State-of-the-Art (2026) AI/LLM engineering skills/agents for building and auditing software — 40+ domain & language skills, BUILD/AUDIT modes, audit checklists.
Claude Red
Claude Red is an open-source security skill for Claude Code and compatible agents, published by SnailSploit. Its author describes it as: “claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surfa…”. The project has 2.8k stars on GitHub and is available under the MIT License license. Add it to your setup with `git clone https://github.com/SnailSploit/Claude-Red ~/.claude/skills/Claude-Red`.
Installation
Add Claude Red to your agent with:
git clone https://github.com/SnailSploit/Claude-Red ~/.claude/skills/Claude-Red Always review a skill's source before installing it. This command comes from the skill's public repository; the linked repo is the source of truth for exact setup steps.
When to use it
Reach for Claude Red when you want security help from your agent without writing the same instructions every session. Load the skill and the agent picks it up automatically for relevant tasks.
Strengths
- Clear MIT License license — safe to read and adapt
- Established project with 2,797 GitHub stars
- Actively maintained (recent commits)
Topics
Related skills
More Security →A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24 core vulnerability classes, plus enterprise identity + infrastructure attack matrices.
Agent skills for solving CTF challenges - web exploitation, binary pwn, crypto, reverse engineering, forensics, OSINT, and more
A documentation library for governance, risk, compliance, cybersecurity, privacy, resilience, AI assurance, and operational control practices + a Claude Code rules-and-skills pack distilled from maintaining it.
Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows