Part I
Official Anthropic Skills
17 first-party skills shipped from the Anthropic core team — document generation, development, MCP, enterprise and creative.
Part II
Verified Partner Skills
Skills shipped by named companies — first-party tooling for the products you already use.
Sentry
★ 2,500+30 skills
Error tracking SDK skills across the Sentry product surface.
github.com/getsentry/sentry-for-ai →
Cloudflare
★ 92316+ skills
Workers, D1, R2, KV, Durable Objects, Agents SDK, Workflows, Queues, Pages.
github.com/cloudflare/skills →
Trail of Bits
★ 4,700+29 skills
static-analysis, variant-analysis, semgrep-rule-creator, insecure-defaults, differential-review, sharp-edges.
github.com/trailofbits/skills →
Microsoft
★ 495133 skills
.NET (25), Java (30), Python (40+), Rust (7), TypeScript (22), Core (9). Azure, M365, Copilot SDK, Entra.
github.com/MicrosoftDocs/Agent-Skills →
HashiCorp Terraform
providers, testing, stacks, style guide, import, actions, refactor.
github.com/hashicorp/skills →
Firecrawl
★ 3,000+Web scraping, search, onboarding, interactive builds.
github.com/firecrawl/firecrawl-claude-plugin →
AWS
★ 595Serverless, Amplify, databases, migrations, location service.
github.com/awslabs/agent-plugins →
Azure
MCP Server, Foundry MCP.
github.com/microsoft/azure-skills →
DigitalOcean
★ 19App Platform deployment.
github.com/digitalocean-labs/do-app-platform-skills →
Pulumi
★ 34Migration: Terraform → Pulumi, CDK, CloudFormation, ARM. Best practices, automation API, ESC.
github.com/pulumi/agent-skills →
Neon
★ 52Postgres, claimable DB, egress optimizer.
github.com/neondatabase-labs/ai-rules →
Supabase
Postgres best practices.
github.com/supabase/agent-skills →
PlanetScale
MySQL branching, query performance, index design.
github.com/planetscale/claude-plugin →
ClickHouse
Best practices, chdb, architecture advisor, cloud/local deploy.
github.com/clickhouse/clickhouse →
Remotion
★ 500Programmatic video creation with React.
github.com/remotion-dev/skills →
WordPress
Block dev, themes, plugins, REST API, WP-CLI, performance, PHPStan, Playground.
github.com/WordPress/wordpress →
OpenAI
Figma (8), Notion (4), security (3), deployment, games, Sora, speech, slides.
github.com/openai →
Figma
Code connect, design system, generate design/library, implement design.
github.com/figma →
Google Gemini
Gemini API, Vertex AI, Live API, Interactions API.
github.com/google-gemini →
Stripe
Best practices, upgrade guide.
github.com/stripe →
Better Auth
Auth setup, providers, email/password, 2FA, organizations.
github.com/better-auth →
fal.ai
Image/video/audio generation, 3D, lip sync, tryon, upscale, realtime, workflow.
github.com/fal-ai-community →
Sanity
Best practices, content modeling, SEO, experimentation.
github.com/sanity-io →
Tinybird
Best practices, CLI, Python SDK, TypeScript SDK.
github.com/tinybirdco →
CallStack (React Native)
Best practices, GitHub integration, upgrading RN.
github.com/callstackincubator →
Typefully
Social media content for X, LinkedIn, Threads, Bluesky, Mastodon.
github.com/typefully →
Replicate
Discover and run AI models.
github.com/replicate →
Composio
Connect to 1,000+ external apps.
github.com/composiohq →
Courier
Multi-channel notifications.
github.com/trycourier →
VoltAgent
★ 16,400create-voltagent, voltagent-best-practices, core-reference, docs-bundle.
github.com/VoltAgent/awesome-agent-skills →
Part III
Mega Collections
Single repos that bundle dozens — sometimes hundreds — of skills. The fastest way to install a complete workflow.
obra/superpowers
★ 166,00020 skills
TDD, systematic-debugging, verification-before-completion, brainstorming, writing-plans, executing-plans, dispatching-parallel-agents, requesting-code-review, using-git-worktrees, subagent-driven-development, defense-in-depth.
github.com/obra/superpowers →
alirezarezvani/claude-skills
★ 12,000235 skills
Engineering (37), Marketing (44), Product (16), Regulatory (14), C-Level Advisory (34), Business (5), Finance (4).
github.com/alirezarezvani/claude-skills →
wshobson/agents
★ 33,900150 skills
Wide-coverage agent skills across engineering, ops, and product workflows.
github.com/wshobson/agents →
mattpocock/skills
★ 16,50017 skills
tdd, triage-issue, request-refactor-plan, setup-pre-commit, git-guardrails, to-prd, improve-codebase-architecture.
github.com/mattpocock/skills →
NeoLabHQ/context-engineering-kit
★ 83313 plugins
tdd, sdd, code-review, reflexion, sadd, ddd, kaizen, git, customize-agent, docs, tech-stack, mcp, fpf.
github.com/NeoLabHQ/context-engineering-kit →
jeffallan/claude-skills
★ 8,40066 skills
devops-engineer, sre-engineer, terraform-engineer, kubernetes-specialist, monitoring-expert, cloud-architect.
github.com/Jeffallan/claude-skills →
hamelsmu/evals-skills
★ 9957 skills
LLM evaluation skills for benchmarking.
github.com/hamelsmu/evals-skills →
forrestchang/karpathy-skills
★ 43,650Andrej Karpathy coding philosophy for AI-native development.
github.com/forrestchang/andrej-karpathy-skills →
Part IV
Core Development
Methodologies, code review, testing, debugging, git, architecture, accessibility and AI/ML engineering — the day-to-day craft.
learn-claude-code
★ 53,825shareAI-lab
Claude Code onboarding methodology.
github.com/shareAI-lab/learn-claude-code →
tdd
★ 16,500mattpocock
TypeScript-first TDD.
github.com/mattpocock/skills →
tdd-guide
★ 12,000alirezarezvani
TDD methodology with anti-patterns.
github.com/alirezarezvani/claude-skills →
tdd · sdd · kaizen
★ 833NeoLabHQ
TDD with anti-patterns, spec-driven dev, continuous improvement.
github.com/NeoLabHQ/context-engineering-kit →
requesting · receiving · subagent code-review
★ 160,000obra
Code-review and subagent-driven dev workflows.
github.com/obra/superpowers →
code-review-graph
★ 10,353tirth8205
Visual code review with dependency mapping.
github.com/tirth8205/code-review-graph →
code-review-skill
awesome-skills
Multi-language code review.
github.com/awesome-skills →
reflexion
NeoLabHQ
Self-reflection for code improvement.
github.com/NeoLabHQ/context-engineering-kit →
webapp-testing
★ 121,000Anthropic
Playwright E2E testing.
github.com/anthropics/skills →
playwright-pro
alirezarezvani
Test generation, flaky fix, migration.
github.com/alirezarezvani/claude-skills →
playwright-skill
testdino
70+ guides in 5 packs.
github.com/testdino →
cypress-agent-skill
KahlilR23
25+ Cypress patterns.
github.com/KahlilR23 →
evals-skills
★ 995hamelsmu
7 LLM evaluation skills.
github.com/hamelsmu/evals-skills →
outside-in-tdd
JoeGaebel
Outside-in TDD methodology.
github.com/JoeGaebel →
systematic-debugging · verification-before-completion
obra
4-phase root cause, evidence verification.
github.com/obra/superpowers →
using-git-worktrees · finishing-a-development-branch
obra
Parallel branches, merge guidance.
github.com/obra/superpowers →
pr-create-fetch
angakh
PR creation automation.
github.com/angakh →
git-guardrails · setup-pre-commit
mattpocock
Git safety and pre-commit setup.
github.com/mattpocock/skills →
brainstorming · writing-plans · executing-plans
obra
Socratic refinement, implementation strategies.
github.com/obra/superpowers →
graphify
★ 27,462safishamsi
Codebase visualization.
github.com/safishamsi →
monorepo-navigator
alirezarezvani
Turborepo / Nx / pnpm management.
github.com/alirezarezvani/claude-skills →
accessibility
★ 16,400addyosmani
WCAG compliance guidance.
github.com/addyosmani →
rag-architect
alirezarezvani
RAG pipeline builder.
github.com/alirezarezvani/claude-skills →
self-improving-agent
alirezarezvani
Auto-memory curation.
github.com/alirezarezvani/claude-skills →
llm-cost-optimizer
alirezarezvani
API cost optimization.
github.com/alirezarezvani/claude-skills →
Part V
Security & Compliance
Pentest, SAST/DAST, secrets, compliance frameworks, OWASP, drift detection — security-grade skills from professional firms and the community.
Trail of Bits Skills
★ 4,70029 plugins. static-analysis, semgrep, sharp-edges, differential-review.
github.com/trailofbits/skills →
Ghost Security
7 skills: SAST, SCA, DAST, secrets, reporting.
github.com/Ghost-Security →
Phoenix Security
CTI research, OpenGrep rules, NotebookLM.
github.com/Security-Phoenix-demo →
Anthropic-Cybersecurity-Skills
★ 4,800mukul975
754 skills, 38 domains, MITRE/NIST mapped.
github.com/mukul975 →
awesome-claude-skills-security
Eyadkelleh
7 plugins for pentesting.
github.com/Eyadkelleh →
OWASP Top 10 Agentic Skills
OWASP
AI agent security risks.
github.com/OWASP/www-project-agentic-skills-top-10 →
claude-code-owasp
★ 136agamm
OWASP Top 10:2025, ASVS 5.0, 20+ languages.
github.com/agamm →
VibeSec-Skill
★ 785BehiSecc
Bug bounty: IDOR, XSS, SSRF, SQLi.
github.com/BehiSecc →
clawsec
★ 909prompt-security
Drift detection, CVE monitoring.
github.com/prompt-security →
varlock-claude-skill
★ 16wrsmith108
Secure env var management.
github.com/wrsmith108 →
ffuf_claude_skill
★ 126jthack
Web fuzzing.
github.com/jthack →
sanitize
★ 2,900+agentward-ai
PII redaction, 15 categories.
github.com/agentward-ai →
security-bluebook-builder
SHADOWPR0
Security documentation.
github.com/SHADOWPR0 →
ironclaw-agent-guard
IronClaw
Prompt injection detection.
github.com/IronClaw →
Claude-Skills-Governance-Risk-and-Compliance
Sushegaad
ISO 27001, SOC 2, FedRAMP, GDPR, HIPAA, PCI DSS, DORA.
github.com/Sushegaad →
AgentWard
★ 2,900+agentward-ai
HIPAA, SOX, GDPR, PCI-DSS. 1,500+ tests.
github.com/agentward-ai →
claude-agentic-framework
★ 69dralgorhythm
67 skills with safety hooks.
github.com/dralgorhythm →
snyk-fix
snyk
Automated vulnerability remediation.
github.com/snyk →
Part VI
DevOps & Infrastructure
Terraform, Kubernetes, Docker, cloud (AWS, Azure, GCP, Cloudflare, DO), databases (Neon, Supabase, PlanetScale, ClickHouse), CI/CD and monitoring.
terrashark
★ 140LukasNiessen
Terraform — eliminating LLM hallucinations.
github.com/LukasNiessen →
terraform-engineer
jeffallan
Senior Terraform across AWS, Azure, GCP.
github.com/Jeffallan/claude-skills →
terraform-aws
a-pavithraa
AWS Terraform modules.
github.com/a-pavithraa →
terraform-opentofu
lgbarn
Multi-agent plan analysis, drift detection.
github.com/lgbarn →
kubernetes-skill
★ 11LukasNiessen
K8s — eliminating deprecated APIs.
github.com/LukasNiessen →
k8s-skills
★ 5foxj77
20 skills: Flux CD GitOps, Helm, cert-manager, Kyverno.
github.com/foxj77 →
AWS Agent Plugins
★ 595AWS deploy, serverless, databases.
github.com/awslabs/agent-plugins →
Azure Agent Skills
★ 495Azure Functions, AKS, Storage, SQL.
github.com/MicrosoftDocs/Agent-Skills →
Cloudflare Skills
★ 923Workers, D1, R2, KV, Durable Objects.
github.com/cloudflare/skills →
do-app-platform-skills
★ 19DigitalOcean App Platform.
github.com/digitalocean-labs/do-app-platform-skills →
neon-ai-rules
★ 52Serverless Postgres.
github.com/neondatabase-labs/ai-rules →
supabase/agent-skills
Postgres best practices.
github.com/supabase/agent-skills →
planetscale-claude-plugin
MySQL branching.
github.com/planetscale/claude-plugin →
ClickHouse
6 skills: chdb, architecture advisor, deploys.
github.com/clickhouse/clickhouse →
pulumi-agent-skills
★ 34Migration and authoring.
github.com/pulumi/agent-skills →
hello-ansible-skills
sigridjineth
4 Ansible skills.
github.com/sigridjineth →
monitoring-expert · sre-engineer · devops-engineer
jeffallan
Prometheus, Grafana, DataDog, SLI/SLO.
github.com/Jeffallan/claude-skills →
incident-runbook-templates · cloud-cost-optimization
wshobson
SEV1–SEV4, FinOps.
github.com/wshobson/agents →
Part VII
Product & Project Management
Discovery, strategy, PRD writing, OKRs and project templates — for PMs and PM-shaped engineers.
pm-skills
★ 10,300phuryn
100+ skills, 8 plugins. /discover, /strategy, /write-prd.
github.com/phuryn →
Product-Manager-Skills
★ 3,600deanpeters
47 PM skills + 6 workflows.
github.com/deanpeters →
product-manager · UX · PM · Atlassian (85 skills)
alirezarezvani
Full PM stack across product, UX, PM, Atlassian.
github.com/alirezarezvani/claude-skills →
Part VIII
Marketing & Growth
SEO and GEO, ASO, copywriting, viral hooks, CRO and founder-mode marketing skills.
seo-geo-claude-skills
★ 1,100aaron-he-zhu
20 skills, 14 MCP integrations.
github.com/aaron-he-zhu →
claude-seo
AgriciDaniel
19 sub-skills, 12 subagents.
github.com/AgriciDaniel →
aso-skills
★ 938Eronred
25 ASO skills across 6 categories.
github.com/Eronred →
marketingskills
coreyhaines31
36 skills across 7 categories.
github.com/coreyhaines31 →
founder-skills
★ 125ognjengt
20 skills: copywriting, CRO, viral hooks.
github.com/ognjengt →
Marketing tier (44 skills)
alirezarezvani
Full marketing tier inside the mega collection.
github.com/alirezarezvani/claude-skills →
Part IX
Business & Finance · Legal
CFO, accounting (134 countries), personal finance and legal skills (employment, contracts, NDA, GDPR, redlining).
charlie-cfo-skill
★ 195EveryInc
Bootstrapped CFO.
github.com/EveryInc →
openaccountants
★ 26371 tax skills, 134 countries.
github.com/openaccountants →
finance-assistant-skill
googlarz
Personal finance, 11 modes.
github.com/googlarz →
canadian-finance-planner
cjpatten
Canadian RRSP / TFSA / FHSA.
github.com/cjpatten →
awesome-legal-skills
★ 248lawvable
Employment, corporate, methodology.
github.com/lawvable →
ai-legal-claude
zubair-trabzada
14 skills, 5 agents. Contracts, NDA, GDPR.
github.com/zubair-trabzada →
claude-legal-skill
evolsb
CUAD risk detection, redlines.
github.com/evolsb →
C-Level (34) · Regulatory (14) · Business (5) · Finance (4)
alirezarezvani
Full executive and regulatory tier inside the mega collection.
github.com/alirezarezvani/claude-skills →
Part X
Design & Creative
Video (Remotion, ElevenLabs, ffmpeg), 3D (Three.js, Splats), game dev (Unity, Godot) and design systems.
video-use
browser-use
AI video editing.
github.com/browser-use →
ndemo
splitbrain
Narrated demo videos with TTS.
github.com/splitbrain →
claude-code-video-toolkit
digitalsamba
Remotion, ElevenLabs, ffmpeg.
github.com/digitalsamba →
remotion
★ 500Programmatic video with React.
github.com/remotion-dev/skills →
render
mfranzon
3D models from text, Three.js viewer.
github.com/mfranzon →
procedural-clouds-threejs
CK42BB
Volumetric raymarching clouds in Three.js.
github.com/CK42BB →
sparkjs-skill
shi3z
3D Gaussian Splat rendering.
github.com/shi3z →
fal-3d
fal.ai
Generate 3D models from text/images.
github.com/fal-ai-community →
Unity-Skills
Besty0728
543 skills for Unity.
github.com/Besty0728 →
GodotPrompter
jame581
28+ Godot 4.x skills.
github.com/jame581 →
godogen
htdt
Complete Godot projects from descriptions. 850+ API docs.
github.com/htdt →
awesome-design-md
VoltAgent
55+ brand design systems (Apple, Stripe, Vercel, Spotify, Figma).
github.com/VoltAgent/awesome-agent-skills →
resume-skills
Paramchoudhary
Resume generation and optimisation.
github.com/Paramchoudhary →
creative-director-skill
smixs
Creative direction and brand development.
github.com/smixs →
Part XI
Data & Research
Scientific research (genomics, drug binding, MD), academic writing, data engineering and document intelligence (OCR, parsing, 97+ formats).
scientific-agent-skills
★ 18,900K-Dense-AI
133 skills. Cancer genomics, drug-target binding, molecular dynamics, 78+ databases.
github.com/K-Dense-AI →
AI-research-SKILLs
Orchestra-Research
87 skills, 115K lines. Literature, experiments, paper writing.
github.com/Orchestra-Research →
paper-writing-skill
SNL-UCSB
Five-stage pipeline: Brainstorm → Draft 0 → Evaluate → Write → Compress.
github.com/SNL-UCSB →
econ-writing-skill
hanlulong
Economics papers from 50+ leading economists’ guides.
github.com/hanlulong →
Awesome-Scientific-Skills
InternScience
Open collection: PubMed, RDKit, scientific writing.
github.com/InternScience →
Research-Paper-Writing-Skills
Master-cai
Abstract → Introduction → Method → Experiments → Conclusion.
github.com/Master-cai →
academic-research-skills
Imbad0202
Reading, writing, reviewing papers. Cognitive framework.
github.com/Imbad0202 →
academic-paper-skills
lishix520
Strategist + Composer two-skill system.
github.com/lishix520 →
data-engineer · database-designer · migration-architect
alirezarezvani
Pipelines, ETL, schema, ERD, RLS, migration planning.
github.com/alirezarezvani/claude-skills →
duckdb-skills
DuckDB
DuckDB analytics patterns.
github.com/duckdb →
nutrient-agent-skill
PSPDFKit-labs
40+ agents. OCR (20+ languages), 97+ formats.
github.com/PSPDFKit-labs →
kreuzberg
kreuzberg-dev
Rust-core document intelligence. 97+ formats, 248 languages, OCR.
github.com/kreuzberg-dev →
claude-office-skills
Smart OCR, Doc Parser, Layout Analyzer, Table Extractor.
github.com/claude-office-skills →
Part XII
Automation & Productivity
Workflow automation (n8n, Firecrawl, Composio), context management, email/social/WhatsApp content automation.
cc-switch
★ 45,418farion1231
Context management for multi-project workflows.
github.com/farion1231 →
n8n-skills
czlonkowski
n8n workflow automation.
github.com/czlonkowski →
firecrawl-claude-plugin
★ 3,000+Web scraping, search, extraction, browser automation.
github.com/firecrawl/firecrawl-claude-plugin →
qdrant-skills
Qdrant
Vector database patterns.
github.com/qdrant →
gsap-skills
GreenSock
Animation library patterns.
github.com/greensock →
dispatching-parallel-agents
obra
Concurrent subagent workflows with context isolation.
github.com/obra/superpowers →
mcp-server-builder
alirezarezvani
MCP servers from OpenAPI specs.
github.com/alirezarezvani/claude-skills →
browser-automation
alirezarezvani
Web browser automation patterns.
github.com/alirezarezvani/claude-skills →
wonda
degausai
AI productivity assistant.
github.com/degausai →
beautiful-prose
SHADOWPR0
Beautiful prose generation.
github.com/SHADOWPR0 →
humanizer
blader
Content humanisation.
github.com/blader →
tweetclaw
Xquik-dev
Twitter/X content creation.
github.com/Xquik-dev →
x-article-publisher
wshuyi
Article publishing for X.
github.com/wshuyi →
email-marketing-bible
CosmoBlk
Email marketing comprehensive guide.
github.com/CosmoBlk →
ai-marketing-skills
BrianRWagner
AI-powered marketing automation.
github.com/BrianRWagner →
advertising-skills
realkimbarrett
Avatars, offers, headlines.
github.com/realkimbarrett →
whatsapp-integrate · whatsapp-automate
gokapso
WhatsApp integration and automation.
github.com/gokapso →
Part XIII
Specialized Domains
Education, home automation, travel/genealogy, fitness, niche programming languages (SwiftUI, Rust, Rails), meta directories.
claude-education-skills
GarethManning
100+ skills across 14 educational domains.
github.com/GarethManning →
deeptutor-claude-skill
ndpvt-web
Graph-enhanced RAG tutoring with knowledge graphs.
github.com/ndpvt-web →
moodle-mcq
danielcregg
Moodle quiz generation in GIFT/XML/Aiken formats.
github.com/danielcregg →
codebase-to-course
zarazhangrui
Turn codebases into interactive HTML courses.
github.com/zarazhangrui →
tutor-skills
RoundTable02
StudyVault generation with interactive quizzes.
github.com/RoundTable02 →
claude-homelab
jmagar
18 skills: Plex, Radarr, Sonarr, Tailscale, ZFS.
github.com/jmagar →
homeassistant-claude-kit
dcb
Home Assistant setup with React dashboard.
github.com/dcb →
travel-hacking-toolkit
borski
Points, miles, award flights optimisation.
github.com/borski →
genealogy-research
sliday
GPS methodology, 15 countries, historical documents.
github.com/sliday →
claude-family-history-research-skill
emaynard
GPS and Evidence Explained citation methodology.
github.com/emaynard →
agilefitness
coachmanjeet
Fitness: workout design, nutrition, meal planning.
github.com/coachmanjeet →
swiftui-agent-skill
twostraws (Paul Hudson)
SwiftUI, SwiftData, Swift Concurrency, Swift Testing.
github.com/twostraws →
swift-development
hmohamed01
Swift iOS/macOS with live Apple docs fetching.
github.com/hmohamed01 →
swift-unit-test-instructions
jeremieb
Swift / SwiftUI / UIKit testing framework.
github.com/jeremieb →
rust-skills
actionbook
Rust with Meta-Problem-Driven Knowledge Indexing.
github.com/actionbook →
rust-dev-skill
onsails
Strict Rust FAIL FAST. Edition 2024.
github.com/onsails →
claude-code_rails-upgrade-skill
ombulabs
Rails upgrades from 2.3 to 8.1.
github.com/ombulabs →
claude-code_dual-boot-skill
ombulabs
Dual-boot dependency environments.
github.com/ombulabs →
layered-rails-skills
palkan
Layered Rails architecture commands.
github.com/palkan →
threejs-skills
cloudai-x (pinkforest)
10 skills: fundamentals, geometry, materials, shaders.
github.com/cloudai-x →
awesome-agent-skills
★ 16,400VoltAgent
1,000+ curated skills from official teams + community.
github.com/VoltAgent/awesome-agent-skills →
awesome-claude-skills
travisvn
Curated list of Claude skills and resources.
github.com/travisvn →
claude-code-skill-factory
alirezarezvani
Toolkit for building production-ready skills. 5 factories.
github.com/alirezarezvani/claude-skills →
Appendices
Trust scoring & security.
Appendix A
Trust Score Methodology
FINAL = BASE_TIER + Σ(BONUSES) + Σ(PENALTIES), capped at 10, floored at 0.
Base tiers
- · Tier 1 (Official / Enterprise or 5,000+ stars) — 7.0
- · Tier 2 (Verified Community, 1k–5k stars) — 5.0
- · Tier 3 (Emerging, < 1k stars) — 3.0
- · Tier 4 (Experimental) — 1.0
Bonuses (up to +5)
Recent commits < 1mo (+2) / < 3mo (+1) · stdlib-only (+1) · multi-tool compatibility (+1) · comprehensive README (+1) · test coverage (+1).
Penalties
No README (−1) · known security flags (−2) · stale > 6mo (−1) / > 12mo (−2) · single contributor (−0.5) · fork without attribution (−1) · eval/exec (−1.5) · hardcoded secrets (−2) · unvalidated network calls (−1) · prompt-injection patterns (−2).
Score interpretation
9–10 exceptional · 7–8 high trust · 5–6 moderate · 3–4 low · 0–2 untrusted · < 0 reject.
Appendix B
Security Considerations
Documented CVEs (all patched as of April 2026):
Best practices
- Prefer official skills from verified publishers.
- Read SKILL.md before installing.
- Favour stdlib-only skills.
- Use sandboxed environments for experimental skills.
- Subscribe to security advisories.
- Run security-focused skills regularly.