Claude Code skill for OWASP security best practices (2025-2026). Includes Top 10:2025, ASVS 5.0, Agentic AI security, and 20+ language-specific security quirks.
Open-source GRC toolkit from the GRC Engineering Club. Claude Code plugins for evidence collection, SCF crosswalks, multi-framework gap reports, OSCAL workflows.
Master Claude Code Hooks

Ghost Security's collection of AppSec skills for AI coding agents
Shared skills, safe for production.
Enable AI assistants to explore and query your Steampipe data!
js hook toolkit that all you need
Mantis Hack
MCP server for reverse engineering tasks in Ghidra 👩💻
Headless IDA Pro MCP Server
Run AI coding agents in hardened container sandboxes.
A SKILL.md for ipsw
A comprehensive framework for analyzing and defending against attacks targeting Software Development Life Cycle Infrastructure.
A fully functional and production-grade reverse engineering MCP Server
A curated list of awesome Agent Skills for automating legal work
MCP Fusion - The TypeScript framework for secure MCP servers.

MCPify is an AI enablement compiler that transforms existing applications into AI-native, agent-operable systems.
MCP Server for Wazuh SIEM

Connect any AI model to 1200+ integrations (MCP, CLI, API)
AI API identity gateway — reverse proxy that normalizes device fingerprints and telemetry for privacy-preserving API proxying
Offensive security toolkit for Claude Code covering red team, exploit dev, AD attacks, EDR bypass, mobile pentest
Our agent harness: Skills, plugins, hooks, and utilities to improve the quality of your agent.

Your Windows syscall hooking factory - feat Canterlot's Gate - All accessible over MCP
Threat modeling and AI-reasoning vulnerability detection harness for Claude Code — STRIDE + AI + MAESTRO