Armory
Source

Leaderboard

Scored on public signals; components with none are listed as Unranked · Formula

RankScoreComponentDescriptionEvidenceLast commitInstall
1Unrankedactive-directory-attacksskill · otherThis skill should be used when the user asks to "attack Active Directory", "exploit AD", "Kerberoasting", "DCSync", "pass-the-hash", "BloodHound…No signals yetNo commit datelisted armory install active-directory-attacks --cli claude
2Unrankedbest-practicesskill · otherApply modern web development best practices for security, compatibility, and code quality. Use when asked to "apply best practices", "security audit"…No signals yetNo commit datelisted armory install best-practices --cli claude
3Unrankedburp-suite-web-application-testingskill · otherThis skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web…No signals yetNo commit datelisted armory install burp-suite-web-application-testing --cli claude
4Unrankedcode-review-checklistskill · otherComprehensive checklist for conducting thorough code reviews covering functionality, security, performance, and maintainabilityNo signals yetNo commit datelisted armory install code-review-checklist --cli claude
5Unrankedethical-hacking-methodologyskill · otherThis skill should be used when the user asks to "learn ethical hacking", "understand penetration testing lifecycle", "perform reconnaissance"…No signals yetNo commit datelisted armory install ethical-hacking-methodology --cli claude
6Unrankedfind-bugsskill · otherFind bugs, security vulnerabilities, and code quality issues in local branch changes. Use when asked to review changes, find bugs, security review, or…No signals yetNo commit datelisted armory install find-bugs --cli claude
7Unrankedflutter-dart-code-reviewskill · otherLibrary-agnostic Flutter/Dart code review checklist covering widget best practices, state management patterns (BLoC, Riverpod, Provider, GetX, MobX…No signals yetNo commit datelisted armory install flutter-dart-code-review --cli claude
8Unrankedgoogle-cloud-waf-securityskill · otherGenerates security-focused guidance for Google Cloud workloads based on the Google Cloud Well-Architected Framework (WAF). Use to evaluate a workload…No signals yetNo commit datelisted armory install google-cloud-waf-security --cli claude
9Unrankedhomelab-network-readinessskill · otherReadiness checklist for homelab VLAN segmentation, local DNS filtering, and WireGuard-style remote access before changing router, firewall, DHCP, or…No signals yetNo commit datelisted armory install homelab-network-readiness --cli claude
10Unrankedlaravel-expertskill · otherSenior Laravel Engineer role for production-grade, maintainable, and idiomatic Laravel solutions. Focuses on clean architecture, security…No signals yetNo commit datelisted armory install laravel-expert --cli claude
11Unrankedmetasploit-frameworkskill · otherThis skill should be used when the user asks to "use Metasploit for penetration testing", "exploit vulnerabilities with msfconsole", "create payloads…No signals yetNo commit datelisted armory install metasploit-framework --cli claude
12Unrankedpentest-checklistskill · otherThis skill should be used when the user asks to "plan a penetration test", "create a security assessment checklist", "prepare for penetration…No signals yetNo commit datelisted armory install pentest-checklist --cli claude
13Unrankedpentest-commandsskill · otherThis skill should be used when the user asks to "run pentest commands", "scan with nmap", "use metasploit exploits", "crack passwords with hydra or…No signals yetNo commit datelisted armory install pentest-commands --cli claude
14Unrankedquarkus-verificationskill · other"Verification loop for Quarkus projects: build, static analysis, tests with coverage, security scans, native compilation, and diff review before…No signals yetNo commit datelisted armory install quarkus-verification --cli claude
15Unrankedred-team-tools-and-methodologyskill · otherThis skill should be used when the user asks to "follow red team methodology", "perform bug bounty hunting", "automate reconnaissance", "hunt for XSS…No signals yetNo commit datelisted armory install red-team-tools-and-methodology --cli claude
16Unrankedsast-configurationskill · otherStatic Application Security Testing (SAST) tool setup, configuration, and custom rule creation for comprehensive security scanning across multiple…No signals yetNo commit datelisted armory install sast-configuration --cli claude
17Unrankedsecurity-best-practicesskill · otherPerform language and framework specific security best-practice reviews and suggest improvements. Trigger only when the user explicitly requests…No signals yetNo commit datelisted armory install security-best-practices --cli claude
18Unrankedsecurity-scanning-toolsskill · otherThis skill should be used when the user asks to "perform vulnerability scanning", "scan networks for open ports", "assess web application security"…No signals yetNo commit datelisted armory install security-scanning-tools --cli claude
19Unrankedsenior-secopsskill · otherComprehensive SecOps skill for application security, vulnerability management, compliance, and secure development practices. Includes security…No signals yetNo commit datelisted armory install senior-secops --cli claude
20Unrankedspringboot-verificationskill · other"Verification loop for Spring Boot projects: build, static analysis, tests with coverage, security scans, and diff review before release or PR."No signals yetNo commit datelisted armory install springboot-verification --cli claude
21Unrankedvulnerability-scannerskill · otherAdvanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.No signals yetNo commit datelisted armory install vulnerability-scanner --cli claude
22Unrankedwordpress-penetration-testingskill · otherThis skill should be used when the user asks to "pentest WordPress sites", "scan WordPress for vulnerabilities", "enumerate WordPress users, themes…No signals yetNo commit datelisted armory install wordpress-penetration-testing --cli claude

Score colour shows how many signals stand behind it, never how good it is: amber, three or more; dimmer amber, two; grey, one. The Evidence column names them.

Stars, forks and last commit are as GitHub reported them when Armory last read each repository: for most, or later. A repository may have changed since.

Leaderboard · Armory