soc2 compliance pack
by Kaymue
Get SOC2 Type II-ready in 90 days. 17 policy templates, 64 control mappings, automated AWS/GCP/GitHub evidence collection.
Skills for security audits, static analysis, vulnerability triage, and compliance checks. Ship safer software and meet regulatory requirements faster.
318 live security & compliance skills for Gemini CLI.
by Kaymue
Get SOC2 Type II-ready in 90 days. 17 policy templates, 64 control mappings, automated AWS/GCP/GitHub evidence collection.
by Kaymue
Audit prompts and MCP tools for prompt injection. 47 attack patterns, OWASP LLM Top 10, generates adversarial tests. CVSS-scored.
Red-team your own AI agent for prompt-injection and tool-misuse vulnerabilities before it ships — then fix them. Maps your attack surface, generates a defensive test plan with the safe behavior expected for each case, and gives a prioritized mitigations list. Defensive use only.
by OnwireFlow
Makes your coding agent work like a senior developer: exact money with no rounding errors, configurable rules, real audit trails, honest testing and review. Any stack, any country.
Adversarially audit your agent hooks before you trust them. Catches command injection, secret leakage, over-broad matchers, destructive actions, and blocking-logic mistakes in pre/post-tool-use, prompt, and stop hooks — with a PASS or REVISE verdict and severity-ranked fixes.
by rayyer
Find accessibility barriers and WCAG 2.2 AA failures in web and mobile UI code — with file:line, the exact criterion, and a fix
by Liam Romanis
Detect and assess CVE-2026-31431 "Copy Fail" vulnerability on Linux systems and Kubernetes clusters.
by LB Creations
Review macOS admin scripts for reliable current-user detection and safe session-context handling.
by LB Creations
Review scripts and docs for safer handling of passwords, tokens, keys, and sensitive values.
by LB Creations
Review bash and zsh admin scripts for safer quoting, input handling, permissions, and rollout readiness.
by LocoLoboZ
Professional CTI analysis skill for structured attribution using ACH, Diamond Model, and confidence scoring.
by rayyer
Automated open-source license audit and risk assessment based on your project's specific distribution model.
by rayyer
Catch App Store and Google Play rejection causes before you submit — privacy manifest, permissions, billing, target SDK, ATT
by rayyer
Adaptive GDPR, CCPA, security, and AI compliance audit with severity-graded findings and law citations
by 香意國際
Review a supplied Agent Skill before installation and produce a documented adopt, sandbox, revise, or decline decision with provenance, permissions, update, and approval controls.
by Elyas
Audits AI hiring tools against Illinois HB 3773 requirements, including ZIP code proxies and notice obligations.
Before you point a bot or AI agent at X (Twitter), audit it against the platform's rules. Classifies each action as safe, risky, or likely-to-get-you-suspended, names the rule it hits, and rewrites the dangerous parts into a compliant, account-safe version. For keeping your own account safe — not for spam or evasion.
Before you send proprietary or sensitive data to an AI vendor, assess the risk. Classifies what's actually your moat versus regulated, contractual, or harmless data, maps the real exposure vectors by vendor tier, lists the questions to get in writing, and gives a send / send-with-controls / keep-in-house recommendation per data type.
by Edric Vale
Safe dependency upgrade plans: changelog-aware risk scoring, test hints, and rollback paths.
by Roy Yuen
Prevent vulnerabilities before they happen by forcing early security framing and secure-by-default design patterns.
by Roy Yuen
A high-performance wrapper to route security tasks directly to the Anthropic-Cybersecurity-Skills library.
by Roy Yuen
Audit AI agent skills for security risks, packaging errors, and marketplace readiness with professional reports.
A premium library of 399 vulnerability patterns and DeFi attack vectors for AI-driven bug hunting and security audits.
by Roy Yuen
Automated security and compatibility firewall for installing AI agent skills and Codex/OpenClaw packages.
Each skill on this page is a SKILL.md file built for security & compliance work and confirmed to run in Gemini CLI. Install one into ~/.gemini/skills/, start a new session, and Gemini CLI follows the workflow the creator encoded instead of improvising from a short prompt.
Listings are ranked by installs, upvotes and reviews, so what surfaces first is what other Gemini CLI users actually keep. Free and paid skills compete on the same page, and every listing shows its security scan result before you download anything.