Seismograph

What’s gaining stars on GitHub right now

cloudflare/security-audit-skill

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

SecurityJavaScript
9.7 Breakout Magnitude out of 10. Star growth looks organic. Data as of September 18, 2026.

Seismograph spotted this repository 42 hours before it took off on Hacker News.

Open on Seismograph Open on GitHub

About the project

A coding-agent skill that turns the agent into a security auditor, running a multi-phase code audit with independently verified, machine-readable findings.

Useful for

README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.

Why it’s trending

Stars per day

02,0004,000June 21, 2026September 18, 2026

Bars are daily stars, the line is the usual pace. Red marks spike days.

Numbers

Total stars
12,885
Stars in a day
2,334
Forks
691
Issues and pull requests
38
Watchers
49
Language
JavaScript
License
MIT
Created
June 18, 2026
Last push
September 14, 2026

Star trust

Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.

These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.

Hacker News discussions

Spotted in

Share

README badge

Paste it into your README — the badge shows the current magnitude and links to this page.

Seismograph: 9.7
[![Seismograph](https://gitnova.dev/badge/cloudflare/security-audit-skill.svg?lang=en)](https://gitnova.dev/en/r/cloudflare/security-audit-skill)

Similar projects

  1. 6.6
    yynxxxxx/gpt_sub_analysis

    A guide to analyzing the ChatGPT iOS subscription flow: it describes intercepting the buyProduct request via Reqable and SSL Kill Switch 3 and rewriting the offerName and salableAdamId fields to obtain the Pro 20x…

    Early signalSecurity+157 stars in a day

  2. 5.9
    ctdal/cve-2026-41940-PoC

    PoC exploit for CVE-2026-41940, a critical authentication bypass in cPanel & WHM (CVSS 10.0) that grants unauthenticated root-level WHM access by injecting CRLF sequences into server-side session files.

    Early signalSecurityPython+64 stars in a day

  3. 5.3
    BennyThink/NFCX

    Cross-platform GUI desktop app for NFC card work: reader discovery, MIFARE Classic reads, dumps, key management, and key recovery. For cards you own or are authorized to test.

    Early signalSecurityGo+38 stars in a day

  4. 5.0
    NationalSecurityAgency/ghidra

    A software reverse engineering framework from the NSA: disassembly, decompilation, graphing and scripting for analyzing compiled code on Windows, macOS and Linux.

    BreakoutSecurityJava+261 stars in a day

  5. 4.6
    shinthink/blitzstrike

    A TypeScript/Bun MCP server packaging a pentest methodology into three tiers: attack-surface reconnaissance, source-to-sink tracing, and live validation of findings before reporting.

    Early signalSecurityTypeScript+42 stars in a day

  6. 4.6
    bl4ckarch/go-responder

    A Go port of Responder: poisons LLMNR, NBT-NS and mDNS, runs rogue servers (SMB, HTTP, LDAP, etc.) and captures NTLM hashes and cleartext credentials.

    Early signalSecurityGo+35 stars in a day