DaoYiSec/SecSkills
A curated collection of AI-powered cybersecurity Skills and MCP servers for penetration testing and vulnerability research.

SecSkills aggregates and organizes Skills and MCP servers related to network security tasks such as penetration testing, vulnerability scanning, code auditing, CTF, reverse engineering, and security research. The listed tools are predominantly AI-driven agents and MCP servers that enable autonomous or LLM-assisted security testing, including projects like Strix, Shannon, PentestGPT, and HexStrike-AI. It serves as a directory for security professionals to discover AI-augmented offensive security tooling.
Frequently asked
- What is DaoYiSec/SecSkills?
- A curated collection of AI-powered cybersecurity Skills and MCP servers for penetration testing and vulnerability research.
- Is SecSkills open source?
- Yes — DaoYiSec/SecSkills is open source, released under the Apache-2.0 license.
- How popular is SecSkills?
- DaoYiSec/SecSkills has 1k stars on GitHub.
- Where can I find SecSkills?
- DaoYiSec/SecSkills is on GitHub at https://github.com/DaoYiSec/SecSkills.