asks to triage email, manage inbox, track deadlines, monitor renewals, set reminders, capture tasks, build da | 100 | 89 | C | — | ★ 2 141 | 20 Jul 2026 | |
| 71 | A | Multi-agent debate council — spawns 3 specialized sub-agents in parallel (Scholar, Engineer, Muse) for Round 1, then optional Round 2 cross-examination to challenge assumptions and strengthen the fina | 100 | 89 | B | — | ★ 2 141 | 20 Jul 2026 | |
| 72 | A | Activate when: user says 'customers aren't switching to us even though we're better,' 'our churn surveys aren't predicting who actually leaves,' 'we're debating features instead of what the customer a | 100 | 95 | C | — | ↓ 1 194 ★ 3 | 16 Jul 2026 | |
| 73 | A | Backup Clawdbot workspace and config to GitHub with git-crypt encryption. Use for daily automated backups or manual backup/restore operations. | 100 | 84 | F | — | ↓ 4 460 ★ 2 | 18 May 2026 | |
| 74 | A | Run Fabric AI patterns for text transformation, analysis, and content creation. Use when the user asks to use a Fabric pattern, extract wisdom, analyze claims, improve writing, summarize with Fabric, | 100 | 87 | D | — | ↓ 2 510 ★ 2 | 17 May 2026 | |
| 75 | A | 中国个人信息保护法(PIPL)合规检查、风险评估和文档生成工具。
为企业提供全面的PIPL合规解决方案。
Use when: 需要进行PIPL合规自查、个人信息处理风险评估、
合规文档生成、企业合规管理、数据处理影响评估、跨境传输合规检查。
🎉 v1.2.2 重要更新:
- 🔒 安全扫描全部通过,依赖版本锁定(修复 CVE 漏洞)
- 📊 支持 JSON/Markdown/HTML/CS | 100 | 92 | C | — | ↓ 1 330 ★ 1 | 25 Jul 2026 | |
| 76 | A | Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization. | 99 | 85 | C | — | ★ 46 317 | 16 h ago | |
| 77 | A | cloudflare-security-auditAnalyzerCloudflareSecuritySoftware developmentsickn33/agentic-awesome-skillsAgent Skills Audit authorized codebases for exploitable vulnerabilities using scoped reconnaissance, adversarial review, validation, and structured reporting. | 99 | 85 | C | — | ★ 46 317 | 16 h ago | |
| 78 | A | Execute comprehensive web application security testing using Burp Suite's integrated toolset, including HTTP traffic interception and modification, request analysis and replay, automated vulnerability | 99 | 84 | C | — | ★ 46 317 | 16 h ago | |
| 79 | A | laravel-security-auditAnalyzerSecuritySoftware developmentsickn33/agentic-awesome-skillsAgent Skills Security auditor for Laravel applications. Analyzes code for vulnerabilities, misconfigurations, and insecure practices using OWASP standards and Laravel security best practices. | 99 | 84 | B | — | ★ 46 317 | 16 h ago | |
| 80 | A | wp-site-health-auditorAnalyzerWordPressSoftware developmentSecuritysickn33/agentic-awesome-skillsHermes Turns a WordPress Site Health report into a risk-tiered, backup-first fix plan with exact WP-CLI/PHP snippets. Use for site health, recommended improvements, or critical issue reports. | 100 | 82 | B | — | ★ 46 317 | 16 h ago | |
| 81 | A | Master Flutter development with Dart 3, advanced widgets, and multi-platform deployment. | 99 | 84 | B | — | ★ 46 317 | 16 h ago | |
| 82 | A | Execute comprehensive network traffic analysis using Wireshark to capture, filter, and examine network packets for security investigations, performance optimization, and troubleshooting. | 99 | 85 | C | — | ★ 46 317 | 16 h ago | |
| 83 | A | Execute comprehensive client-side injection vulnerability assessments on web applications to identify XSS and HTML injection flaws, demonstrate exploitation techniques for session hijacking and creden | 98 | 85 | B | — | ★ 46 317 | 16 h ago | |
| 84 | A | Blue-team threat hunting: detection engineering with Sigma/YARA, SIEM query design, and validation of incident detections against known technique patterns. | 98 | 86 | C | — | ★ 46 317 | 16 h ago | |
| 85 | A | Run Bumblebee supply-chain inventory and exposure scans on macOS/Linux to detect compromised packages, extensions, and MCP host configs. | 100 | 83 | B | — | ★ 46 317 | 16 h ago | |
| 86 | A | Go from reverse engineering to a working exploit: stack/heap/kernel pwn workflows with pwntools, libc-database, ROP, and stabilization from CTF to authorized remote targets. | 98 | 86 | D | — | ★ 46 317 | 16 h ago | |
| 87 | A | Authorized OT/ICS security assessment: Purdue-model zoning review, PLC/SCADA exposure, industrial protocol discovery, and passive-first evaluation discipline. | 97 | 86 | C | — | ★ 46 317 | 16 h ago | |
| 88 | A | Check any AI agent codebase against the OWASP Agentic Security Initiative (ASI) Top 10 risks.
Use this skill when:
- Evaluating an agent system's security posture before production deployment
- Runnin | 100 | 83 | F will not run | — | ★ 38 928 | 35 h ago | |
| 89 | A | AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching t | 93 | 92 | B | — | ★ 38 928 | 35 h ago | |
| 90 | A | ISO 27001 ISMS implementation and cybersecurity governance for HealthTech and MedTech companies. Use when designing an ISMS, running security risk assessments, implementing controls, pursuing ISO 2700 | 93 | 94 | C | — | ★ 25 878 | 14 d ago | |
| 91 | A | FDA regulatory consultant for medical device companies. Provides 510(k)/PMA/De Novo pathway guidance, QMSR (21 CFR 820, which incorporates ISO 13485:2016 by reference since 2026-02-02; formerly QSR) c | 94 | 91 | C | — | ★ 25 878 | 14 d ago | |
| 92 | A | engineering-skillsIntegrationPlaywrightAWSInfrastructureSecurityalirezarezvani/claude-skillsAgent Skills Index of the engineering-team skills bundle for Claude Code, Codex, Gemini CLI, Cursor, OpenClaw, and 6 more tools. Architecture, frontend, backend, QA, DevOps, security, AI/ML, data engineering, Play | 99 | 84 | D | — | ★ 25 878 | 14 d ago | |
| 93 | A | Senior SecOps engineer skill for application security, vulnerability management, compliance verification, and secure development practices. Runs SAST/DAST scans, generates CVE remediation plans, check | 94 | 91 | D | — | ★ 25 878 | 14 d ago | |
| 94 | A | AI compliance and policy engine — evaluate scan results against OWASP, NIST, SOC 2, ISO 27001, CMMC, EU AI Act, AISVS v1.0, and related frameworks. Generate SBOMs and compliance reports. Use when: "co | 100 | 90 | D | — | ↓ 4 502 | 3 d ago | |
| 95 | A | Use when cleaning clinical trial data, preparing data for FDA/EMA submission, standardizing SDTM datasets, handling missing values in clinical studies, detecting outliers in lab results, or converting | 100 | 94 | B | — | ↓ 1 177 | 11 May 2026 | |
| 96 | A | Audit and harden OpenClaw configuration for security. Scans openclaw.json for vulnerabilities, exposed credentials, insecure gateway settings, overly permissive exec rules, and missing security best p | 100 | 87 | D | — | ↓ 3 067 ★ 1 | 11 May 2026 | |
| 97 | A | vendor-security-reviewAnalyzerSoftware developmentSecuritymohitagw15856/pm-claude-skillsAgent Skills Run a third-party / vendor security review and assign a risk tier with required controls. Use when asked to assess a vendor's security, run a third-party risk assessment, complete a security questionn | 100 | 90 | B | — | ★ 1 358 | 20 h ago | |
| 98 | A | capital-allocationGeneratorSoftware developmentData and analyticsmohitagw15856/pm-claude-skillsAgent Skills Allocate a finite budget or headcount across competing initiatives by return and strategic fit. Use when asked to allocate budget, decide where to invest, build a funding/portfolio plan, or make trade | 100 | 90 | C | — | ★ 1 358 | 20 h ago | |
| 99 | A | Map HIPAA Security Rule safeguards and run a risk analysis for systems handling PHI. Use when asked to become HIPAA-compliant, assess HIPAA safeguards, prepare for handling PHI/ePHI, or scope a BAA. P | 100 | 90 | B | — | ★ 1 358 | 20 h ago | |
| 100 | A | Assess GDPR compliance and build the core records (ROPA, lawful basis, DSAR, DPIA triggers). Use when asked to get GDPR-compliant, build a Record of Processing Activities, decide a lawful basis, handl | 100 | 90 | C | — | ★ 1 358 | 20 h ago |