SKILLEMALL.ai

Skill rating

2 738 skills. The A–F grade combines safety (60%) and quality (40%); tests add a bonus. The rating refreshes automatically from open catalogs.

2 738
#GradeSkillScore ▾SafetyQualityProcessTestsPopularityUpdated
351A
Use when a compliance officer, security analyst, or auditor needs to assess an organization's controls against a regulatory framework (GDPR, SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST CSF). Guides structu
9510087B↓ 83228 May 2026
352A
Audit project dependencies for outdated packages, security vulnerabilities, and breaking changes. Use when someone asks to "check for outdated packages", "audit dependencies", "find vulnerable depende
9610090C★ 15025 h ago
353A
Apply Islamic ethical constraints to AI responses about religion, Quran, Hadith, Sharia rulers, and Islamic practice. Use this skill whenever a user asks any question related to Islam, Muslims, the Qu
9410084B↓ 1 30217 May 2026
354A
Use this skill for security scanning: check transaction safety, is this transaction safe, pre-execution check, security scan, token risk scanning, honeypot detection, DApp/URL phishing detection, mess
949790C↓ 1 29118 May 2026
355A
Manage web search result knowledge capture with safe URL rules, staging, user confirmation, archiving, audit logs, and multi-platform adapters for IMA, Tencent Docs, Feishu Wiki, DingTalk Docs, Obsidi
9510088C↓ 76611 May 2026
356A
Use this skill when a nonprofit grant writer, program manager, or development director needs to turn a funder RFP or NOFO into a structured grant proposal. Extracts funder requirements, gathers projec
9510087B↓ 77228 May 2026
357A
Audit and validate Prisma Access configurations against best practices and security standards. Use when reviewing security policies, checking for misconfigurations, or validating compliance with PAN-O
9510087C↓ 72211 May 2026
358A
Judge whether an email is important/urgent using content-based analysis rather than sender name or mailbox labels (which can be spoofed). Use when asked to triage emails, decide priority, detect phish
9310083B↓ 2 12817 May 2026
359A
Assess third-party vendor risk for AI and SaaS products. Evaluates security posture, data handling, compliance, financial stability, and operational resilience. Use when onboarding new vendors, conduc
949887B↓ 1 21317 May 2026
360A
Use when user needs to check import/export compliance requirements for specific products and countries. Use when verifying product certifications, tariffs, sanctions, or regulatory requirements. Use w
9510088C↓ 71511 May 2026
361A
Compliance expert for snyk-agent-scan — the agent skill file scanner — NOT for other Snyk CLI tools (snyk test, snyk code SAST, snyk iac, snyk container). Fixes alerts through content restructuring, n
959693Bevals↓ 75624 d ago
362B
GitHub supply-chain forensics: recovery, IOCs, reporting.
899975D★ 245 15614 h ago
363B
Hardens code against vulnerabilities. Use when auditing an input handler for vulnerabilities, when handling user input, authentication, data storage, or external integrations, or when checking a login
8910072C★ 94 0142 d ago
364B
Coordinate multi-layer security scanning and hardening across application, infrastructure, and compliance controls.
899678B★ 46 36816 h ago
365B
Automate AWS secrets rotation for RDS, API keys, and credentials
8910072C★ 46 36816 h ago
366B
Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernetes pod security controls. Use for Dockerfile s
899481C★ 46 36816 h ago
367B
Comprehensive AWS security posture assessment using AWS CLI and security best practices
8910072B★ 46 36816 h ago
368B
Provide systematic methodologies for automated SQL injection detection and exploitation using SQLMap.
899778C★ 46 36816 h ago
369B
Identifies dependencies at heightened risk of exploitation or takeover. Use when assessing supply chain attack surface, evaluating dependency health, or scoping security engagements.
899581B★ 46 36816 h ago
370B
Apply STRIDE methodology to systematically identify threats. Use when analyzing system security, conducting threat modeling sessions, or creating security documentation.
899777B★ 46 36816 h ago
371B
⚠️ AUTHORIZED USE ONLY > This skill is for educational purposes or authorized security assessments only. > You must have explicit, written permission from the system owner before using this tool. > Mi
899581C★ 46 36816 h ago
372B
Creates custom Semgrep rules for detecting security vulnerabilities, bug patterns, and code patterns. Use when writing Semgrep rules or building custom static analysis detections.
899481B★ 46 36816 h ago
373B
Provide a comprehensive checklist for planning, executing, and following up on penetration tests. Ensure thorough preparation, proper scoping, and effective remediation of discovered vulnerabilities.
899581B★ 46 36816 h ago
374B
Provide a comprehensive command reference for penetration testing tools including network scanning, exploitation, password cracking, and web application testing. Enable quick command lookup during sec
899581B★ 46 36816 h ago
375B
Comprehensive security auditing workflow covering web application testing, API security, penetration testing, vulnerability scanning, and security hardening.
899581C★ 46 36816 h ago
376B
Run read-only exposure checks for security advisories and write a structured local audit report.
8910073C★ 46 36816 h ago
377B
Create time-boxed technical spike documents for researching and resolving critical development decisions before implementation.
8910072D★ 38 9692 d ago
378B
Search WeChat Official Account articles using OpenClaw's web search, Tavily API, and web fetch capabilities with compliance-focused design.
8910072C↓ 4 305 ★ 917 May 2026
379A
Audit ecommerce listings, ad copy, and creator content against TikTok Shop policies to catch violations before they trigger penalties. Use when reviewing new listings, vetting creator videos and capti
9410084D↓ 1 29311 Jun 2026
380A
火山引擎合规最佳实践助手:一是根据用户诉求(要满足的合规标准、关键词、关注的风险等级), 从火山引擎官方内置的合规包模板里推荐该开启哪些、并标出哪些已开启;二是汇总账号当前的合规 态势,把已生效规则/合规包(官方内置 + 用户自定义)的评估结果按类别(法规 / 最佳实践 / 自定义)与严重度聚合成一份合规总览报告;三是当官方基线没覆盖时,指导用户写一条 Rego 策略 作为自定义合规规则并注册评估
9710092C↓ 41212 d ago
381A
Multi-ecosystem dependency audit — find outdated, vulnerable, unused, and license-incompatible packages across npm, pip, cargo, go, and composer. Use when asked to check dependency health, audit packa
9510087C↓ 71411 May 2026
382A
URL safety scanner and domain reputation checker. Use when: checking if a URL is safe before visiting, scanning links in emails/messages, verifying domains for phishing/malware/scam. NOT for: submitti
9210081D↓ 1 976 ★ 118 May 2026
383A
Use this skill when a customs broker, trade-compliance analyst, importer, or trade counsel needs to classify a product under HTSUS, EU CN/TARIC, or another national tariff schedule. Walks GRI 1–6 in o
9510087B↓ 79928 May 2026
384A
Assess data privacy compliance across 20 control areas with 63 controls covering governance, consent, security, breach response, vendor management, and cross-border transfers. Use when evaluating priv
9410086B↓ 1 17417 May 2026
385A
Build search queries for network asset discovery platforms (space测绘). Use when users want to find network assets, discover attack surfaces, investigate vulnerabilities (CVE), or search for specific se
9510088Cevals↓ 71611 May 2026
386A
Encryption and decryption toolkit for string and byte data. Supports Fernet (AES-128) symmetric encryption, fallback XOR encryption, custom password protection, code obfuscation, and batch processing.
9410084D↓ 1 13211 May 2026
387A
AI-powered global compliance checker, document generator, and risk assessor for GDPR, CCPA, SOC2, ISO27001, HIPAA and more
9410086C↓ 1 14318 May 2026
388A
You are an accessibility auditor with expertise in web accessibility standards, assistive technology testing, and inclusive design practices. Use when: wcag 2.1/2.2 aa and aaa compliance, screen reade
9510087B↓ 70111 May 2026
389A
Expert change management advisor for enterprise transformations. Assess readiness, diagnose adoption risks, build sponsor plans, and drive stakeholder adoption in cybersecurity, cloud, AI, and complia
9510087C↓ 69211 May 2026
390A
Backup and restore files with compression and encryption. Use when user needs to backup important files, create scheduled backups, sync folders, encrypt sensitive backups, or restore from backup archi
9510087C↓ 68818 May 2026
391A
Implement quantum-resistant encryption using the CIFER SDK (cifer-sdk npm package). Covers SDK initialization, wallet setup, secret creation, text encryption/decryption, and file encryption/decryption
939984C↓ 1 89811 May 2026
392A
Audit code for security issues - sensitive data exposure, dependency vulnerabilities, SQL injection, hardcoded secrets. Use when the user asks for security check, dependency scan, or before deploying.
9410084C↓ 1 11411 May 2026
393A
When the user faces brand impersonation, fake websites, phishing sites, or trademark infringement. Also use when the user mentions "fake site," "impersonation," "phishing site," "trademark infringemen
9510088B↓ 67011 May 2026
394A
Supernal Coding CLI for development workflows - task management, requirements tracking, testing, git automation, ralph loops, compliance, and documentation. Use for task management (sc task), project
9410084C↓ 1 09817 May 2026
395A
API 安全扫描工具。对 REST API 端点进行自动化安全审计,检测 OWASP Top 10 漏洞、 认证/授权问题、敏感数据泄露、速率限制缺失等常见安全隐患。输出结构化安全报告。 适合开发者在部署前快速自检,也适合安全团队做轻量级审计。
9510087C↓ 71224 May 2026
396A
You are a blockchain developer specializing in Web3 technologies and decentralized applications. Use when: blockchain platforms, smart contract development, defi protocols, web3 development, common vu
9510087C↓ 65711 May 2026
397A
Secure communication using the Pieter Theijssen triple-layer XOR encryption algorithm. Use when encrypting or decrypting messages, files, or any sensitive data that needs to be transmitted securely ov
9510087C↓ 65718 May 2026
398A
Scan AI agent skills for security vulnerabilities — detects code injection, prompt injection, credential exfiltration, supply chain attacks, and 69+ threat patterns. Use when installing new skills, au
9410084D↓ 1 06911 May 2026
399A
Linux security auditing tool that checks SSH configuration, open/listening ports, firewall rules (ufw/iptables/nftables), failed login attempts, sudoers permissions, world-writable files, and SUID bin
9510087D↓ 69311 May 2026
400A
Assess GDPR compliance readiness and generate gap analysis with remediation guidance. Use when evaluating data privacy compliance, GDPR readiness, EU data protection, privacy impact assessments, data
9410086B↓ 1 08911 May 2026