Skill rating
2 738 skills. The A–F grade combines safety (60%) and quality (40%); tests add a bonus. The rating refreshes automatically from open catalogs.
ManufacturingLogistics and warehouseProcurementQuality controlContact centreField serviceFinanceCustomer supportindustry shortcuts
| # | Grade | Skill | Score ▾ | Safety | Quality | Process | Tests | Popularity | Updated |
|---|---|---|---|---|---|---|---|---|---|
| 1201 | A | Expert in threat modeling methodologies, security architecture review, and risk assessment. Masters STRIDE, PASTA, attack trees, and security requirement extraction. Use for security architecture revi | 100 | 80 | C | — | ★ 14 | 16 Jun 2026 | |
| 1202 | A | AI Governance Policy BuilderGeneratorGitHubData and analyticsSecuritymodbender/skill-library-mcpAgent Skills Build internal AI governance policies from scratch. Covers acceptable use, model selection, data handling, vendor contracts, compliance mapping, and board reporting. | 100 | 79 | D | — | ★ 14 | 16 Jun 2026 | |
| 1203 | A | Generate professional internal policies for any business function — HR, IT, finance, compliance, data privacy, acceptable use, and more. | 100 | 79 | C | — | ★ 14 | 16 Jun 2026 | |
| 1204 | A | Wraps HLE benchmark questions in a structured Chain-of-Thought (CoT) reasoning process. Use when answering HLE questions to ensure strict step-by-step logic and format compliance. | 100 | 81 | D | — | ★ 14 | 16 Jun 2026 | |
| 1205 | A | next-cache-componentsProcedureData and analyticsSoftware developmentmodbender/skill-library-mcpAgent Skills Next.js 16 Cache Components - PPR, use cache directive, cacheLife, cacheTag, updateTag | 100 | 81 | D | — | ★ 14 | 16 Jun 2026 | |
| 1206 | A | Use when building email features, emails going to spam, high bounce rates, setting up SPF/DKIM/DMARC authentication, implementing email capture, ensuring compliance (CAN-SPAM, GDPR, CASL), handling we | 100 | 81 | D | — | ★ 14 | 16 Jun 2026 | |
| 1207 | A | Handles B2B presales and renewal negotiations with value-shift tactics and compliance checks. Use when the user mentions customer pushback on price, budget constraints, competitor comparison, or value | 100 | 80 | C | — | ★ 14 | 16 Jun 2026 | |
| 1208 | A | File Path Traversal TestingProcedureMySQLSoftware developmentSecuritymodbender/skill-library-mcpAgent Skills This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vulnerabilities", o | 100 | 80 | C | — | ★ 14 | 16 Jun 2026 | |
| 1209 | A | Conduct WCAG 2.2 accessibility audits with automated testing, manual verification, and remediation guidance. Use when auditing websites for accessibility, fixing WCAG violations, or implementing acces | 100 | 80 | C | — | ★ 14 | 16 Jun 2026 | |
| 1210 | A | Build automated billing systems for recurring payments, invoicing, subscription lifecycle, and dunning management. Use when implementing subscription billing, automating invoicing, or managing recurri | 100 | 80 | C | — | ★ 14 | 16 Jun 2026 | |
| 1211 | A | URL safety scanner and domain reputation checker. Use when: checking if a URL is safe before visiting, scanning links in emails/messages, verifying domains for phishing/malware/scam. NOT for: submitti | 100 | 81 | D | — | ★ 14 | 16 Jun 2026 | |
| 1212 | A | Cross-Site Scripting and HTML Injection TestingAnalyzerSecuritymodbender/skill-library-mcpAgent Skills This skill should be used when the user asks to "test for XSS vulnerabilities", "perform cross-site scripting attacks", "identify HTML injection flaws", "exploit client-side injection vulnerabilities" | 98 | 84 | C | — | ★ 14 | 16 Jun 2026 | |
| 1213 | A | Adversarial implementation review based on Block's g3 dialectical autocoding research. Use when validating implementation completeness against requirements with fresh objectivity. | 100 | 79 | C | — | ★ 14 | 16 Jun 2026 | |
| 1214 | A | Master smart contract security best practices to prevent common vulnerabilities and implement secure Solidity patterns. Use when writing smart contracts, auditing existing contracts, or implementing s | 100 | 80 | B | — | ★ 14 | 16 Jun 2026 | |
| 1215 | A | Scan OpenBot/Clawdbot skills for security vulnerabilities, malicious code, and suspicious patterns before installing them. Use when a user wants to audit a skill, check if a ClawHub skill is safe, sca | 97 | 85 | D | — | ★ 14 | 16 Jun 2026 | |
| 1216 | A | Expert security auditor specializing in DevSecOps, comprehensive cybersecurity, and compliance frameworks. Masters vulnerability assessment, threat modeling, secure authentication (OAuth2/OIDC), OWASP | 96 | 87 | B | — | ★ 14 | 16 Jun 2026 | |
| 1217 | A | Security Scanning ToolsAnalyzerAWSDockerSecurityData and analyticsmodbender/skill-library-mcpAgent Skills This skill should be used when the user asks to "perform vulnerability scanning", "scan networks for open ports", "assess web application security", "scan wireless networks", "detect malware", "check | 99 | 82 | B | — | ★ 14 | 16 Jun 2026 | |
| 1218 | A | Authentication and authorization patterns — JWT, OAuth 2.0, sessions, RBAC/ABAC, password security, MFA, and vulnerability prevention. Use when implementing login flows, protecting routes, managing to | 99 | 81 | D | — | ★ 14 | 16 Jun 2026 | |
| 1219 | A | Manage EffortList AI folders, tasks, and todos. Use when the user wants to organize their life, track projects, or manage schedules via the EffortList AI platform. Supports full CRUD operations, casca | 100 | 79 | D | — | ★ 14 | 16 Jun 2026 | |
| 1220 | A | Audit your authentication implementation for security flaws. Use when you need to verify your auth is actually secure. | 100 | 81 | C | — | ★ 14 | 16 Jun 2026 | |
| 1221 | A | Complete cryptocurrency wallet management for Web3, DeFi, and blockchain applications. Create and manage EVM (Ethereum, Polygon, BSC, Arbitrum, Optimism, Base, Avalanche) and Solana wallets with encry | 98 | 82 | D | — | ★ 14 | 16 Jun 2026 | |
| 1222 | A | 別駭我!基本安全檢測 — Security self-check for Clawdbot/Moltbot. Run a quick audit of your clawdbot.json to catch dangerous misconfigurations — exposed gateway, missing auth, open DM policy, weak tokens, loose | 100 | 79 | C | — | ★ 14 | 16 Jun 2026 | |
| 1223 | A | Operate and monitor the trading bot safely: detect stalls, verify LIVE/halting state, validate data freshness, restart cleanly, and produce human-readable health summaries. | 100 | 80 | C | — | ★ 14 | 16 Jun 2026 | |
| 1224 | A | DeFi risk analysis toolkit powered by WACH.AI via x402 payments using AWAL wallet custody. Use when the user asks to check if a token is safe, assess DeFi risk, detect honeypots, analyze liquidity, ho | 94 | 88 | C | — | ★ 14 | 16 Jun 2026 | |
| 1225 | A | 修复 Matrix Channel 常见问题:加密模块安装、token 过期处理、重新登录等。 Use when: Matrix channel 无法正常工作、加密模块报错、token 失效等问题。 | 100 | 81 | C | — | ★ 14 | 16 Jun 2026 | |
| 1226 | A | Secure credential manager using AES-256 (Fernet) encryption. Stores, retrieves, and rotates secrets using a mandatory Master Key. Use for managing API keys, database credentials, and other sensitive t | 100 | 79 | C | — | ★ 14 | 16 Jun 2026 | |
| 1227 | A | Security-first behavioral guidelines for cautious agent operation. Use this skill for ALL operations involving external resources, installations, credentials, or actions with external effects. Trigger | 100 | 80 | C | — | ★ 14 | 16 Jun 2026 | |
| 1228 | A | Dependency audit, vulnerability scanning, and license compliance. Free vuln check + paid continuous monitoring via git hooks. | 100 | 80 | D | — | ★ 14 | 16 Jun 2026 | |
| 1229 | A | Scan HTML and JSX for accessibility issues with AI-powered fix suggestions | 100 | 81 | C | — | ★ 14 | 16 Jun 2026 | |
| 1230 | A | Audit Creator Tax Compliance & Generate Compliance ReportsAnalyzerSecurityFinanceClawHubAgent Skills Audit income sources, expenses, and licensing agreements to identify tax deductions and compliance requirements. Use when the user needs quarterly tax reports, multi-country compliance flags, or equip | 100 | 78 | C | — | ↓ 144 | 16 d ago | |
| 1231 | B | Chinese advertising law compliance & banned words scanner tool with real API backend — 中国广告法合规+违禁词扫描+敏感词检测API. Battle-tested: caught 23 violations in a single Douyin script that 3 human reviewers miss | 100 | 67 | C | — | ↓ 953 | 31 May 2026 | |
| 1232 | B | Create, publish, and monetize Udemy courses with curriculum design, AI-assisted content creation, and platform compliance. | 100 | 61 | C | — | ↓ 1 272 ★ 3 | 11 May 2026 | |
| 1233 | B | Alibaba Cloud Security Center (SAS) Overview Data Query Skill.
Retrieves security score, asset status, risk governance, asset risk trends, and billing info.
Supports flexible scope: query a single dat | 88 | 85 | B | — | ↓ 951 | 25 Jun 2026 | |
| 1234 | A | Query and manage Huawei Cloud HSS (Host Security Service) for daily security inspection and incident response. Covers host assets, vulnerabilities, security baselines, intrusion alerts (trojan/brute-f | 96 | 83 | B | — | ↓ 131 | 12 d ago | |
| 1235 | B | HQ skill: Cross-agent coordination, conflict resolution, knowledge base management, audit logging, strategic scheduling, task orchestration, IMA sync hub. | 100 | 65 | C | — | ↓ 1 902 | 18 May 2026 | |
| 1236 | A | Offline SBOM + verifiable compliance scanner for agent projects: generates a CycloneDX 1.5 JSON SBOM from npm/pip/go manifests, audits the tree with a curated rule engine (committed-secret detection w | 100 | 74 | D | — | ↓ 208 | 8 d ago | |
| 1237 | B | A mandatory security audit skill for validating new code, skills, and MCP servers against the SEP-2026 Zero Trust protocol. | 100 | 64 | C | — | ↓ 1 355 | 18 May 2026 | |
| 1238 | B | AI-powered enterprise bidding assistant for China government procurement and commercial projects. Full-lifecycle support: bid document analysis, strategy, drafting, compliance audit, and post-bid foll | 95 | 70 | D | — | ↓ 1 342 ★ 1 | 27 May 2026 | |
| 1239 | A | 元情 —— 跨智能体的威胁情报 IOC 提取与规范化技能:零依赖自研从文本 / 日志 / 报告中提取 IP(IPv4/IPv6)、域名、URL、邮箱、哈希(MD5/SHA1/SHA256/SHA512)与 CVE 编号,识别并还原 defang 写法,去重、归一化后输出 CSV / JSON / STIX-lite。触发:用户给出含可疑 IP / 域名 / URL / 哈希的威胁情报文本、恶意样本 | 100 | 74 | D | — | ↓ 308 | 6 d ago | |
| 1240 | B | Exploit vulnerabilities with Metasploit Framework. Use when a user asks to exploit known CVEs, generate payloads, perform post-exploitation, pivot through networks, or build exploit chains in penetrat | 90 | 85 | D | — | ★ 150 | 2 d ago | |
| 1241 | A | Multi-platform content creation: generates 3-5 platform-adapted versions for Xiaohongshu, Douyin, Kuaishou, WeChat, and more. AI-delivered service via clawtip payment verification. No cookies, no auto | 100 | 75 | C | — | ↓ 293 | 28 Jul 2026 | |
| 1242 | B | Professional network security assessment and gap analysis platform generating comprehensive audit reports across security domains and compliance frameworks. | 100 | 67 | D | — | ↓ 774 | 11 May 2026 | |
| 1243 | A | 爆款营销文案撰写完整指引。整合50+本营销经典书籍精华,涵盖标题公式大全、封面设计原则、内容黄金结构、六大写作公式(AIDA/PAS/FAB/4P/QUEST/SSS)、故事化写作、六大影响力说服法则、销售文案模块化组装、卖货文案五步成交法、爆款底层公式(70%套路+30%创新)、职业故事三幕结构、五平台专项指引(小红书/今日头条/CSDN/公众号/知乎)、金句植入、价格包装等。小红书详细操作见 | 100 | 74 | D | — | ↓ 284 | 40 d ago | |
| 1244 | B | AI-native GRC (Governance, Risk, and Compliance) for OpenClaw. 97 actions across 13 frameworks including SOC 2, ISO 27001, HIPAA, GDPR, NIST CSF, PCI DSS, CIS Controls, CMMC, HITRUST, CCPA, FedRAMP, I | 98 | 67 | C | — | ↓ 1 276 | 11 May 2026 | |
| 1245 | B | Assess your business's compliance with California Consumer Privacy Act (CCPA) regulations and identify privacy governance gaps. | 100 | 67 | D | — | ↓ 756 | 11 May 2026 | |
| 1246 | B | 上架前平台合规校验与自动修复。待上架图 → Amazon / TikTok Shop / Temu / Shopee / 淘宝 各平台的通过或驳回风险报告,可一键修成合规图。当用户说「会不会被驳回」「合规检查」「白底不达标」「主图规格」「传上去被拒」时使用。 | 100 | 73 | C | — | ↓ 429 | 5 d ago | |
| 1247 | B | Add lightweight defense-in-depth guardrails to OpenClaw with dangerous-command blocking, prompt-injection detection, secret redaction, and audit logging. | 90 | 82 | B | — | ↓ 722 | 18 May 2026 | |
| 1248 | B | 编码工具�?- Base64编码/解码、URL编码/解码、SHA256/MD5哈希计算、UUID生成、JWT解析 | 100 | 67 | D | — | ↓ 830 | 29 May 2026 | |
| 1249 | B | perform 12-Factor App compliance analysis on a codebase | 100 | 68 | C | — | ↓ 733 | 11 May 2026 | |
| 1250 | A | Write an AI usage policy people can actually follow — approved tools, data rules, disclosure duties, and review obligations, in one page instead of legal fog. Use when asked for a company AI policy, a | 100 | 82 | B | — | ↓ 15 | 3 d ago |