381,784 Collected SKILL.md files

Explore AI Agent Skills & Claude Prompts

Discover open-source agent skills for Claude Code, Codex, ChatGPT, and any tool that uses SKILL.md.

search
expand_more
Active:
Muath2000
Showing 12 of 18 skills
Muath2000

attack-surface-analyst

by Muath2000
star 0

External Attack Surface Management (EASM) specialist for CyberRadar. Discovers and monitors internet-facing assets: DNS enumeration, subdomain discovery, SSL/TLS certificate monitoring, open port detection, web technology fingerprinting, shadow IT identification, and external exposure scoring. Operates on both tenant's own infrastructure and vendor infrastructure (for TPRM external monitoring). Triggers on: attack surface, external scanning, DNS, subdomain, SSL, TLS, open ports, shadow IT, EASM, external risk, exposure.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

crq-engineer

by Muath2000
star 0

Cyber Risk Quantification engineer for CyberRadar. Implements FAIR (Factor Analysis of Information Risk) methodology, Monte Carlo simulation for loss distribution modeling, financial impact quantification in multi-currency (SAR, USD, EUR, GBP), loss exceedance curves, risk treatment ROI calculation, insurance premium optimization, and board-ready financial risk reporting. Transforms qualitative risk assessments into monetary terms for executive decision-making. Triggers on: CRQ, FAIR, Monte Carlo, financial impact, loss modeling, risk quantification, cyber insurance, risk treatment ROI, financial risk.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

cspm-engineer

by Muath2000
star 0

Cloud Security Posture Management engineer for CyberRadar. Builds the unified posture assessment engine across 4 clouds (AWS, Azure, GCP, OCI) in 3 modes: standalone (direct API scanning), connector-fed (from customer tools like Qualys/Tenable/Prisma), and hybrid (both, with deduplication). Covers CIS benchmark evaluation, cloud misconfiguration detection, IAM posture analysis, encryption gap detection, and network exposure assessment. Produces normalized posture findings that wire into risk register, control effectiveness, compliance scoring, evidence generation, and Cyber Score computation. Triggers on: CSPM, cloud posture, cloud scanning, CIS benchmarks, misconfiguration, cloud security, asset discovery, posture assessment, security posture management.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

cyber-score-architect

by Muath2000
star 0

Unified organizational posture scoring architect for CyberRadar. Designs and implements the Cyber Score — a single 0-100 metric aggregating compliance posture, control effectiveness, evidence freshness, vulnerability exposure, vendor risk, policy coverage, and CSPM findings. Supports drill-down from score → dimension → entity → evidence. Score versioning, explainability, historical trending, and board-ready visualization. Triggers on: cyber score, posture score, risk score, organizational score, security rating, compliance score, unified score, drill-down, score dimensions.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

kri-engineer

by Muath2000
star 0

Key Risk Indicator engine builder for CyberRadar. Designs KRI definitions with formula builder, threshold configuration (green/amber/red), automated alerting on breach, trend tracking with forecasting, dashboard widgets, escalation workflows, and board report integration. KRIs aggregate signals from all platform modules (CSPM, CRQ, compliance, vendor risk, evidence, vulnerabilities) into governance-level risk signals. Triggers on: KRI, key risk indicator, threshold, risk indicator, risk signal, risk alerting, risk threshold, risk dashboard, risk trend.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

multi-entity-governance

by Muath2000
star 0

Multi-entity governance architect for CyberRadar. Enables holding companies and multi-subsidiary organizations to manage compliance, risk, and security posture across multiple legal entities with parent-child tenant relationships, entity-level and consolidated roll-up dashboards, group CISO views, cross-entity benchmarking, and unified board reporting. Supports Saudi group structures (holding → subsidiaries) and global enterprises (HQ → regional entities → local operations). Triggers on: multi-entity, holding company, subsidiary, parent tenant, group CISO, consolidated dashboard, roll-up, entity governance, group compliance, multi-subsidiary.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

platform-intelligence-architect

by Muath2000
star 0

Cross-entity data correlation, enrichment, and analytics architect for CyberRadar. Builds the intelligence layer that connects all 20+ services into coherent customer and admin dashboards. Covers: cross-service data correlation (risk→control→evidence→asset →framework→vendor chains), computed metric enrichment, role-based customer dashboards (CISO, CCO, CRO, Board), PDPL-compliant admin dashboards (anonymized cross-tenant analytics, platform health, usage, revenue), data residency enforcement, and DSAR (Data Subject Access Request) support. Triggers on: data correlation, enrichment, dashboard, admin analytics, PDPL, data privacy, DSAR, cross-entity, platform analytics, customer dashboard, admin dashboard, anonymization.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

policy-lifecycle-analyst

by Muath2000
star 0

Policy and procedure lifecycle management specialist for CyberRadar. Covers full policy lifecycle: template library (500+ mapped to SCF/frameworks), rich text policy editor with version control, policy-to-control-to-framework mapping, policy gap analysis, approval workflows (integrates with existing approval chains), distribution and acknowledgment tracking, policy refresh scheduling, AI-assisted policy generation hooks, and policy compliance scoring that feeds into Cyber Score. Triggers on: policy, procedure, policy template, policy gap, policy approval, policy version, policy distribution, policy acknowledgment, policy generation, policy compliance.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

scenario-modeler

by Muath2000
star 0

Interactive risk scenario modeling engine for CyberRadar. Builds what-if analysis capabilities: "if we implement control X, how does Cyber Score change?", "if threat Y materializes, what's the financial impact?", "if vendor Z is breached, what's our exposure?" Combines CRQ engine, Cyber Score simulator, control effectiveness projections, and treatment comparison. Supports scenario saving, comparison, and board presentation. Triggers on: what-if, scenario, simulation, risk modeling, treatment comparison, impact analysis, risk scenario, threat modeling, control simulation.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

vulnerability-analyst

by Muath2000
star 0

Vulnerability management specialist for CyberRadar. Manages CVE database synchronization (NVD/MITRE), CVSS scoring, EPSS exploitability prediction, vulnerability prioritization using context (asset criticality + business impact + exploitability + threat intelligence), patch recommendation engine, vulnerability lifecycle tracking, SLA enforcement, and integration with CSPM findings and risk register. Triggers on: vulnerability, CVE, CVSS, EPSS, patch management, vulnerability prioritization, NVD, exploit, remediation SLA.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

sales-engineer

by Muath2000
star 0

Use this agent when you need to conduct technical pre-sales activities including solution architecture, proof-of-concept development, and technical demonstrations for complex sales deals. Triggers on: conduct, technical, pre-sales, activities, including, solution, architecture, proof-of-concept, development, demonstrations, complex, sales, deals.

navigation main article SKILL.md
schedule Updated 4 months ago
Muath2000

canonical-schema-architect

by Muath2000
star 0

Principal Canonical Schema & Normalization Architect. Designs canonical object models and normalization rules for multi-source data — findings, assets, identities, controls, evidence, transactions, and entities. Produces versioned schemas (Zod/JSON Schema), severity/status normalization tables, deterministic ID generation, entity resolution and deduplication rules, backwards-compatible evolution policies, and mapping guides for connector teams. Triggers on: canonical schema, normalization, entity resolution, deduplication, schema evolution, mapping rules, data model, canonical object, multi-source data, schema versioning, conflict resolution, severity normalization, status mapping, deterministic id, backwards compatible, additive evolution, schema migration.

navigation main article SKILL.md
schedule Updated 4 months ago
Page 1 of 2

Browse Agent Skills by Occupation

23 major groups · 867 SOC occupations

Browse by Category

Explore agent skills organized by their primary use case

SKILLMD / CREATORS AND OCCUPATION CATEGORIES

Explore the agent skills ecosystem by occupation and creator

SkillMD is not just a keyword search box. It is an open map that organizes public skills by occupation, creator, and repository, helping you see which workflows, judgment criteria, and domain habits people are writing for AI agents.

Then follow creators and GitHub repositories back to the source: compare the skills a team maintains, whether the repo is active, and how the README frames the work before you open, install, or reuse anything.

Use it three ways: learn an unfamiliar field by occupation, study how creators organize skills, then use source context to decide what is worth opening or reusing.

01 Map a field

Browse 23 occupation groups and 867 SOC roles to learn what skills exist in adjacent domains and how they break down real work.

02 Follow creators

Use creator and repository pages to inspect maintained skill collections, recent updates, and source context before trusting a result.

03 Search with sources

Search 1.7M+ collected skills, then use occupation tags, creators, and GitHub source context to decide what is worth opening.

Start with the occupation map, then follow creators and repositories back to real code. SkillMD helps explain why a skill is worth opening, not only what it is named.

SEO KNOWLEDGE HUB & TECHNICAL OVERVIEW

Standardizing Agent Capabilities with SKILL.md and Model Context Protocol (MCP)

In the rapidly evolving landscape of artificial intelligence, LLM agents (Large Language Model agents) have transitioned from simple text predictors to autonomous problem solvers. To orchestrate complex, multi-step agentic workflows, developers require a standardized format to specify agent capabilities, prompt instructions, system rules, and database bindings. This is where SKILL.md and the Model Context Protocol (MCP) have emerged as standard developer paradigms. SkillMD serves as the central directory for indexing, exploring, and sharing these critical agent configurations.

Our open-source registry currently tracks over 1.7 million collected SKILL.md configurations and system prompts. By compiling agent configurations from active developers on GitHub, we bridge the gap between prompt engineering research and production execution. Whether you are building agents with Anthropic's Claude Code, OpenAI's GPT-4, Google's Gemini, or local models using Ollama and LlamaIndex, standardized skill definitions ensure your agents behave predictably across different runtime environments.

What is the Model Context Protocol (MCP)?

The Model Context Protocol (MCP) is an open-source standard designed to connect LLMs to data sources, developer tools, and external environments. MCP establishes a bidirectional communication channel between client applications (like Cursor, Claude Desktop, or custom agent systems) and servers hosting data or capabilities. Standardizing instructions via SKILL.md enables LLMs to query databases, read local files, execute terminal commands, and integrate third-party APIs. SkillMD allows you to find ready-to-run MCP servers and prompt instructions for various occupations and technical tasks.

The Structure of a Professional SKILL.md File

A valid SKILL.md configuration is designed to be easily read by humans and parsed by LLMs. It contains precise system instructions, trigger conditions, required parameters, and execution examples. Below is the typical architectural blueprint of a professional agent skill:

  • Metadata & Core Scope: Declares the name of the skill, author details, target models, and a description of the capability.
  • Triggers & Intent Detection: Details semantic triggers that help the agent decide when to invoke this skill.
  • System Prompts: Explicit system-level instructions that direct the agent's behavior, personality, safety guardrails, and formatting preferences.
  • Capabilities & Tools: Lists the files, databases, or APIs the agent must access to complete the tasks.
  • Few-Shot Examples: Demonstrates real inputs and outputs, helping the model generalize behavior through in-context learning.

Optimizing Agent Workflows for Modern LLMs

Writing effective agent skills requires deep knowledge of prompt engineering. With the release of advanced reasoning models like Claude 3.5 Sonnet, ChatGPT o1, and DeepSeek-V3, prompt templates must focus on structured thinking. Developers are encouraged to use XML tags (e.g., <thought>, <context>, and <rules>) to isolate execution boundaries. Standardized prompts prevent agents from suffering from context drift, ensuring that long-running tasks remain aligned with the initial system parameters.

Exploring by SOC Occupations and Creator Profiles

What makes SkillMD unique is its taxonomy. Instead of simple text search, we parse and organize files according to the Standard Occupational Classification (SOC) system. This means you can discover skills written for Computer and Mathematical roles, Business and Financial operations, Legal, Design, and and Educational Instruction fields. By tracking creator profiles, developers can study how different teams organize their custom instructions, compare version updates, and fork public configs for specialized enterprise use cases.

SkillMD operates as a high-performance index running on a fast Go backend and a highly responsive Astro SSR frontend. All search queries execute in milliseconds, featuring smart debouncing to prevent multiple API requests while keeping user data secure. Join our community of developers to standardize your AI agent instructions and optimize your LLM prompting workflows today.

8 QUESTIONS

Frequently Asked Questions

A practical guide to agent skills: what they are, how to inspect them, and how SkillMD helps you explore the ecosystem.