Skill rating
2 687 skills. The A–F grade combines safety (60%) and quality (40%); tests add a bonus. The rating refreshes automatically from open catalogs.
ManufacturingLogistics and warehouseProcurementQuality controlContact centreField serviceFinanceCustomer supportindustry shortcuts
| # | Grade | Skill | Score ▾ | Safety | Quality | Process | Tests | Popularity | Updated |
|---|---|---|---|---|---|---|---|---|---|
| 2551 | B | Cross-platform desktop application framework combining Rust backend with web frontend, emphasizing security and performance | 79 | 75 | D | — | ★ 5 | 10 Jul 2026 | |
| 2552 | B | firebase-apk-scannerProcedureFirebaseSecurityWriting and documentsLord1Egypt/RA-SkillsAgent Skillsnot recommended Scans Android APKs for Firebase security misconfigurations including open databases, storage buckets, authentication issues, and exposed cloud functions. Use when analyzing APK files for Firebase vuln | 70 | 88 | C | — | ★ 5 | 10 Jul 2026 | |
| 2553 | B | Guides authoring of high-quality YARA-X detection rules for malware identification. Use when writing, reviewing, or optimizing YARA rules. Covers naming conventions, string selection, performance opti | 83 | 69 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2554 | C | Security scanner and runtime guard for OpenClaw skills, MCP servers, and AI agent workflows. Detects prompt injection, identity hijacking, memory poisoning, A2A contagion, secret leaks, supply-chain a | 54 | 81 | C | — | ↓ 6 300 ★ 2 | 19 May 2026 | |
| 2555 | B | Generate trust center page | 100 | 38 | C | — | ★ 14 | 16 Jun 2026 | |
| 2556 | B | Skill: MAMPE Industrial – Smart Asset Transformation & Mechatronik-ExpertiseGeneratorSecuritymodbender/skill-library-mcpAgent Skills mampe industrial core | 100 | 37 | D | — | ★ 14 | 16 Jun 2026 | |
| 2557 | B | Scans your OpenClaw environment for leaked secrets — API keys, tokens, credentials in .env files, installed skills, and shell history. Runs silently on startup, deep scans on demand. Fixes issues wi | 84 | 62 | C | — | ★ 14 | 16 Jun 2026 | |
| 2558 | B | privilege-escalation-methodsProcedureMySQLSoftware developmentSecurityLord1Egypt/RA-SkillsAgent Skills Provide comprehensive techniques for escalating privileges from a low-privileged user to root/administrator access on compromised Linux and Windows systems. Essential for penetration testing post-expl | 76 | 77 | C | — | ★ 5 | 10 Jul 2026 | |
| 2559 | B | Comprehensive security audit and vulnerability detection for JavaScript/TypeScript applications following OWASP Top 10. Use when (1) Users say 'audit security', 'check for vulnerabilities', 'security | 74 | 79 | C | — | ★ 5 | 10 Jul 2026 | |
| 2560 | B | HIPAA compliance, healthcare regulations, privacy and security standards for medical organizations and providers | 99 | 41 | C | — | ★ 5 | 10 Jul 2026 | |
| 2561 | B | Human resources management, employee relations, recruitment support, and HR compliance assistance | 100 | 41 | C | — | ★ 5 | 10 Jul 2026 | |
| 2562 | C | Skill Security — 安全审计扫描器,帮助你快速发现 Skill 中的安全风险。轻量 SAST 污点追踪(Python AST + JS 词法近似,source→sink 证据链降误报)、规则引擎(YAML 规则包热插拔扩展)、社区规则(schema 校验 + 来源记录 + 签名验证)、提示注入 ML 语义检测(ONNX + 正则降级)、系统级行为捕获(eBPF Linux / ETW | 88 | 45 | F will not run | — | ↓ 945 | 2 d ago | |
| 2563 | C | 97 | 37 | C | — | ↓ 203 | 31 d ago | ||
| 2564 | C | 授权 Web 渗透测试 Skill。模型自主威胁建模,JSON Schema 校验状态文件结构,输出按功能列出测了哪些威胁。 Use when user asks to perform authorized web penetration testing, vulnerability assessment on a web application, security testing with an | 61 | 90 | D | — | ↓ 114 | 5 d ago | |
| 2565 | C | Guardian Angel gives AI agents a moral conscience rooted in Thomistic virtue ethics.
Rather than relying solely on rule lists, it cultivates stable virtuous dispositions—
prudence, justice, fortitude, | 65 | 68 | B | — | ★ 2 141 | 20 Jul 2026 | |
| 2566 | C | Complete methodology for evaluating, designing, building, securing, and operating blockchain-based systems. Covers smart contract development, DeFi protocol design, token economics, security auditi... | 86 | 57 | D | — | ★ 14 | 16 Jun 2026 | |
| 2567 | C | Drift detection + baseline integrity guard for agent workspace files with automatic alerting support | 80 | 64 | C | — | ★ 14 | 16 Jun 2026 | |
| 2568 | C | Temu 全球站电商合规(Compliance)API,经 LinkFox 网关转发 Partner Global 合规相关 OpenAPI(bg.compliance.*、bg.arbok.open.*、bg.flash.open.* 等,共 9 个接口)。当用户提到 Temu Global 合规、商品资质、GPSR、治理属性、实拍图、资质上传、bg.compliance.edit、arbok | 67 | 73 | D | — | ↓ 1 168 | 30 d ago | |
| 2569 | B | 99 | 40 | D | — | ★ 5 | 10 Jul 2026 | ||
| 2570 | C | Handle operations requiring user confirmation, permission verification, and strict adherence to explicit instructions. Activate when: (1) Operations need sudo/elevated permissions, (2) File deletion o | 65 | 69 | F will not run | — | ↓ 936 ★ 1 | 18 May 2026 | |
| 2571 | C | Real-time cryptocurrency scam detection with database-first architecture. Protects users from phishing, honeypots, rug pulls, and ponzi schemes. No external API calls during checks! | 70 | 62 | D | — | ↓ 1 621 | 17 May 2026 | |
| 2572 | C | code-security-auditAnalyzerGitHubAWSSecuritySoftware developmentLeoYeAI/openclaw-master-skillsAgent Skillsnot recommended Comprehensive code security audit toolkit combining OWASP Top 10 vulnerability scanning, dependency analysis, secret detection, SSL/TLS verification, AI Agent security checks, and automated security s | 58 | 75 | D | — | ★ 2 141 | 20 Jul 2026 | |
| 2573 | C | AI-powered cryptocurrency safety assistant with database-first architecture. Protects users from phishing, honeypots, rug pulls, and ponzi schemes. No external API calls during checks! | 70 | 62 | D | — | ↓ 1 530 | 17 May 2026 | |
| 2574 | C | alibabacloud-sas-openclaw-securityAnalyzerData and analyticsSecurityClawHubAgent Skillsnot recommended Perform security operations on OpenClaw environments by calling Alibaba Cloud Security Center (SAS) and ECS APIs via the aliyun CLI. Supports asset queries, vulnerability detection, baseline checks, a | 58 | 82 | F will not run | — | ↓ 793 | 18 May 2026 | |
| 2575 | C | 自动化渗透测试全流程:前置确认、信息收集、OWASP Top10漏洞扫描、CVE匹配验证、报告生成与docx转换。 | 71 | 70 | D | — | ↓ 256 | 38 d ago | |
| 2576 | C | Comprehensive code security audit toolkit combining OWASP Top 10 vulnerability scanning, dependency analysis, secret detection, SSL/TLS verification, AI Agent security checks, and automated security s | 58 | 75 | D | — | ↓ 1 174 ★ 3 | 11 May 2026 | |
| 2577 | C | Operate 20+ penetration-testing tools (Nmap, Nuclei, SQLMap, FFUF, Hashcat, and more) through structured workflows with consistent output handling. | 47 | 84 | D | — | ★ 46 317 | 16 h ago | |
| 2578 | C | STRIDE threat modeling, DREAD risk scoring, secret detection, and secure architecture design. Use when conducting threat models, reviewing code for vulnerabilities, designing defense-in-depth, or scan | 72 | 76 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2579 | C | Use when the user wants a security audit, penetration test, threat model, vulnerability hunt, security fix plan, SBOM, compliance mapping, privacy assessment, or security posture comparison between ru | 60 | 80 | B | — | ↓ 605 | 17 May 2026 | |
| 2580 | C | Encrypt, decrypt, and manage keys with the SAFE CLI — a modern GPG alternative with post-quantum support. | 75 | 53 | C | — | ↓ 1 711 | 18 May 2026 | |
| 2581 | C | Skill Security Reviewer v3.0.0AnalyzerSoftware developmentData and analyticsmodbender/skill-library-mcpAgent Skills <!-- Skill Security Reviewer | Version 3.0.0 | Author: chris@zast.ai --> | 84 | 54 | F | — | ★ 14 | 16 Jun 2026 | |
| 2582 | C | Backup and restore OpenClaw agent memory to IPFS with AES-256-GCM encryption and X1 blockchain CID anchoring | 80 | 61 | C | — | ★ 14 | 16 Jun 2026 | |
| 2583 | C | Manage youbaolian, orders, users, organ REST API. | 76 | 65 | D | — | ★ 14 | 16 Jun 2026 | |
| 2584 | C | talos-os-expertProcedureKubernetesGitHubSecurityInfrastructureLord1Egypt/RA-SkillsAgent Skillsnot recommended Elite Talos Linux expert specializing in immutable Kubernetes OS, secure cluster deployment, machine configurations, talosctl CLI operations, upgrades, and production-grade security hardening. Expert | 79 | 63 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2585 | C | 基于人民卫生出版社《诊断学》第10版的临床诊断技能集合 — 183 项核心诊断技能,涵盖病史采集、 体格检查、实验室检验解读、心电图与影像分析、常见症状鉴别诊断、专科操作规范及临床推理方法。 | 92 | 31 | F will not run | — | ↓ 450 | 6 Jun 2026 | |
| 2586 | C | architecture-visualization-governanceAnalyzerData and analyticsSecurityLeoYeAI/openclaw-master-skillsAgent Skills Visualize and govern your cloud architectures. Get architecture assessments, risk heatmaps, and compliance dashboards in one place. | 63 | 63 | F will not run | — | ★ 2 141 | 20 Jul 2026 | |
| 2587 | C | 91 | 37 | C | — | ↓ 214 | 31 d ago | ||
| 2588 | C | Runs defensive security: alert triage, compromise investigation, attack paths, vulnerability prioritization, detection, and risk reporting. Use when an alert, a suspicious login, a reported email, enc | 60 | 66 | A | — | ↓ 2 533 ★ 1 | 27 Jul 2026 | |
| 2589 | C | Security audit, hardening, threat modeling (STRIDE/PASTA), Red/Blue Team, OWASP checks, code review, incident response, and infrastructure security for any project. | 81 | 56 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2590 | C | Drift detection + baseline integrity guard for agent workspace files with automatic alerting support | 75 | 64 | D | — | ★ 5 | 10 Jul 2026 | |
| 2591 | C | 100 | 21 | D | — | ↓ 202 | 31 d ago | ||
| 2592 | D | Safe command execution for OpenClaw Agents with automatic danger pattern detection, risk assessment, user approval workflow, and audit logging. Use when agents need to execute shell commands that may | 47 | 75 | D | — | ↓ 9 465 ★ 8 | 18 May 2026 | |
| 2593 | C | Security engineering toolkit for threat modeling, vulnerability analysis, secure architecture, and penetration testing. Includes STRIDE analysis, OWASP guidance, cryptography patterns, and security sc | 70 | 66 | F will not run | — | ★ 14 | 16 Jun 2026 | |
| 2594 | C | Tork Guardian for OpenClawAnalyzerSecurityAI and agentsmodbender/skill-library-mcpAgent Skillsnot recommended Enterprise-grade security and governance layer for OpenClaw agents. Detect PII, enforce policies, generate compliance receipts, control tool access, and scan skills for vulnerabilities before insta... | 68 | 68 | F | — | ★ 14 | 16 Jun 2026 | |
| 2595 | C | 100 | 6 | B | — | ↓ 871 ★ 1 | 25 Jun 2026 | ||
| 2596 | C | Visualize and govern your cloud architectures. Get architecture assessments, risk heatmaps, and compliance dashboards in one place. | 63 | 63 | F will not run | — | ↓ 692 | 18 May 2026 | |
| 2597 | C | macOS security bypass playbook. Use when targeting macOS endpoints and need to bypass TCC, Gatekeeper, SIP, sandbox, code signing, or entitlement-based protections during authorized red team or pentes | 69 | 68 | F will not run | — | ★ 5 | 10 Jul 2026 | |
| 2598 | D | 99 | 0 | C | — | ↓ 2 041 ★ 2 | 11 May 2026 | ||
| 2599 | C | Automatic security gate that checks packages against a vulnerability database before installation. Use before any npm install, pip install, yarn add, or package manager operation. | 44 | 83 | C | — | ↓ 2 791 | 18 May 2026 | |
| 2600 | C | Plan what happens to your digital life if you die or become incapacitated. Inventory accounts, subscriptions, crypto wallets, important files, social media legacy contacts, and generate a sealed instr | 47 | 88 | D | — | ↓ 2 373 | 30 d ago |