Threat Feed Aggregator

    1

    Aggregates and deduplicates live cybersecurity threat intelligence from five major news sources into a single feed.

    Free

    1 installSecurity scanned

    Works with the AI tools you already use

    Claude CodeClaude CodeCursorCursorCodex CLICodex CLIGitHub CopilotGitHub CopilotGemini CLIGemini CLI+20 more

    Threat Feed Aggregator

    Example session with this skill installed

    Generate a text briefing of the top 5 latest cyber threat news items, ensuring no duplicates.

    • Read your context and instructions
    • Compiled the threat feed aggregator

    Daily Threat Brief - 2023-10-27

    1. New Linux Kernel Exploit Found - https://thehackernews.com/exploit-link
    2. Ransomware Hits Healthcare Provider - https://bleepingcomputer.com/news
    3. Data Breach at Global Retailer - https://darkreading.com/breach
      [... 2 more items]

    Connects securely to your tools. The creator never sees your data.

    About this skill

    The problem

    Monitoring cybersecurity threats requires manually checking multiple news outlets, leading to duplicate reading and fragmented reporting. Scaling a daily threat brief is difficult when sources use different formats like RSS, Atom, and unstructured HTML.

    What it does

    • Aggregates live security news from The Hacker News, BleepingComputer, Dark Reading, and The Register.
    • Scrapes threatline.io via regex to capture additional linked intelligence.
    • Normalizes and deduplicates URLs to ensure each story appears only once in your briefing.
    • Generates outputs in plain text for human reading or JSON for machine-readable pipelines.
    • Filters results by minimum title length to ensure high-signal content.

    Frameworks & tools

    Python 3, standard libraries (urllib), and regex for scraping.

    Why this beats prompting it yourself

    Writing a prompt to summarize news often results in hallucinations or outdated info. This tool fetches live data directly from the sources and handles the specific technical nuances of URL normalization and RSS/Atom parsing that LLMs cannot do natively without a pre-built script.

    Use cases

    • Generate a daily morning briefing for a Security Operations Center (SOC) team.
    • Feed clean JSON data into a custom dashboard or internal threat intelligence platform.
    • Automate a cybersecurity newsletter by collecting the latest industry links.

    Known limitations

    Threatline.io integration relies on regex scraping and may fail if their HTML structure changes. The deduplication engine is best-effort and relies on URL normalization.

    How to install

    Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.

    ~30 seconds
    1. 1

      Download the ZIP

      Free skills download straight away. Paid skills unlock right after purchase.

    2. 2

      Unzip into your skills folder

      Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.

    3. 3

      Ask your agent to use it

      Restart the agent if it was already running. It picks the skill up automatically - no config needed.

    Skills folder by agent

    Click the path to copy it. Create the folder if it does not exist yet.

    Reviews

    No reviews yet

    Be one of the first to try it. Every listed skill passes our trust checks below.

    Security scanned

    Passed our 8-point scan before listing

    1 install

    Downloaded by developers to date

    Free forever

    No account required to browse

    Trust & safety

    Security scanned

    Verified clean 21 days ago

    • Free to download with an account

    Listed27 days ago
    Updated21 days ago

    What's inside

    Frequently Asked Questions