Scan timing: clone 3.87s · analysis 37.5s · 29.9 MB · GitHub preflight 401ms
https://github.com/mukul975/Anthropic-Cybersecurity-Skills.git
· scanned 2026-06-22 03:26 UTC (2 months, 2 weeks ago)
· 10 languages
1265 raw signals (214 security + 1051 graph) 11/13 scanners ran 51st percentile · Python · large (100-500K LoC)
Last scanned 2 months, 2 weeks ago · v1 · 970 actionable findings from 2 signal sources. 295 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
40.0 | 0.15 | 6.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
70.0 | 0.20 | 14.00 |
documentation_score |
100.0 | 0.15 | 15.00 |
practices_score |
70.0 | 0.15 | 10.50 |
code_quality |
54.0 | 0.10 | 5.40 |
| Overall | 1.00 | 75.9 |
Showing 841 of 970 actionable findings. 1265 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
skills/building-red-team-c2-infrastructure-with-havoc/SKILL.md:131, 134 (2 hits)skills/deploying-active-directory-honeytokens/scripts/agent.py:242, 280 (2 hits)skills/exploiting-active-directory-with-bloodhound/scripts/agent.py:68
skills/implementing-network-access-control/SKILL.md:88, 311 (2 hits)skills/implementing-secret-scanning-with-gitleaks/SKILL.md:107, 259 (2 hits)skills/implementing-secrets-management-with-vault/SKILL.md:147
skills/implementing-security-information-sharing-with-stix2/SKILL.md:298, 312 (2 hits)skills/implementing-zero-knowledge-proof-for-authentication/scripts/agent.py:85
skills/performing-cryptographic-audit-of-application/scripts/process.py:281, 282 (3 hits)skills/performing-wifi-password-cracking-with-aircrack/SKILL.md:268, 273 (2 hits)skills/performing-wireless-security-assessment-with-kismet/scripts/agent.py:21
skills/processing-stix-taxii-feeds/SKILL.md:61, 77 (2 hits)skills/securing-container-registry-with-harbor/scripts/agent.py:172
skills/analyzing-cobalt-strike-beacon-configuration/assets/template.md:77
Mcp skillYaraYr1
skills/analyzing-cobalt-strike-beacon-configuration/references/api-reference.md:40
Mcp skillYaraYr1
skills/analyzing-cobalt-strike-beacon-configuration/references/standards.md:92
Mcp skillYaraYr1
skills/analyzing-cobalt-strike-beacon-configuration/scripts/agent.py:16
Mcp skillYaraYr1
skills/analyzing-cobalt-strike-beacon-configuration/scripts/process.py:6
Mcp skillYaraYr1
skills/analyzing-cobalt-strike-beacon-configuration/SKILL.md:47
Mcp skillYaraYr1
skills/analyzing-cobaltstrike-malleable-c2-profiles/references/api-reference.md:1
Mcp skillYaraYr1
skills/analyzing-cobaltstrike-malleable-c2-profiles/scripts/agent.py:2
Mcp skillYaraYr1
skills/analyzing-cobaltstrike-malleable-c2-profiles/SKILL.md:2
Mcp skillYaraYr1
skills/analyzing-command-and-control-communication/references/api-reference.md:76
Mcp skillYaraYr1
skills/analyzing-command-and-control-communication/scripts/agent.py:138
Mcp skillYaraYr1
skills/analyzing-command-and-control-communication/SKILL.md:188
Mcp skillYaraYr1
skills/analyzing-golang-malware-with-ghidra/references/api-reference.md:76
Mcp skillYaraYr1
skills/analyzing-golang-malware-with-ghidra/references/standards.md:21
Mcp skillYaraYr1
skills/acquiring-disk-image-with-dd-and-dcfldd/SKILL.md:2
SecretsSkill file
skills/analyzing-browser-forensics-with-hindsight/SKILL.md:242
SecretsSkill file
skills/analyzing-cloud-storage-access-patterns/SKILL.md:80
SecretsSkill file
skills/analyzing-disk-image-with-autopsy/SKILL.md:2
SecretsSkill file
skills/analyzing-ransomware-encryption-mechanisms/SKILL.md:212
SecretsSkill file
skills/analyzing-ransomware-leak-site-intelligence/SKILL.md:169
SecretsSkill file
skills/analyzing-windows-registry-for-artifacts/SKILL.md:177
SecretsSkill file
skills/auditing-cloud-with-cis-benchmarks/SKILL.md:164
SecretsSkill file
skills/building-adversary-infrastructure-tracking-system/SKILL.md:49
SecretsSkill file
skills/building-cloud-siem-with-sentinel/SKILL.md:88
SecretsSkill file
skills/building-red-team-c2-infrastructure-with-havoc/SKILL.md:317
SecretsSkill file
skills/building-threat-actor-profile-from-osint/SKILL.md:248
SecretsSkill file
skills/building-threat-intelligence-platform/SKILL.md:124
SecretsSkill file
skills/building-vulnerability-dashboard-with-defectdojo/SKILL.md:77
SecretsSkill file
skills/conducting-cloud-incident-response/SKILL.md:105
SecretsSkill file
skills/conducting-cyber-risk-assessment-with-nist-800-30/SKILL.md:2
SecretsSkill file
skills/configuring-aws-verified-access-for-ztna/SKILL.md:191
SecretsSkill file
skills/configuring-identity-aware-proxy-with-google-iap/SKILL.md:99
SecretsSkill file
skills/configuring-zscaler-private-access-for-ztna/SKILL.md:229
SecretsSkill file
skills/deploying-active-directory-honeytokens/SKILL.md:180
SecretsSkill file
skills/deploying-cloud-deception-with-decoy-resources/SKILL.md:83
SecretsSkill file
skills/deploying-osquery-for-endpoint-monitoring/SKILL.md:59
SecretsSkill file
skills/deploying-palo-alto-prisma-access-zero-trust/SKILL.md:95
SecretsSkill file
skills/deploying-tailscale-for-zero-trust-vpn/SKILL.md:118
SecretsSkill file
skills/detecting-arp-poisoning-in-network-traffic/SKILL.md:353
SecretsSkill file
skills/detecting-attacks-on-scada-systems/SKILL.md:582
SecretsSkill file
skills/detecting-aws-credential-exposure-with-trufflehog/SKILL.md:139
SecretsSkill file
skills/detecting-aws-guardduty-findings-automation/SKILL.md:101
SecretsSkill file
skills/detecting-cloud-threats-with-guardduty/SKILL.md:106
SecretsSkill file
skills/detecting-compromised-cloud-credentials/SKILL.md:280
SecretsSkill file
skills/detecting-cryptomining-in-cloud/SKILL.md:94
SecretsSkill file
skills/detecting-fileless-malware-techniques/SKILL.md:193
SecretsSkill file
skills/detecting-lateral-movement-in-network/SKILL.md:241
SecretsSkill file
skills/detecting-misconfigured-azure-storage/SKILL.md:145
SecretsSkill file
skills/detecting-network-anomalies-with-zeek/SKILL.md:215
SecretsSkill file
skills/detecting-s3-data-exfiltration-attempts/SKILL.md:69
SecretsSkill file
skills/detecting-serverless-function-injection/SKILL.md:355
SecretsSkill file
skills/exploiting-insecure-data-storage-in-mobile/SKILL.md:120
SecretsSkill file
skills/exploiting-jwt-algorithm-confusion-attack/SKILL.md:76
SecretsSkill file
skills/exploiting-oauth-misconfiguration/SKILL.md:204
SecretsSkill file
skills/exploiting-websocket-vulnerabilities/SKILL.md:61
SecretsSkill file
skills/extracting-config-from-agent-tesla-rat/SKILL.md:122
SecretsSkill file
skills/hunting-for-dcom-lateral-movement/SKILL.md:487
SecretsSkill file
skills/implementing-api-abuse-detection-with-rate-limiting/SKILL.md:92
SecretsSkill file
skills/implementing-api-gateway-security-controls/SKILL.md:204
SecretsSkill file
skills/implementing-api-key-security-controls/SKILL.md:98
SecretsSkill file
skills/implementing-api-schema-validation-security/SKILL.md:211
SecretsSkill file
skills/implementing-aws-config-rules-for-compliance/SKILL.md:70
SecretsSkill file
skills/implementing-aws-iam-permission-boundaries/SKILL.md:115
SecretsSkill file
skills/implementing-aws-macie-for-data-classification/SKILL.md:89
SecretsSkill file
skills/implementing-aws-nitro-enclave-security/SKILL.md:141
SecretsSkill file
skills/implementing-aws-security-hub-compliance/SKILL.md:68
SecretsSkill file
skills/implementing-aws-security-hub/SKILL.md:67
SecretsSkill file
skills/implementing-beyondcorp-zero-trust-access-model/SKILL.md:121
SecretsSkill file
skills/implementing-canary-tokens-for-network-intrusion/SKILL.md:108
SecretsSkill file
skills/implementing-cloud-security-posture-management/SKILL.md:64
SecretsSkill file
skills/implementing-cloud-trail-log-analysis/SKILL.md:70
SecretsSkill file
skills/implementing-cloud-vulnerability-posture-management/SKILL.md:67
SecretsSkill file
skills/implementing-cloud-waf-rules/SKILL.md:188
SecretsSkill file
skills/implementing-data-loss-prevention-with-microsoft-purview/SKILL.md:437
SecretsSkill file
skills/implementing-disk-encryption-with-bitlocker/SKILL.md:2
SecretsSkill file
skills/implementing-gcp-binary-authorization/SKILL.md:118
SecretsSkill file
skills/implementing-hashicorp-vault-dynamic-secrets/SKILL.md:112
SecretsSkill file
skills/implementing-image-provenance-verification-with-cosign/SKILL.md:79
SecretsSkill file
skills/implementing-mtls-for-zero-trust-services/SKILL.md:64
SecretsSkill file
skills/implementing-network-access-control/SKILL.md:63
SecretsSkill file
skills/implementing-patch-management-workflow/SKILL.md:103
SecretsSkill file
skills/implementing-rapid7-insightvm-for-scanning/SKILL.md:181
SecretsSkill file
skills/implementing-secret-scanning-with-gitleaks/SKILL.md:107
SecretsSkill file
skills/implementing-secrets-management-with-vault/SKILL.md:76
SecretsSkill file
skills/implementing-supply-chain-security-with-in-toto/SKILL.md:152
SecretsSkill file
skills/implementing-velociraptor-for-ir-collection/SKILL.md:262
SecretsSkill file
skills/implementing-zero-standing-privilege-with-cyberark/SKILL.md:117
SecretsSkill file
skills/implementing-zero-trust-with-hashicorp-boundary/SKILL.md:150
SecretsSkill file
skills/managing-cloud-identity-with-okta/SKILL.md:108
SecretsSkill file
skills/performing-active-directory-bloodhound-analysis/SKILL.md:243
SecretsSkill file
skills/performing-agentless-vulnerability-scanning/SKILL.md:123
SecretsSkill file
skills/performing-api-fuzzing-with-restler/SKILL.md:161
SecretsSkill file
skills/performing-automated-malware-analysis-with-cape/SKILL.md:71
SecretsSkill file
skills/performing-aws-privilege-escalation-assessment/SKILL.md:78
SecretsSkill file
skills/performing-brand-monitoring-for-impersonation/SKILL.md:115
SecretsSkill file
skills/performing-cloud-asset-inventory-with-cartography/SKILL.md:252
SecretsSkill file
skills/performing-cloud-incident-containment-procedures/SKILL.md:95
SecretsSkill file
skills/performing-cloud-native-threat-hunting-with-aws-detective/SKILL.md:70
SecretsSkill file
skills/performing-cloud-storage-forensic-acquisition/SKILL.md:188
SecretsSkill file
skills/performing-csrf-attack-simulation/SKILL.md:118
SecretsSkill file
skills/performing-deception-technology-deployment/SKILL.md:181
SecretsSkill file
skills/performing-disk-forensics-investigation/SKILL.md:2
SecretsSkill file
skills/performing-http-parameter-pollution-attack/SKILL.md:100
SecretsSkill file
skills/performing-jwt-none-algorithm-attack/SKILL.md:85
SecretsSkill file
skills/performing-kubernetes-etcd-security-assessment/SKILL.md:93
SecretsSkill file
skills/performing-log-source-onboarding-in-siem/SKILL.md:171
SecretsSkill file
skills/performing-malware-persistence-investigation/SKILL.md:132
SecretsSkill file
skills/performing-oauth-scope-minimization-review/SKILL.md:106
SecretsSkill file
skills/performing-paste-site-monitoring-for-credentials/SKILL.md:271
SecretsSkill file
skills/performing-service-account-credential-rotation/SKILL.md:179
SecretsSkill file
skills/performing-sqlite-database-forensics/SKILL.md:298
SecretsSkill file
skills/prioritizing-vulnerabilities-with-cvss-scoring/SKILL.md:192
SecretsSkill file
skills/remediating-s3-bucket-misconfiguration/SKILL.md:135
SecretsSkill file
skills/reverse-engineering-dotnet-malware-with-dnspy/SKILL.md:169
SecretsSkill file
skills/reverse-engineering-ios-app-with-frida/SKILL.md:150
SecretsSkill file
skills/securing-api-gateway-with-aws-waf/SKILL.md:320
SecretsSkill file
skills/securing-aws-iam-permissions/SKILL.md:112
SecretsSkill file
skills/securing-aws-lambda-execution-roles/SKILL.md:99
SecretsSkill file
skills/securing-azure-with-microsoft-defender/SKILL.md:103
SecretsSkill file
skills/securing-container-registry-with-harbor/SKILL.md:213
SecretsSkill file
skills/securing-helm-chart-deployments/SKILL.md:191
SecretsSkill file
skills/securing-kubernetes-on-cloud/SKILL.md:125
SecretsSkill file
skills/securing-serverless-functions/SKILL.md:82
SecretsSkill file
skills/implementing-hardware-security-key-authentication/scripts/agent.py:663
securityAuth flask unauth route
skills/implementing-hardware-security-key-authentication/scripts/agent.py:691
securityAuth flask unauth route
skills/implementing-scim-provisioning-with-okta/scripts/process.py:315
securityAuth flask unauth route
skills/implementing-scim-provisioning-with-okta/scripts/process.py:169
securityAuth flask unauth route
skills/implementing-scim-provisioning-with-okta/scripts/process.py:411
securityAuth flask unauth route
skills/implementing-scim-provisioning-with-okta/scripts/process.py:301
securityAuth flask unauth route
skills/implementing-scim-provisioning-with-okta/scripts/process.py:373
securityAuth flask unauth route
skills/implementing-scim-provisioning-with-okta/scripts/process.py:265
securityAuth flask unauth route
skills/implementing-hardware-security-key-authentication/scripts/agent.py:844
securityAuth flask unauth route
skills/implementing-hardware-security-key-authentication/scripts/agent.py:565
securityAuth flask unauth route
skills/implementing-hardware-security-key-authentication/scripts/agent.py:606
securityAuth flask unauth route
skills/implementing-scim-provisioning-with-okta/scripts/process.py:237
securityAuth flask unauth route
skills/implementing-hardware-security-key-authentication/scripts/agent.py:800
securityAuth flask unauth route
skills/implementing-hardware-security-key-authentication/scripts/agent.py:823
securityAuth flask unauth route
skills/analyzing-pdf-malware-with-pdfid/SKILL.md:342
Eval used
skills/analyzing-supply-chain-malware-artifacts/scripts/agent.py:117
Eval used
skills/analyzing-windows-event-logs-in-splunk/SKILL.md:104
Eval used
skills/building-detection-rule-with-splunk-spl/SKILL.md:82
Eval used
skills/building-incident-response-dashboard/scripts/agent.py:106
Eval used
skills/building-soc-metrics-and-kpi-tracking/scripts/agent.py:106
Eval used
skills/building-soc-metrics-and-kpi-tracking/SKILL.md:131
Eval used
skills/deobfuscating-javascript-malware/SKILL.md:117
Eval used
skills/detecting-anomalous-authentication-patterns/SKILL.md:584
Eval used
skills/detecting-golden-ticket-attacks-in-kerberos-logs/SKILL.md:74
Eval used
skills/detecting-ntlm-relay-with-event-correlation/SKILL.md:434
Eval used
skills/detecting-serverless-function-injection/scripts/agent.py:30
Eval used
skills/detecting-serverless-function-injection/SKILL.md:106
Eval used
skills/implementing-alert-fatigue-reduction/scripts/agent.py:27
Eval used
skills/implementing-alert-fatigue-reduction/SKILL.md:65
Eval used
skills/implementing-mitre-attack-coverage-mapping/SKILL.md:279
Eval used
skills/implementing-siem-use-cases-for-detection/SKILL.md:243
Eval used
skills/implementing-ticketing-system-for-incidents/SKILL.md:362
Eval used
skills/investigating-insider-threat-indicators/SKILL.md:104
Eval used
skills/performing-content-security-policy-bypass/scripts/agent.py:149
Eval used
skills/performing-false-positive-reduction-in-siem/SKILL.md:75
Eval used
skills/performing-security-headers-audit/scripts/agent.py:89
Eval used
skills/performing-serverless-function-security-review/SKILL.md:217
Eval used
skills/performing-threat-hunting-with-yara-rules/scripts/agent.py:58
Eval used
skills/performing-user-behavior-analytics/SKILL.md:71
Eval used
skills/analyzing-supply-chain-malware-artifacts/scripts/agent.py:116
Exec used
skills/detecting-serverless-function-injection/scripts/agent.py:31
Exec used
skills/detecting-serverless-function-injection/SKILL.md:107
Exec used
skills/implementing-devsecops-security-scanning/SKILL.md:153
Exec used
skills/performing-serverless-function-security-review/SKILL.md:217
Exec used
skills/deobfuscating-javascript-malware/scripts/agent.py:94
New function used
skills/deobfuscating-javascript-malware/SKILL.md:119
New function used
skills/detecting-serverless-function-injection/scripts/agent.py:46
New function used
skills/detecting-serverless-function-injection/SKILL.md:118
New function used
skills/performing-content-security-policy-bypass/SKILL.md:85
New function used
skills/analyzing-supply-chain-malware-artifacts/scripts/agent.py:114
Python os system
Showing first 300 of 841. Refine filters or use the findings page for deep search.
This page is publicly accessible at:
https://repobility.com/scan/06aee137-74c6-4266-960c-52233d41f613/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/06aee137-74c6-4266-960c-52233d41f613/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.