HelloAi
Community@do360now
Agent Skills by HelloAi
Showing 46 vetted skills indexed across 1 GitHub repositories.
agent-security
Analyze AI agent system security architecture and permission models for vulnerabilities.
forensics-checklist
Automate digital forensic evidence collection and chain of custody documentation.
cve-triage
Evaluate CVE vulnerabilities using CVSS 4.0, KEV, EPSS, and SSVC data.
soc2-gap
Analyze organizational controls against SOC 2 Trust Services Criteria.
detection-engineering
Create and validate Sigma-based SIEM detection rules mapped to ATT&CK techniques.
llm-top-10
Analyzes LLM applications for vulnerabilities across the ten OWASP AI categories.
containment
Generate containment plans for cyber security incidents across networks and systems.
owasp-top-10-web
Analyze web application source code for OWASP Top 10 security risks.
patch-prioritization
Prioritize security vulnerabilities using SSVC, EPSS, and CISA KEV frameworks.
ir-playbook
Generate structured incident response plans based on NIST and SANS frameworks.
container-security
Review container images and Kubernetes manifests for security compliance.
dns-security
Analyze DNS configuration files, DNSSEC signing, resolver validation, and encryption deployment.
segmentation
Analyze network configurations to evaluate zone architecture and trust boundaries.
iac-security
Detect security vulnerabilities and compliance issues in Infrastructure as Code templates.
sbom-analysis
Analyzes SBOM files for format, metadata completeness, dependency risks, and license conflicts.
hipaa-review
Assess healthcare organizations' compliance with HIPAA Security Rule requirements.
log-analysis
Analyze and correlate system and network logs to identify security threats.
siem-rules
Design and tune SIEM detection rules for Azure Sentinel or Splunk.
sast-config
Evaluate SAST configurations and rule coverage against CWE Top 25.
access-review
Analyze user entitlements and account statuses across systems for security compliance.
aws-review
Analyze AWS infrastructure-as-code for CIS benchmark security non-compliance.
threat-modeling
Analyzes system architectures using STRIDE to identify vulnerabilities and threats.
gcp-review
Assess Google Cloud Platform environments against CIS benchmarks for security compliance.
iso27001-gap
Evaluate organizational security controls against ISO 27001:2022 standards to identify compliance gaps.