Cybersecurity Skills Bundle | Prompeteer.ai
Security auditing, vulnerability assessment, compliance frameworks, secure coding practices, and incident response skills.
Included Skills (80)
- CLAUDE.md Optimizer — This skill audits and improves CLAUDE.md files within a repository, ensuring optimal project context for Claude Code and aiding developers.
- CLAUDE.md Optimizer — This skill audits and improves CLAUDE.md files within a repository, ensuring optimal project context for Claude Code assistants.
- google-cloud-waf-security — Generates security-focused guidance for Google Cloud workloads based on the design principles and recommendations in the Google Cloud Well-Architected Framework (WAF). Use this skill to evaluate a workload, identify security requirements, and provide actionable recommendations for IAM, network security, data protection, and operational security.
- senior-secops — Senior SecOps engineer skill for application security, vulnerability management, compliance verification, and secure development practices. Runs SAST/DAST scans, generates CVE remediation plans, checks dependency vulnerabilities, creates security policies, enforces secure coding patterns, and automates compliance checks against SOC2, PCI-DSS, HIPAA, and GDPR. Use when conducting a security review or audit, responding to a CVE or security incident, hardening infrastructure, implementing authentication or secrets management, running penetration test prep, checking OWASP Top 10 exposure, or enforcing security controls in CI/CD pipelines.
- Security Incident Responder — This skill classifies, triages, and manages declared security incidents, determining severity, escalation paths, and initiating forensic evidence collection for security teams.
- ISMS Audit Assistant — This skill helps security professionals conduct ISO 27001 ISMS audits, assess controls, and prepare for certification.
- Security Engineering Toolkit — This toolkit helps developers and security engineers perform threat modeling, vulnerability analysis, and secure architecture design using industry best practices.
- AI Security Assessor — Assess AI/ML systems for vulnerabilities like prompt injection, model inversion, and data poisoning, aiding security engineers and AI developers.
- Schema Markup Specialist — Assists users in implementing, auditing, and validating schema markup to improve search visibility and rich result eligibility.
- Website Architecture Planner — This skill helps users audit, redesign, or plan their website's structure, navigation, and internal linking strategy for improved SEO and user experience.
- ISO 27001 ISMS Manager — This skill helps HealthTech and MedTech companies implement ISO 27001 ISMS for cybersecurity governance, risk assessment, and compliance verification.
- Skill Optimization Assistant — Analyzes and improves agent skills (SKILL.md files) by providing diagnostic reports and prioritized fixes, benefiting agent developers and maintainers.
- FDA Regulatory Consultant — Provides FDA regulatory guidance to medical device companies regarding submissions, compliance, and cybersecurity requirements, ensuring regulatory success.
- Accessibility Audit Tool — This skill scans, fixes, and verifies WCAG 2.2 Level A/AA compliance in web codebases, aiding developers and compliance teams.
- Cloud Security Assessor — Assess cloud infrastructure for security misconfigurations, IAM privilege escalation, and public exposure across AWS, Azure, and GCP environments.
- Proactive Threat Hunting — This skill proactively identifies threats by using hypothesis-driven hunting, IOC analysis, and anomaly detection for security analysts.
- ISO 13485 QMS Manager — Assists medical device organizations with ISO 13485 Quality Management System implementation, maintenance, and audit preparation, ensuring regulatory compliance.
- Checkov Security Scanner — This skill provides expert guidance for using Checkov to scan infrastructure-as-code for security misconfigurations and compliance violations, aiding developers.
- Falco Security Advisor — Provides expert guidance for setting up Falco to detect anomalous container and Kubernetes behavior, aiding developers in real-time threat detection.
- Secrets Vault Management — This skill helps DevOps and security engineers manage secret infrastructure, including Vault, cloud secret stores, and secret rotation.
- Docker Development Assistant — This skill optimizes Dockerfiles, orchestrates docker-compose configurations, and hardens container security for developers following container best practices.
- Secrets Lifecycle Manager — This skill helps developers and security teams manage environment variables and secrets safely across development and production environments, preventing leaks and ensuring proper rotation.
- GDPR Compliance Automation — This skill automates GDPR/DSGVO compliance by scanning code for privacy risks and generating DPIA documentation for developers and legal teams.
- google-cloud-waf-reliability — Generates reliability-focused guidance for Google Cloud workloads based on the design principles and recommendations in the Google Cloud Well-Architected Framework. Use this skill to evaluate a workload, identify reliability requirements, and provide actionable recommendations for build, deploy, and manage the workload reliably in Google Cloud.
- slash-command-factory — Generate custom Claude Code slash commands through intelligent 5-7 question flow. Creates powerful commands for business research, content analysis, healthcare compliance, API integration, documentation automation, and workflow optimization. Outputs organized commands to generated-commands/ with validation and installation guidance.
- Stack Evaluation Tool — Evaluates technology stacks, providing TCO analysis, security assessments, and intelligent recommendations for engineering teams choosing technologies.
- PR Review Expert — This skill reviews pull requests, analyzes code changes, checks for security issues, and assesses code quality, assisting software engineers.
- Analytics Tracking Assistant — Assists users in setting up, improving, and auditing analytics tracking and measurement for actionable marketing and product insights.
- Incident Response Manager — This skill helps engineering teams manage technology incidents by providing tools for classification, timeline reconstruction, and post-incident review.
- Backend System Architect — Designs and implements robust backend systems, including APIs, databases, and security, assisting developers with architecture and optimization tasks.
- Analytics Tracking Assistant — This skill sets up, audits, and debugs analytics tracking implementations, ensuring accurate data capture for informed decision-making by marketing teams.
- Terraform IaC Assistant — This skill helps engineers design secure, well-structured Terraform infrastructure code following best practices for modules, state, and security.
- MDR Compliance Specialist — This skill assists medical device companies with EU MDR 2017/745 compliance, covering classification, documentation, clinical evidence, and post-market surveillance.
- Quality System Manager — Provides quality system governance and regulatory compliance oversight for HealthTech and MedTech companies, ensuring ISO 13485 adherence.
- QMS Audit Expertise — Provides ISO 13485 internal audit expertise for medical device QMS, assisting with planning, execution, classification, and CAPA verification.
- QMS Document Manager — Manages document control for medical device QMS, covering numbering, versioning, change management, and regulatory compliance for quality professionals.
- Azure Architecture Designer — Design scalable Azure cloud architectures and infrastructure-as-code templates, optimizing cost and compliance for startups and enterprises.
- Discord Channel Configurator — Helps users configure a Discord channel by saving the bot token and setting access policies for enhanced bot security.
- SOC 2 Assistant — Assists SaaS companies preparing for SOC 2 audits by mapping criteria, building matrices, and assessing audit readiness.
- Security Penetration Testing — This skill performs security audits and penetration testing to find vulnerabilities, assisting security engineers and developers in improving system security.
- Workspace CLI Assistant — Automate Google Workspace administration tasks using the gws CLI, helping administrators manage and optimize their organization's Google services.
- AI Citation Optimizer — This skill helps content creators optimize their content to be cited by AI search engines like ChatGPT and Perplexity.
- Red Team Planner — Aids in planning and executing red team engagements by simulating adversary attacks to test security effectiveness.
- Cloud Networking Investigator — Analyzes Google Cloud networking logs and metrics to diagnose issues related to VPC, firewall, and network traffic for cloud engineers.
- M365 Tenant Automation — Automates Microsoft 365 tenant administration tasks, including user management, security policies, and configuration, for Global Administrators.
- Cosign Security Assistant — Provides expert guidance on using Cosign for signing, verifying, and managing container images, enhancing software supply chain security for developers.
- Kyverno Policy Assistant — Provides expert assistance for Kyverno, a Kubernetes-native policy engine, helping developers enforce policies and ensure cluster compliance.
- Semgrep Code Analysis — Provides expert guidance on using Semgrep to find bugs, security vulnerabilities, and anti-patterns, assisting developers with code analysis.
- Data Quality Auditor — This skill audits datasets for quality issues, profiles data, detects anomalies, and generates a remediation plan for data engineers.
- Arcjet Security Assistant — Provides expert guidance for Arcjet, a developer-first security platform, helping developers add security layers to JavaScript/TypeScript applications without managing infrastructure.
- Better Stack Assistant — Provides expert guidance for Better Stack, helping developers configure uptime monitoring, log management, incident response, and status pages.
- Technical Change Tracker — Track code changes with structured records and a state machine, enabling audit trails and seamless AI session handoffs.
- HIPAA Compliance Implementation — This skill helps developers implement HIPAA compliance in healthcare applications, covering PHI handling, encryption, audit logging, and access controls.
- AI Pentesting Agent — Automate security testing with PentAGI, an AI-powered penetration testing agent that helps users deploy autonomous vulnerability scanners and self-hosted security platforms.
- Robotics Security Hardening — This skill hardens robotic systems by implementing security best practices for ROS2, DDS, network segmentation, and secrets management.
- Subdomain Discovery Tool — Subfinder discovers subdomains for a target domain using passive enumeration, aiding security professionals and developers in attack surface mapping.
- SOC2 Compliance Assistant — Helps SaaS companies achieve SOC 2 Type II compliance by implementing controls and preparing for audits to meet enterprise requirements.
- AI Pentesting Agent — This skill autonomously performs web application penetration tests using AI and security tools, assisting security engineers and DevOps teams.
- Dependency Security Auditor — This skill analyzes project dependencies to identify vulnerabilities, ensure license compliance, and optimize dependency management for software development teams.
- Programmatic SEO Generator — Assists users in creating SEO-optimized pages at scale using templates and data, ideal for marketers and SEO specialists.
- Atlassian Admin Assistant — Manages Atlassian products, users, permissions, and configurations, assisting organizations with their Atlassian administration tasks and governance.
- GCP Security Hardening — This skill helps DevOps engineers and security architects apply Google Cloud's Well-Architected Framework for security hardening and compliance evaluations.
- Security Vulnerability Scanner — This skill scans code for vulnerabilities, exposed secrets, and misconfigurations, providing prioritized fix recommendations to help developers secure their applications.
- XSS Vulnerability Scanner — Detects, exploits, and prevents Cross-Site Scripting (XSS) vulnerabilities in web applications, aiding security professionals and developers.
- Nuclei Vulnerability Scanner — Scan web applications for vulnerabilities using Nuclei, a template-based scanner, assisting developers and security engineers with security assessments.
- PCI DSS Compliance — Achieve PCI DSS compliance by scoping, implementing controls, and selecting SAQ types for secure payment card data handling.
- Maltego Transform Builder — Build custom Maltego transforms in Python for visual OSINT graph analysis, helping security researchers and threat intelligence analysts.
- SSRF Vulnerability Handler — This skill helps security engineers and developers detect, exploit, and prevent Server-Side Request Forgery (SSRF) vulnerabilities in web applications.
- Censys Search Engine — Leverage Censys to analyze internet-connected hosts, TLS certificates, and domains, aiding security researchers and network administrators in attack surface discovery.
- Azure OpenAI Service — This skill provides access to OpenAI models on Azure, offering enterprise compliance and Azure-native authentication for developers and organizations.
- Shodan Device Discovery — This skill leverages the Shodan API to help security researchers and network administrators discover internet-connected devices and exposed services.
- Amass Network Mapper — This skill uses OWASP Amass to perform in-depth DNS enumeration and network mapping for comprehensive attack surface discovery.
- Traefik Reverse Proxy — Automate traffic routing and TLS certificate management for containerized applications using the Traefik reverse proxy and load balancer.
- Sensitive Data Masking — This skill helps developers and data scientists mask sensitive data in databases, logs, and APIs for enhanced privacy and security.
- VictoriaMetrics Deployment — Deploys and configures VictoriaMetrics, a high-performance time-series database, assisting users needing Prometheus-compatible storage or MetricsQL querying.
- Web Technology Identifier — Identifies web technologies, CMS platforms, and server configurations on websites, aiding developers and security professionals in reconnaissance.
- CCPA Compliance Assistant — Helps businesses comply with CCPA/CPRA by implementing data privacy features and responding to consumer data requests.
- Firestore Database Manager — Facilitates real-time application development using Google Cloud Firestore, enabling data modeling, querying, and security rule configuration.
- Hetzner Cloud Manager — Manage Hetzner Cloud infrastructure, including servers, networks, and firewalls, directly from the terminal, assisting DevOps engineers and system administrators.
- Keycloak Identity Expert — Assists teams implementing Keycloak for SSO, OAuth, user federation, and fine-grained authorization, providing self-hosted identity management.