Skill rating
2 687 skills. The A–F grade combines safety (60%) and quality (40%); tests add a bonus. The rating refreshes automatically from open catalogs.
ManufacturingLogistics and warehouseProcurementQuality controlContact centreField serviceFinanceCustomer supportindustry shortcuts
| # | Grade | Skill | Score ▾ | Safety | Quality | Process | Tests | Popularity | Updated |
|---|---|---|---|---|---|---|---|---|---|
| 251 | A | Safely triage and remediate GitHub dependency hygiene issues with explicit guardrails. Use when Dependabot PRs fail, pnpm lockfiles break, transitive vulnerabilities appear (e.g., glob/lodash/brace-ex | 100 | 83 | B | — | ↓ 2 456 ★ 1 | 11 May 2026 | |
| 252 | A | Quality audit for merged GitCode PRs: sample by time range or repo list, check compliance (labels, comments, tests, size, etc.), output table. Use when user asks to 抽检/质量检查 已合入的 PR 规范性、多仓库 PR、或 将结果整理成 | 100 | 87 | D | — | ↓ 803 ★ 1 | 11 May 2026 | |
| 253 | A | Scan project dependencies for known security vulnerabilities using the OSV.dev API. Supports npm (package.json), Python/pip (requirements.txt), and Go (go.mod). Use when checking a project for vulnera | 100 | 90 | C | — | ↓ 846 | 11 May 2026 | |
| 254 | A | Chinese content remix tool with API-powered platform rules (中文内容一键改写多平台分发+平台适配规则API). Transform one piece of content into platform-native versions for 小红书/抖音/公众号/知乎/微博/视频号 with real platform rules via | 100 | 90 | C | — | ↓ 890 | 21 May 2026 | |
| 255 | A | Comprehensive editorial review for Chinese content before publication. Use when the user asks to 'review my article', 'proofread this', 'check for errors', 'editorial review', 'pre-publish check', 'co | 100 | 91 | B | — | ↓ 863 | 11 May 2026 | |
| 256 | A | Audit all installed skills for quality, duplicates, structural issues, and best-practice compliance. Use when asked to review, audit, lint, or check skills for problems. Triggers on "audit skills", "s | 100 | 91 | C | — | ↓ 833 | 11 May 2026 | |
| 257 | A | Map application security findings to OWASP Top 10 categories and generate remediation checklists. Use for normalized AppSec review outputs and category-level prioritization. | 100 | 87 | D | — | ↓ 1 431 | 17 May 2026 | |
| 258 | A | Configuration backup, drift detection, and golden config validation across Cisco IOS-XE/NX-OS, Juniper JunOS, and Arista EOS. Covers running vs startup comparison, config archival, section-level drift | 100 | 89 | B | — | ↓ 892 | 11 May 2026 | |
| 259 | A | Comprehensive security audit with 100 iterations (~30-60 min). Use when user says 'security audit', 'ralph security', 'weekly security check', 'audit this project', 'new project security review', or ' | 100 | 88 | C | — | ↓ 1 405 | 11 May 2026 | |
| 260 | A | Perform comprehensive security audits on skills to identify vulnerabilities, unsafe patterns, and compliance issues. Use when auditing skills for security, checking for hardcoded secrets, injection ri | 100 | 90 | B | — | ↓ 812 | 5 Jun 2026 | |
| 261 | A | Lightweight operational audit logging for AI assistants, agent workspaces, and personal automation systems. Use when you need a structured way to record high-value actions such as installs, config cha | 100 | 87 | C | — | ↓ 1 380 | 11 May 2026 | |
| 262 | A | Estimates a person's age from a facial image via the Didit standalone API. Use when implementing age gating, checking if someone is over 18 or 21, performing age verification for compliance, or detect | 100 | 90 | C | — | ↓ 782 | 11 May 2026 | |
| 263 | A | Humanize French ecommerce copy to remove generic AI tone while preserving clarity, persuasion, and compliance awareness. Best for product pages, ads, customer replies, and ecommerce captions written i | 100 | 91 | B | — | ↓ 790 | 11 May 2026 | |
| 264 | A | Review TikTok Shop seller and creator promotional content compliance using official TikTok Shop Seller University guidance. Use when an AI agent needs to check or revise a TikTok Shop video, LIVE, scr | 100 | 91 | B | — | ↓ 771 | 11 May 2026 | |
| 265 | A | When the user wants to create or optimize popups, modals, overlays, slide-ins, or banners for conversion purposes. Also use when the user mentions "exit intent," "popup conversions," "modal optimizati | 100 | 92 | B | — | ★ 150 | 9 d ago | |
| 266 | A | ZFS filesystem administration, pool management, dataset configuration, snapshots, replication, encryption, performance tuning, and troubleshooting on OpenZFS (Linux and macOS). Use when the user asks | 98 | 91 | B | — | ↓ 1 334 | 11 May 2026 | |
| 267 | A | Install and initialise Tribunal — the Claude Code quality enforcement plugin. Use when setting up a new project for AI-assisted development, when a project lacks TDD enforcement, secret scanning, or C | 100 | 89 | D | — | ↓ 745 | 11 May 2026 | |
| 268 | A | Operational playbook for selling virtual services on 闲鱼 (Xianyu). Use proactively whenever the user mentions '闲鱼', 'Xianyu', '闲鱼副业', '闲鱼卖服务', '闲鱼上架', '闲鱼标题', '闲鱼运营', '闲鱼流量', '闲鱼账号', '闲鱼推广', or wants t | 100 | 90 | A | evals | ↓ 761 | 11 May 2026 | |
| 269 | A | Prioritize vulnerability remediation using KEV-style exploitation context plus asset criticality. Use for CVE triage, patch order decisions, and remediation reporting. | 100 | 87 | D | — | ↓ 1 306 | 17 May 2026 | |
| 270 | A | CIS benchmark compliance assessment for network infrastructure devices. Maps device configuration against CIS benchmark controls organized by Management Plane, Control Plane, and Data Plane categories | 100 | 89 | B | — | ↓ 757 | 11 May 2026 | |
| 271 | A | Audit AI agent skills for security vulnerabilities. Use when scanning installed skills against the OWASP Agentic Skills Top 10, checking skills before running them, gating CI/CD on skill safety, or ge | 100 | 86 | B | — | ↓ 1 281 ★ 1 | 1 Jul 2026 | |
| 272 | A | Generate legal documents and ensure compliance for startups. Use this skill when the user mentions: terms of service, privacy policy, GDPR, LGPD, cookie consent, cookie banner, terms and conditions, d | 100 | 91 | C | — | ↓ 772 | 11 May 2026 | |
| 273 | A | Perform comprehensive security audits on codebases, infrastructure configs, API designs, and architecture documents. Use this skill whenever the user wants to review code or config for vulnerabilities | 98 | 92 | B | — | ↓ 767 | 11 May 2026 | |
| 274 | A | Scans a macOS computer for signs of tampering, malware, keyloggers, and suspicious activity — especially useful after a device has been sent for repair or handled by a third party. Use this skill when | 99 | 92 | B | — | ↓ 720 | 11 May 2026 | |
| 275 | A | Runs a backend-backed live safety check for instructions that may trigger tool execution, external calls, file edits, permission changes, destructive or irreversible actions, prompt injection, or comp | 100 | 87 | B | — | ↓ 1 296 | 17 May 2026 | |
| 276 | A | AI runtime security monitoring — context graph analysis, runtime audit log correlation with CVE findings, and vulnerability analytics queries. Use when the user mentions runtime monitoring, context gr | 98 | 85 | C | — | ↓ 5 117 | 4 d ago | |
| 277 | A | Mask, redact, anonymize and censor sensitive information (PII) in screenshots and images — phone numbers, emails, IDs, API keys, crypto wallets, credit cards, passwords, and more. Uses OCR (Tesseract | 100 | 85 | C | — | ↓ 1 137 ★ 1 | 11 May 2026 | |
| 278 | A | Check Point R80+/R81.x rulebase layer analysis with blade activation audit, SmartConsole management plane validation, NAT policy review, identity awareness assessment, and compliance verification. Sys | 100 | 89 | C | — | ↓ 728 | 11 May 2026 | |
| 279 | A | Open Source License guidance, selection, compliance review, and drafting. Use this skill when users ask about choosing open source licenses, checking license compatibility, reviewing projects for OSS | 100 | 87 | C | evals | ↓ 673 ★ 1 | 11 May 2026 | |
| 280 | A | XiaoHongShu (Little Red Book) data collection and interaction toolkit. Use when working with XiaoHongShu (小红书) platform for: (1) Searching and scraping notes/posts, (2) Getting user profiles and detai | 96 | 82 | D | — | ↓ 7 865 ★ 13 | 18 May 2026 | |
| 281 | A | vibecode-production-qa-validatorAnalyzerInfrastructureData and analyticssickn33/agentic-awesome-skillsHermes 13-phase production QA for fullstack Next.js apps: build verification, SEO tags, OG images, favicon, route regression, API auth, page speed, lazy load, vulnerability scan, UI/UX cards, error boundarie | 100 | 75 | C | — | ★ 46 317 | 17 h ago | |
| 282 | A | security-requirement-extractionGeneratorSecurityWriting and documentssickn33/agentic-awesome-skillsAgent Skills Derive security requirements from threat models and business context. Use when translating threats into actionable requirements, creating security user stories, or building security test cases. | 99 | 77 | B | — | ★ 46 317 | 17 h ago | |
| 283 | A | Automated compliance checking against CIS, PCI-DSS, HIPAA, and SOC 2 benchmarks | 100 | 76 | C | — | ★ 46 317 | 17 h ago | |
| 284 | A | openclaw-github-repo-commanderProcedureGitHubSoftware developmentSecuritysickn33/agentic-awesome-skillsHermes 7-stage super workflow for GitHub repo audit, cleanup, PR review, and competitor analysis | 100 | 75 | B | — | ★ 46 317 | 17 h ago | |
| 285 | A | Conduct comprehensive SSH security assessments including enumeration, credential attacks, vulnerability exploitation, tunneling techniques, and post-exploitation activities. This skill covers the comp | 97 | 79 | C | — | ★ 46 317 | 17 h ago | |
| 286 | A | k8s-security-policiesReferenceKubernetesInfrastructureSoftware developmentsickn33/agentic-awesome-skillsAgent Skills Comprehensive guide for implementing NetworkPolicy, PodSecurityPolicy, RBAC, and Pod Security Standards in Kubernetes. | 100 | 76 | F will not run | — | ★ 46 317 | 17 h ago | |
| 287 | A | Provide systematic methodologies for leveraging Shodan as a reconnaissance tool during penetration testing engagements. | 96 | 82 | C | — | ★ 46 317 | 17 h ago | |
| 288 | A | Comprehensive guide to auditing web content against WCAG 2.2 guidelines with actionable remediation strategies. | 100 | 74 | B | — | ★ 46 317 | 17 h ago | |
| 289 | A | Master smart contract security best practices, vulnerability prevention, and secure Solidity development patterns. | 100 | 74 | B | — | ★ 46 317 | 17 h ago | |
| 290 | A | firmware-pentestAnalyzerGitHubSecuritySoftware developmentsickn33/agentic-awesome-skillsAgent Skills Firmware penetration testing following the OWASP FSTM nine-stage flow: extraction, EMBA automation, Firmadyne/QEMU emulation, AFL++ fuzzing, and hands-on exploitation in authorized labs. | 92 | 86 | D | — | ★ 46 317 | 17 h ago | |
| 291 | A | Analyze suspected malware through static, dynamic, and behavioral techniques: IOC extraction, YARA/Sigma rule authoring, sandbox orchestration, and anti-analysis detection. | 93 | 86 | D | — | ★ 46 317 | 17 h ago | |
| 292 | A | Audit a shipped repo for production-readiness gaps across RLS, webhooks, secrets, grants, Stripe idempotency, mobile UX, and deployment health. | 100 | 76 | B | — | ★ 46 317 | 17 h ago | |
| 293 | A | Implement proven methodologies and tool workflows from top security researchers for effective reconnaissance, vulnerability discovery, and bug bounty hunting. Automate common tasks while maintaining t | 96 | 81 | C | — | ★ 46 317 | 17 h ago | |
| 294 | A | AI-powered Claude Code skill that performs deep code review using formal logic and reasoning frameworks to detect bugs, anti-patterns, and security risks beyond what linters catch. | 99 | 76 | C | — | ★ 46 317 | 17 h ago | |
| 295 | A | Configure agy-auto PreToolUse security gate to run Antigravity CLI (agy) unattended with layered policy controls instead of --dangerously-skip-permissions. | 100 | 74 | C | — | ★ 46 317 | 17 h ago | |
| 296 | A | Comprehensive Power BI DAX formula optimization prompt for improving performance, readability, and maintainability of DAX calculations. | 100 | 75 | B | — | ★ 38 928 | 2 d ago | |
| 297 | A | apple-appstore-reviewerAnalyzerData and analyticsSoftware developmentgithub/awesome-copilotAgent Skills Serves as a reviewer of the codebase with instructions on looking for Apple App Store optimizations or rejection reasons. | 100 | 75 | C | — | ★ 38 928 | 2 d ago | |
| 298 | A | Creates valid Microsoft Threat Modeling Tool (.tm7) files compatible with the Microsoft Threat Modeling Tool v7.3+. Use this skill whenever asked to create, generate, or modify a .tm7 threat model fil | 100 | 75 | F will not run | — | ★ 38 928 | 2 d ago | |
| 299 | A | Use when the user asks to prepare for SOC 2 audits, map Trust Service Criteria, build control matrices, collect audit evidence, perform gap analysis, or assess SOC 2 Type I vs Type II readiness. | 97 | 79 | F will not run | — | ★ 25 878 | 14 d ago | |
| 300 | A | Network scanning MCP server wrapping nmap. Provides 14 purpose-built tools for host discovery, port scanning (SYN/TCP/UDP), service & OS detection, NSE script execution, and vulnerability scanning. Re | 100 | 84 | C | — | ↓ 1 123 ★ 1 | 11 May 2026 |