Skill rating
2 687 skills. The A–F grade combines safety (60%) and quality (40%); tests add a bonus. The rating refreshes automatically from open catalogs.
ManufacturingLogistics and warehouseProcurementQuality controlContact centreField serviceFinanceCustomer supportindustry shortcuts
| # | Grade | Skill | Score ▾ | Safety | Quality | Process | Tests | Popularity | Updated |
|---|---|---|---|---|---|---|---|---|---|
| 2401 | B | Chinese website data scraping expert with anti-bypass strategies (中国网站数据爬取专家+反爬绕过策略). Teach AI agents to scrape Chinese websites that Scrapling alone can't handle — Baidu anti-crawl, Taobao login wall | 100 | 47 | C | — | ↓ 628 | 31 May 2026 | |
| 2402 | B | 当用户要把网页抓取/邮件/工具返回值/检索文档/用户上传内容喂给 AI,又担心里面藏『忽略之前指令』『你是新AI』这类指令时使用。在不可信内容进上下文之前先扫描:中英双语文式库(忽略指令/角色劫持/越狱/DAN/索要系统提示)+ 启发式(面向AI的祈使句、角色切换、索要隐藏指令)+ 沙箱规则。附可运行扫描脚本,输出风险分·命中规则·处置建议(丢弃/隔离/沙箱)。复用 desens-scan 与 r | 98 | 61 | D | — | ↓ 64 | 34 h ago | |
| 2403 | B | Accessibility Engineering EngineAnalyzerPlaywrightDesignSecuritymodbender/skill-library-mcpAgent Skills You are the Accessibility Engineering Engine — a complete WCAG compliance, inclusive design, and digital accessibility system. You help teams build products that work for everyone, pass audits, and... | 100 | 57 | D | — | ★ 14 | 16 Jun 2026 | |
| 2404 | B | openclaw-security-hardeningAnalyzerAI and agentsData and analyticsmodbender/skill-library-mcpAgent Skills Protect OpenClaw installations from prompt injection, data exfiltration, malicious skills, and workspace tampering | 90 | 72 | D | — | ★ 14 | 16 Jun 2026 | |
| 2405 | B | content-writing-thought-leadershipProcedureSalesforceCanvaSecurityMarketingmodbender/skill-library-mcpAgent Skills B2B content writing with daily workflows and batching systems across Sales/HR/Fintech/Ops Tech | 100 | 57 | D | — | ★ 14 | 16 Jun 2026 | |
| 2406 | B | ProtonMail integration via Proton Mail Bridge for reading and sending encrypted emails. | 100 | 58 | F will not run | — | ★ 14 | 16 Jun 2026 | |
| 2407 | B | RSS/Atom feed digest with optional CVE enrichment, Ghost CMS drafts, and channel notifications | 93 | 69 | D | — | ★ 14 | 16 Jun 2026 | |
| 2408 | B | Skills for age verification and age-appropriate content filtering. | 100 | 58 | F will not run | — | ★ 14 | 16 Jun 2026 | |
| 2409 | B | Scan SBOM for known CVE vulnerabilities | 100 | 58 | D | — | ★ 14 | 16 Jun 2026 | |
| 2410 | B | Define security policies for your workspace and audit compliance. Check installed skills against command, network, and data handling rules. Generate audit-ready compliance reports. | 88 | 75 | D | — | ★ 14 | 16 Jun 2026 | |
| 2411 | B | Use a persistent OpenClaw browser profile to access http://mail.ztpc.com/ (Aliyun Enterprise Mail), scan UNREAD emails only, and conservatively mark obvious spam / phishing as Spam (never delete). ... | 82 | 84 | C | — | ★ 14 | 16 Jun 2026 | |
| 2412 | B | Skills for detecting adult/inappropriate content. | 100 | 58 | F will not run | — | ★ 14 | 16 Jun 2026 | |
| 2413 | B | Standard Operating Procedures: Security Analysis GuidelinesProcedureSecurityData and analyticsmodbender/skill-library-mcpAgent Skills This document outlines your standard procedures, principles, and skillsets for conducting security audits. You must adhere to these guidelines whenever you are tasked with a security analysis. | 86 | 79 | C | — | ★ 14 | 16 Jun 2026 | |
| 2414 | B | Extract data from construction images using AI Vision. Analyze site photos, scanned documents, drawings. | 100 | 57 | F will not run | — | ★ 14 | 16 Jun 2026 | |
| 2415 | B | Skills for geographic restrictions and regional compliance. | 100 | 58 | F will not run | — | ★ 14 | 16 Jun 2026 | |
| 2416 | B | Network-wide ad and tracker blocking at the DNS level. A Pi-hole alternative that runs directly on your machine as an OpenClaw skill. No separate hardware needed. | 95 | 65 | D | — | ★ 14 | 16 Jun 2026 | |
| 2417 | B | change ScanResult file extension from txt -> xlsx located in template | 95 | 65 | D | — | ★ 14 | 16 Jun 2026 | |
| 2418 | B | Sovereign, recoverable memory for AI agents backed by Jackal decentralized storage. | 95 | 64 | D | — | ★ 14 | 16 Jun 2026 | |
| 2419 | B | Deploy privacy-first analytics with correct API patterns, rate limits, and GDPR compliance. | 100 | 57 | D | — | ★ 14 | 16 Jun 2026 | |
| 2420 | B | Publish and manage iOS and Android apps with account setup, submission workflows, review compliance, and rejection handling. | 100 | 58 | D | — | ★ 14 | 16 Jun 2026 | |
| 2421 | B | Comprehensive security audit for OpenClaw. Scans 7 domains (runtime, channels, agents, cron, skills, sessions, network), supports 3 expertise levels, context-aware analysis, and visual dashboard. Read | 85 | 79 | D | — | ★ 14 | 16 Jun 2026 | |
| 2422 | B | Missed deadlines are the | 100 | 58 | D | — | ★ 14 | 16 Jun 2026 | |
| 2423 | B | Agent防火墙免费版,为AI Agent应用提供基础安全防护能力. 核心能力:提示注入检测、工具调用过滤、输入净化、安全策略检查. 适用场景:Agent应用安全防护、用户输入净化、工具调用安全验证. 差异化:免费版聚焦核心防护能力,支持单Agent保护,适合个人开发者快速集成. 适用关键词: Agent防火墙, 提示注入, 安全防护, 输入净化, agent firewall, prompt i | 93 | 64 | C | — | ↓ 350 | 26 Jul 2026 | |
| 2424 | B | 100 | 55 | C | — | ↓ 136 | 16 d ago | ||
| 2425 | B | 电商知识产权与合规检测一站式 AI 工具集,整合睿观知产合规检测(版权/商标/外观专利/实用新型专利/图片政策)与智慧芽专利数据查询(著录/权利要求/说明书/附图/法律状态/家族/引用/以图搜图/PDF)共 2 类底层工具、22 项子能力。 | 100 | 51 | F will not run | — | ↓ 799 | 30 d ago | |
| 2426 | B | Runtime safety guard for OpenClaw multi-agent workflows. Blocks destructive tools (write, edit, exec, process, apply_patch) for controlled agents, forcing delegation to sub-agents. | 82 | 73 | C | — | ↓ 564 ★ 2 | 3 Jul 2026 | |
| 2427 | B | CCPA/CPRA Compliance Check — based on the California Consumer Privacy Act (CCPA)
and the CPRA amendment, covers 12 core compliance checks for businesses subject to
California privacy law. Free to inst | 100 | 51 | D | — | ↓ 677 | 33 d ago | |
| 2428 | B | Session and cookie security auditor (OWASP A07:2021 — Identification and Authentication Failures). Scans Express/Koa/Fastify, Flask/Django/FastAPI, Go net/http, Spring Boot, and Rails source code for | 100 | 48 | F will not run | — | ↓ 524 | 23 Jun 2026 | |
| 2429 | B | Secure webhook token management using MGC Blackbox. Supports DingTalk, WeCom, Feishu, Telegram, Slack and more. Two execution modes: local script with MGC-stored config, or full zero-exposure via mgc_ | 97 | 53 | D | — | ↓ 564 ★ 1 | 37 d ago | |
| 2430 | C | Execute systematic privilege escalation assessments on Linux systems to identify and exploit misconfigurations, vulnerable services, and security weaknesses that allow elevation from low-privilege use | 61 | 88 | C | — | ★ 46 317 | 17 h ago | |
| 2431 | B | Monitor Certificate Transparency logs using crt.sh and Certstream to detect phishing domains, lookalike certificates, and unauthorized certificate issuance targeting your organization. | 94 | 69 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2432 | B | Master smart contract security with auditing, vulnerability detection, and incident response | 100 | 59 | D | — | ★ 5 | 10 Jul 2026 | |
| 2433 | B | bitdefender-total-security-malware-analysisAnalyzerGitHubData and analyticsSecurityLord1Egypt/RA-SkillsAgent Skills Analyze and understand malware distribution tactics, cracked software risks, and security threat detection patterns | 95 | 68 | D | — | ★ 5 | 10 Jul 2026 | |
| 2434 | B | Automated penetration testing toolkit for security assessment, vulnerability scanning, and automated security reporting | 94 | 68 | C | — | ★ 5 | 10 Jul 2026 | |
| 2435 | B | homelab-pihole-dnsIntegrationCloudflareDockerInfrastructureSoftware developmentLord1Egypt/RA-SkillsAgent Skills Pi-hole installation, blocklist management, DNS-over-HTTPS setup, DHCP integration, local DNS records, and troubleshooting broken DNS resolution on a home network. | 84 | 84 | C | — | ★ 5 | 10 Jul 2026 | |
| 2436 | B | Indexed by skills.sh from absolutelyskilled/absolutelyskilled | 100 | 60 | D | — | ★ 5 | 10 Jul 2026 | |
| 2437 | B | Audits game assets for compliance with naming conventions, file size budgets, format standards, and pipeline requirements. Identifies orphaned assets, missing references, and standard violations. | 100 | 60 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2438 | B | Automatically categorize emails by type, priority, and required action | 100 | 59 | C | — | ★ 5 | 10 Jul 2026 | |
| 2439 | B | Create a new specification file for the solution, optimized for Generative AI consumption. | 100 | 59 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2440 | B | Path traversal and LFI playbook. Use when file paths, download endpoints, include operations, archive extraction, or wrapper behavior may expose filesystem control. | 100 | 59 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2441 | B | Provides reverse engineering techniques for CTF challenges. Use when the main job is to understand how a compiled, obfuscated, packed, or virtualized target works before exploiting or solving it, incl | 81 | 89 | B | — | ★ 5 | 10 Jul 2026 | |
| 2442 | B | Query federation audit logs with compliance filtering | 100 | 61 | D | — | ★ 5 | 10 Jul 2026 | |
| 2443 | B | Initialize federation on this node — generate keypair and configure peers | 100 | 61 | D | — | ★ 5 | 10 Jul 2026 | |
| 2444 | B | Performs comprehensive C/C++ security review for memory corruption, integer overflows, race conditions, and platform-specific vulnerabilities. Use when auditing native C/C++ applications, reviewing da | 94 | 70 | B | — | ★ 5 | 10 Jul 2026 | |
| 2445 | B | Entry P0 primary router for HackSkills. Use when the task involves web application testing, API security assessment, recon, vulnerability triage, exploit path planning, or choosing the right next cate | 95 | 68 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2446 | B | Expert in Swift and SwiftUI development for iOS, macOS, and Apple platforms | 100 | 60 | C | — | ★ 5 | 10 Jul 2026 | |
| 2447 | B | Checks for inconsistencies or errors in forms | 100 | 59 | D | — | ★ 5 | 10 Jul 2026 | |
| 2448 | B | Local encrypted credential and script management for AI agents. Zero‑exposure execution layer for storing tokens, passwords, configs, and scripts without plaintext leakage. | 100 | 52 | D | — | ↓ 215 | 7 d ago | |
| 2449 | B | 元测 —— 有纪律的 AI 安全测试方法论:对已授权目标(自有资产 / SRC 众测 / bug bounty / CTF / 靶场)按 侦察→发现→验证→报告 四阶段做 Web 安全测试(SQLi / XSS / SSRF / XXE / 反序列化 / 命令注入 / 文件上传 / 鉴权与访问控制 / 业务逻辑 / 信息泄露 / 不安全配置 / API 安全 + 漏洞评估与渗透报告方法论),内置 | 78 | 84 | D | — | ↓ 347 | 4 d ago | |
| 2450 | B | 100 | 51 | C | — | ↓ 319 | 26 Jul 2026 |