
security-skills
A collection of Claude Code skills that help security teams stay secure

A collection of Claude Code skills that help security teams stay secure

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

Plugin for integrating Trivy with Aqua Security platform to scan IaC, pipelines, and dependencies for vulnerabilities and misconfigurations.

Easy setup of static analysis tools for Android and Java projects.

Policy enforcement, zero-trust identity, execution sandboxing, and audit logging for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10 with…

Exploit for CVE-2022-25173 targeting Jenkins Pipeline Groovy Plugin's CPS interpreter sandbox bypass, enabling arbitrary code execution within…

Jenkins plugin providing shared API for Docker credential management, registry authentication, daemon configuration, and image fingerprinting across…

Static code analysis plugin for Android project. (Checkstyle, PMD)

Exploit for CVE-2022-25175 targeting Jenkins Pipeline: Multibranch plugin, enabling automated exploitation of a specific vulnerability in CI/CD…

Gradle plugin for fast, reproducible Eclipse IDE provisioning as a build artifact, with support for OSGi, p2, and RCP builds.

Jenkins plugin for automated mobile app testing via Perfecto cloud, managing secure tunnel connections and app uploads within CI/CD pipelines.

Apache RAT (Release Audit Tool) Gradle Plugin

Jenkins plugin providing script approval workflows and Groovy sandboxing to enforce secure script execution, with ACL-aware permission checks and…

Zabbix vulnerability assessment plugin

A Trivy plugin that scans the images of a kubernetes resource

Jenkins plugin providing Git APIs for automated repository operations including fetch, checkout, merge, and tag, with support for credential-based…

Exploit for CVE-2022-25174 in Jenkins Pipeline Shared Libraries plugin, demonstrating code injection via crafted library definitions for security…