{"repo":"UnitOneAI/SecuritySkills","free":true,"listed":false,"github":"https://github.com/UnitOneAI/SecuritySkills","clone":"git clone https://github.com/UnitOneAI/SecuritySkills.git","description":"Open-source security skills for AI coding agents. Grounded in OWASP, NIST, MITRE ATT&CK, CIS. Works with Claude Code, Gemini CLI, Cursor, Codex CLI, OpenClaw, Kiro.","language":"Ruby","stars":52,"topics":["agent-skills","ai-security","appsec","cis","claude","claude-code","cloud-security","compliance","devsecops","llm-security"],"license":"MIT","category":"security-tools","readme_excerpt":"Security Skills for AI Coding Agents Drop structured security skills into your AI coding agent. Get instant, framework-grounded security expertise. --- Why This Exists AI coding agents can perform security reviews, but they hallucinate framework control numbers, miss entire vulnerability categories, and produce inconsistent output across runs. The result is security guidance that sounds authoritative but falls apart under scrutiny. These skills ground agents in real published frameworks -- OWASP, NIST, MITRE ATT&CK, and CIS Controls -- so that every finding maps to a verifiable control. They are not prompt dumps. They are structured, framework-referenced, injection-hardened skill files that produce reliable, auditable security output. Quick Start Claude Code (native format — auto-discovery and /slash-commands ) Gemini CLI Cursor Codex CLI / Kiro / Generic Each skill is a directory with SKILL.md as the entrypoint, following the Agent Skills open standard. Claude Code discovers skills automatically; other tools can load them by path. Skill format Every skill is a directory at skills/ / / with SKILL.md as the entrypoint, following the Agent Skills open standard. SKILL.md frontmatter All skills use the same YAML frontmatter fields: The machine-readable schema for this frontmatter lives at schemas/skill.schema.json . Validate all skills and role bundles locally with: Validate skill fixture manifests and expected evidence strings with: Validate remediation regression manifests and ","default_branch":null,"files":null,"tree":[],"storefront":"/r/UnitOneAI","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/UnitOneAI/SecuritySkills/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}