Skill rating
2 738 skills. The A–F grade combines safety (60%) and quality (40%); tests add a bonus. The rating refreshes automatically from open catalogs.
ManufacturingLogistics and warehouseProcurementQuality controlContact centreField serviceFinanceCustomer supportindustry shortcuts
| # | Grade | Skill | Score ▾ | Safety | Quality | Process | Tests | Popularity | Updated |
|---|---|---|---|---|---|---|---|---|---|
| 2401 | A | /cs:ciso-review <plan> — Risk-paranoid interrogation of any plan that touches data, compliance, or production access. Use when launching features that handle customer data, before a SOC 2 / ISO audit, | 100 | 78 | F will not run | — | ★ 25 956 | 16 d ago | |
| 2402 | A | /cs:cto-review <plan> — Architecture and scaling interrogation. Tech debt, scaling cliffs, team scaling, build-vs-buy. Use when committing to an architecture, planning for 10x load, or weighing a rebu | 100 | 78 | F will not run | — | ★ 25 956 | 16 d ago | |
| 2403 | A | /cs:aims-audit <scope> — ISO/IEC 42001 AIMS internal-audit 6-question forcing interrogation. Use before certification stage 1, before annual internal audit cycles, or when onboarding a new AI system i | 100 | 78 | F will not run | — | ★ 25 956 | 16 d ago | |
| 2404 | B | privilege-escalation-methodsProcedureMySQLSoftware developmentSecurityLord1Egypt/RA-SkillsAgent Skills Provide comprehensive techniques for escalating privileges from a low-privileged user to root/administrator access on compromised Linux and Windows systems. Essential for penetration testing post-expl | 76 | 77 | C | — | — | 10 Jul 2026 | |
| 2405 | B | Comprehensive security audit and vulnerability detection for JavaScript/TypeScript applications following OWASP Top 10. Use when (1) Users say 'audit security', 'check for vulnerabilities', 'security | 74 | 79 | C | — | — | 10 Jul 2026 | |
| 2406 | B | HIPAA compliance, healthcare regulations, privacy and security standards for medical organizations and providers | 99 | 41 | C | — | — | 10 Jul 2026 | |
| 2407 | B | Human resources management, employee relations, recruitment support, and HR compliance assistance | 100 | 41 | C | — | — | 10 Jul 2026 | |
| 2408 | A | k8s-security-policiesReferenceKubernetesInfrastructureSoftware developmentsickn33/agentic-awesome-skillsAgent Skills Comprehensive guide for implementing NetworkPolicy, PodSecurityPolicy, RBAC, and Pod Security Standards in Kubernetes. | 100 | 76 | F will not run | — | ★ 46 412 | 21 h ago | |
| 2409 | A | Creates valid Microsoft Threat Modeling Tool (.tm7) files compatible with the Microsoft Threat Modeling Tool v7.3+. Use this skill whenever asked to create, generate, or modify a .tm7 threat model fil | 100 | 75 | F will not run | — | ★ 39 003 | 7 h ago | |
| 2410 | A | Use when the user asks to prepare for SOC 2 audits, map Trust Service Criteria, build control matrices, collect audit evidence, perform gap analysis, or assess SOC 2 Type I vs Type II readiness. | 97 | 79 | F will not run | — | ★ 25 956 | 16 d ago | |
| 2411 | B | 99 | 40 | D | — | — | 10 Jul 2026 | ||
| 2412 | C | 91 | 37 | C | — | ↓ 224 | 33 d ago | ||
| 2413 | A | api-credentials-hygieneIntegrationZapierSecurityInfrastructuresundial-org/awesome-openclaw-skillsAgent Skills Audits and hardens API credential handling (env vars, separation, rotation plan, least privilege, auditability). Use when integrating services or preparing production deployments where secrets must be | 100 | 85 | F will not run | — | ★ 663 | 7 Mar 2026 | |
| 2414 | A | Use this skill when the user wants FOFA-based asset discovery, host profiling, distribution statistics, icon_hash generation, query refinement after zero-result searches, or cautious follow-up vulnera | 100 | 85 | F will not run | — | ↓ 942 ★ 1 | 11 May 2026 | |
| 2415 | A | EN: Convert unstructured Chinese clinical narratives (admission notes, progress notes, discharge summaries, outpatient records) into structured JSON aligned with HL7 FHIR R4 and Chinese national EMR s | 100 | 89 | F will not run | — | ↓ 562 | 26 May 2026 | |
| 2416 | C | Runs defensive security: alert triage, compromise investigation, attack paths, vulnerability prioritization, detection, and risk reporting. Use when an alert, a suspicious login, a reported email, enc | 60 | 66 | A | — | ↓ 2 557 ★ 1 | 27 Jul 2026 | |
| 2417 | B | Senior Quality Manager Responsible Person (QMR) for HealthTech and MedTech companies. Provides quality system governance, management review leadership, regulatory compliance oversight, and quality per | 100 | 72 | F will not run | — | ★ 25 956 | 16 d ago | |
| 2418 | C | 100 | 21 | D | — | ↓ 210 | 33 d ago | ||
| 2419 | A | folder-structure-designerGeneratorData and analyticsSecuritymohitagw15856/pm-claude-skillsAgent Skills Design a folder structure people actually file into — shallow, purpose-first, with a home for everything and an inbox for the undecided, sized to the team that must maintain it. Use when asked organiz | 100 | 81 | F will not run | — | ★ 1 364 | 9 h ago | |
| 2420 | B | This skill should be used when the user wants to read, analyze, or work with CAD DWG/DXF drawing files. Trigger phrases include: DWG, DXF, CAD drawing, drawing analysis, layer, block, entity, screensh | 100 | 72 | F will not run | — | ↓ 3 544 ★ 4 | 17 May 2026 | |
| 2421 | A | Manage Cloudflare DNS records, Tunnels (cloudflared), and Zero Trust policies. Use for pointing domains, exposing local services via tunnels, and updating ingress rules. | 99 | 81 | F will not run | — | ↓ 2 654 | 17 May 2026 | |
| 2422 | B | robius-matrix-integrationIntegrationSoftware developmentAI and agentssickn33/agentic-awesome-skillsAgent Skills CRITICAL: Use for Matrix SDK integration with Makepad. Triggers on:
Matrix SDK, sliding sync, MatrixRequest, timeline,
matrix-sdk, matrix client, robrix, matrix room,
Matrix 集成, 聊天客户端 | 100 | 69 | F will not run | — | ★ 46 412 | 21 h ago | |
| 2423 | B | Build a minimal but real security policy for sensitive apps. The output is a single, coherent Blue Book document using MUST/SHOULD/CAN language, with explicit assumptions, scope, and security gates. | 100 | 70 | F will not run | — | ★ 46 412 | 21 h ago | |
| 2424 | B | gha-security-reviewProcedureGitHubData and analyticsSecuritysickn33/agentic-awesome-skillsAgent Skills Find exploitable vulnerabilities in GitHub Actions workflows. Every finding MUST include a concrete exploitation scenario — if you can't build the attack, don't report it. | 100 | 69 | F will not run | — | ★ 46 412 | 21 h ago | |
| 2425 | D | Safe command execution for OpenClaw Agents with automatic danger pattern detection, risk assessment, user approval workflow, and audit logging. Use when agents need to execute shell commands that may | 47 | 75 | D | — | ↓ 9 474 ★ 8 | 18 May 2026 | |
| 2426 | A | Enforce the simplest meeting rule that works — no agenda, no meeting — with the three-line agenda format (purpose, decisions sought, pre-reads), the 24-hour rule, and the graceful cancel scripts. Use | 100 | 77 | F will not run | — | ★ 1 364 | 9 h ago | |
| 2427 | A | 한국 비즈니스 서류(세금계산서, 계약서, 통장사본, 견적서, 거래명세서, 사업자등록증, 사업비 요청 공문, 지원금 신청서, 검수조서, 이체확인증, 결과보고서) 검토 및 검증. Use when reviewing Korean business documents for format compliance, required fields, value accuracy, a | 100 | 80 | F will not run | — | ↓ 1 737 | 11 May 2026 | |
| 2428 | A | Use this skill whenever the user wants to design, execute, or manage complex multi-step VMware workflows with human approval gates and explicit, best-effort rollback. Pilot is the orchestration brain | 95 | 84 | F will not run | evals | ↓ 2 070 ★ 1 | 3 d ago | |
| 2429 | C | Tork Guardian for OpenClawAnalyzerSecurityAI and agentsmodbender/skill-library-mcpAgent Skillsnot recommended Enterprise-grade security and governance layer for OpenClaw agents. Detect PII, enforce policies, generate compliance receipts, control tool access, and scan skills for vulnerabilities before insta... | 68 | 68 | F | — | ★ 14 | 16 Jun 2026 | |
| 2430 | C | 100 | 6 | B | — | ↓ 888 ★ 1 | 25 Jun 2026 | ||
| 2431 | A | EN: Extract structured information from engineering drawings — mechanical 2D drafts, P&IDs, electrical schematics, construction architectural/structural drawings — into machine-readable BOM, dimension | 100 | 83 | F will not run | — | ↓ 1 063 | 26 May 2026 | |
| 2432 | A | Interactive guide for integrating MobTech ShareSDK into Android projects with 6-step workflow. Use when user says "我要在app中增加分享能力", "ShareSDK集成", "Android分享功能", "配置微信分享", or asks about ShareSDK setup, | 100 | 79 | F will not run | — | ↓ 772 ★ 1 | 11 May 2026 | |
| 2433 | A | Interactive guide for integrating MobTech FlyVerify (SecVerify) into Android projects with 5-step workflow. Use when user says "我要在app中增加一键登录", "秒验集成", "FlyVerify集成", "Android一键登录", or asks about FlyV | 100 | 79 | F will not run | — | ↓ 733 ★ 1 | 11 May 2026 | |
| 2434 | A | Secure n8n workflow automation integration for coding tasks. This skill implements enterprise-grade security with credential isolation, input validation, audit logging, rate limiting, and granular per | 96 | 89 | F will not run | — | ↓ 748 | 11 May 2026 | |
| 2435 | A | Security, performance, and quality auditing for AgentSkills. Use when reviewing skills before installation, auditing during development, checking installed skills for risks, optimizing performance, or | 99 | 85 | F will not run | — | ↓ 661 | 11 May 2026 | |
| 2436 | D | 99 | 0 | C | — | ↓ 2 052 ★ 2 | 11 May 2026 | ||
| 2437 | A | Unified audit logging, policy enforcement, and input sanitization for the entire VMware MCP skill family. Use when querying audit logs, managing policy rules, or when any VMware skill needs audit/poli | 95 | 86 | F will not run | — | ↓ 2 781 | 3 d ago | |
| 2438 | A | Interactive guide for integrating MobTech MobLink into Android projects with step-by-step workflow. Use when user says "MobLink集成", "Link集成", "Android深度链接", "场景还原", "一键集成 MobLink", or asks about MobLi | 100 | 83 | F will not run | — | ↓ 609 | 11 May 2026 | |
| 2439 | A | Scan content for product mentions and auto-insert affiliate links with FTC compliance disclosures. Use when the user needs to monetize blog posts, product reviews, or guides with tracked affiliate lin | 100 | 80 | F will not run | — | ↓ 1 007 | 17 May 2026 | |
| 2440 | A | Interactive guide for integrating MobTech MobLink into HarmonyOS NEXT projects with 6-step workflow. Use when user says "MobLink集成", "Link集成", "鸿蒙深度链接", "场景还原", "一键集成 MobLink", or asks about MobLink o | 100 | 83 | F will not run | — | ↓ 566 | 11 May 2026 | |
| 2441 | C | Automatic security gate that checks packages against a vulnerability database before installation. Use before any npm install, pip install, yarn add, or package manager operation. | 44 | 83 | C | — | ↓ 2 801 | 18 May 2026 | |
| 2442 | B | Open security platform for agentic infrastructure — broad scanning plus MCP discovery, CVEs, blast radius, SBOMs, CIS benchmarks (AWS, Azure, GCP, Snowflake), OWASP/NIST/MITRE compliance, AISVS v1.0, | 99 | 73 | F will not run | — | ★ 2 141 | 20 Jul 2026 | |
| 2443 | C | Plan what happens to your digital life if you die or become incapacitated. Inventory accounts, subscriptions, crypto wallets, important files, social media legacy contacts, and generate a sealed instr | 47 | 88 | D | — | ↓ 2 388 | 32 d ago | |
| 2444 | C | Real-time cryptocurrency scam detection with database-first architecture. Protects users from phishing, honeypots, rug pulls, and ponzi schemes. No external API calls during checks! | 70 | 62 | D | — | ★ 14 | 16 Jun 2026 | |
| 2445 | C | pet-me-masterIntegrationSecurityOperations and projectsmodbender/skill-library-mcpAgent Skillsnot recommended Interactive gotchi petting via Bankr wallet. Check cooldowns, pet when ready, track your kinship journey. Daily ritual for bonding with your Aavegotchi NFTs on Base chain. | 65 | 70 | C | — | ★ 14 | 16 Jun 2026 | |
| 2446 | C | AI-powered cryptocurrency safety assistant with database-first architecture. Protects users from phishing, honeypots, rug pulls, and ponzi schemes. No external API calls during checks! | 70 | 62 | D | — | ★ 14 | 16 Jun 2026 | |
| 2447 | A | Search FDA industry guidelines by therapeutic area or topic.
Trigger when user requests FDA guidance documents, regulatory guidelines,
or asks about FDA requirements for specific disease areas, drug d | 100 | 80 | F will not run | — | ↓ 811 | 11 May 2026 | |
| 2448 | C | Provides binary exploitation (pwn) techniques for CTF challenges. Use when exploiting buffer overflows, format strings, heap vulnerabilities (House of Orange, Spirit, Lore, Apple 2, Einherjar, tcache | 49 | 78 | B | — | ↓ 1 448 | 11 May 2026 | |
| 2449 | D | 99 | 0 | C | — | ↓ 1 902 ★ 1 | 11 May 2026 | ||
| 2450 | C | Drift detection + baseline integrity guard for agent workspace files with automatic alerting support | 75 | 64 | D | — | — | 10 Jul 2026 |