New: Skill bounties are live. Post a request, fund the bounty, and creators compete for 7 days to build it -> See open bounties

    Browse The Skill Store

    254 skills found

    eaa accessibility auditor

    by Nex AI

    $9/mo

    WCAG 2.1 AA auditor with auto-fixing and Dutch accessibility statement generation for EAA compliance.

    6
    0

    Senior Web App Architect for Coding Agents

    by Avesta Agency Australia | Software Engineering Group

    $9.99

    Messy, insecure, unfixable — that's what AI builds without architecture. This file is the architecture: 10 years of senior judgement on rendering, caching, security and SEO, so your agent builds it right from day one.

    6
    15.0(1)

    ⚠️ Model Risk Register Generator

    by JustHandled Labs

    $12

    Generate the model and vendor risk register a security lead asks for the morning after a model gets switched off. It scans your codebase for every model and provider, merges in the owner and data-residency notes you supply, and renders a register with provider, model, where it's used, fallback status, and an availability-risk rating per dependency. Markdown by default, CSV with a flag. Continuity-focused, not a compliance assessment.

    2
    0

    🚦 Pre Launch Safety Check

    by JustHandled Labs

    $13

    Check your app for the security mistakes that leak data before you launch, explained in plain English. Flags API keys and secrets sitting in your code, a committed .env file, data with no login protecting it, database tables anyone can read, debug mode left on, wide-open sharing (CORS), hardcoded admin passwords, and public storage buckets. Built for non-technical founders shipping AI-built apps: every finding tells you what is wrong, why it matters, and how to fix it.

    3
    0

    Manuscript Disclosure & Submission Readiness Gate

    by PubsProToolkit

    Free

    A pre-submission gate for medical and scientific manuscripts. It audits your near-final draft, abstract, poster, or congress submission for the disclosures journals now screen on intake — AI/LLM-use disclosure (ICMJE-aligned), authorship against the four ICMJE criteria, conflict-of-interest and funding statements, and data availability — then returns a PASS/REVISE verdict naming every gap, plus a ready-to-paste AI-use disclosure statement. Built by a CMPP-certified medical writer.

    1
    0

    eu gdpr digital compliance officer

    by Arnstein Larsen

    $8.99

    Expert GDPR and EU digital compliance officer for auditing code, marketing, data mapping, and AI workflows.

    2
    0

    linux audit

    by SkillBill

    $9

    Complete security audit for Linux systems and WSL2. Checks kernel CVEs, SSH, firewall, users, and more hardening in one shot.

    2
    0

    MCP Security Review

    by Ifásola

    $5

    Specialized static security scanner for MCP servers and Python tool handlers to prevent injection and data leaks.

    2
    0

    AI Prompt Injection Defense Shield & LLM Jailbreak Security Auditor Code Review Agent

    by Brandon DeVries

    Free

    Stop leaving your AI startup exposed to malicious users trying to steal your proprietary system prompts or bypass your paywalls. The AI Prompt Injection Defense Shield is an automated code review agent that deeply analyzes your Next.js or Python backend, instantly detecting insecure LLM input fields, un-sanitized API data streams, and weak prompt boundaries. By automatically generating the exact copy-paste code patches required to harden your AI wrapper against the latest OWASP top 10 LLM vulnerabilities, this skill allows solo developers and indie hackers to confidently launch their SaaS without the fear of massive, unexpected API billing spikes or catastrophic data leaks.

    1
    2

    WordPress Security Code Auditor

    by Arnstein Larsen

    $27.99

    A senior WordPress security auditor that reasons about WP-API taint flow — not regex hits — to find the 8 real plugin/theme vulnerability classes a generic scanner misses, and returns scored findings with ready-to-merge before→after patches.

    1
    0

    soc2 compliance pack

    by Kaymue

    Free

    Get SOC2 Type II-ready in 90 days. 17 policy templates, 64 control mappings, automated AWS/GCP/GitHub evidence collection.

    2
    2

    Medical & Pharma AI Compliance Gate

    by PubsProToolkit

    Free

    Audit AI-assisted medical and pharma content for compliance-readiness before it enters formal MLR review or journal submission. It checks claim substantiation and on-label scope, reference integrity (the acute AI risk: fabricated or misrepresented citations), fair balance and safety, AI-use disclosure, ICMJE authorship and GPP, COI and funding, data integrity and patient privacy, and adverse-event flags — then returns a PASS / REVISE / BLOCK verdict with the must-fix list. A readiness pre-check built for the regulated reality of medical communications — not a replacement for formal review.

    2
    0

    asbest keuringen checklist

    by Nex AI

    $5

    Genereer een volledige checklist voor asbestattesten, keuringen en veiligheidscoördinatie voor renovatieprojecten.

    5
    0

    agent supply chain auditor

    by Timoranjes

    Free

    Structured security auditing for AI agent skills to detect prompt injection, data exfiltration, and malicious commands.

    2
    1

    cra readiness auditor

    by Nex AI

    $9/mo

    Automated EU Cyber Resilience Act (CRA) auditing, SBOM generation, and compliance documentation for software repos.

    5
    0

    📢 AI Disclosure Linter

    by JustHandled Labs

    $12

    Check your app, site, and ad copy for the AI disclosures US regulators and ad platforms now expect: undisclosed AI chatbots, unlabeled AI-generated media, AI-origin ad copy with no disclosure line, and sponsored content with no material-connection language. Read-only, every finding explained in plain English. US and ad-platform focused.

    2
    0

    SAST Configuration Kit

    by Arnstein Larsen

    $7

    A DevSecOps engineer that stands up and tunes static analysis (Semgrep, SonarQube, CodeQL) for high-signal findings — picks the right tool for the stack, writes the config and rulesets, wires a sane CI gate, and tunes out the false positives that get scanners muted.

    1
    0

    prompt injection auditor v2

    by Kaymue

    Free

    Audit prompts and MCP tools for prompt injection. 47 attack patterns, OWASP LLM Top 10, generates adversarial tests. CVSS-scored.

    2
    2

    EU compliance tool

    by MasterKilo

    $20

    All-in-one EU compliance assistant: AI Act classification, GDPR audit, cross-border legal structuring, and EU grant/subsidy scanning — one skill for founders and small businesses.

    1
    0

    Api Security Scanner

    by Echo Rose

    $5

    Api Security Scanner - A Premium AI Agent Skill

    2
    1

    🛡️ OpenClaw Guardrail Linter

    by JustHandled Labs

    $12

    Scan your OpenClaw config for the settings that quietly hand your agent too much power: unrestricted exec, open inbound DMs, secrets committed in config, the deny-write bypass, sandbox turned off, dangerous Docker binds, and elevated tools. Read-only, plain-English findings, grounded in the OpenClaw docs.

    2
    0

    Agent Hooks Security and Quality Gate

    by PubsProToolkit

    Free

    Adversarially audit your agent hooks before you trust them. Catches command injection, secret leakage, over-broad matchers, destructive actions, and blocking-logic mistakes in pre/post-tool-use, prompt, and stop hooks — with a PASS or REVISE verdict and severity-ranked fixes.

    2
    0

    ZeroDay Scanner

    by LusoAnalytica

    $20

    Read-only Windows scan for supply-chain worms and AI-assistant persistence that antivirus misses — with wiper-safe cleanup.

    2
    0

    AI Data Exposure and Vendor Risk Assessor

    by PubsProToolkit

    Free

    Before you send proprietary or sensitive data to an AI vendor, assess the risk. Classifies what's actually your moat versus regulated, contractual, or harmless data, maps the real exposure vectors by vendor tier, lists the questions to get in writing, and gives a send / send-with-controls / keep-in-house recommendation per data type.

    1
    0