datasets
Training and evaluation data, with the modality, task and licence stated up front. Listed live from the Hugging Face Hub.
security-auditsA collection of agent traces generated with Swival (not Claude Code, despite what the HF interface currently shows), an agent designed for open-source models.
These traces focus on security audits of opensource software.
Sharing traces with Swival
Swival can export full conversation traces with --trace-dir, which writes one <session_id>.jsonl file per session:
swival "Fix the login bug" --trace-dir traces/
Those JSONL files use Swival's Claude Code compatible trace export, and… See the full description on the dataset page: https://huggingface.co/datasets/jedisct1/security-audits.b3-agent-security-benchmark-weak[paper] [blogpost] [game]
b3 AI Security Benchmark: Breaking Agent Backbones
Highly contextalized prompt injections crowd-sourced during the Gandalf Agent Breaker Challenge.
This is a low-quality version of the data behind Breaking Agent Backbones: Evaluating the Security
of Backbone LLMs in AI Agents.
The high quality dataset was used to evaluate the security of more than 30 LLMs.
Dataset Summary
Purpose: This dataset contains crowdsourced adversarial attacks… See the full description on the dataset page: https://huggingface.co/datasets/Lakera/b3-agent-security-benchmark-weak.cvefixes-security-ir-graphrag
CVEfixes Security IR GraphRAG
This is a content-addressed, remotely routable Security IR release of the exact pinned CVEfixes snapshot. It packages the byte-identical original Parquet data together with a searchable corpus, BM25 postings, CUDA-generated vectors, typed graph nodes and edges, bounded adjacency indexes, and a source-CID-to-original-row lookup.
All entries are inert, non-authoritative evidence. Candidate and formal-logic rows cannot grant execution authority; exact… See the full description on the dataset page: https://huggingface.co/datasets/Publicus/cvefixes-security-ir-graphrag.Omni-Frontier-Distillation-SFT-Cyber-security-Coding-dataset-collection-v2
🧬 Omni-Frontier Collection
Cybersecurity · Coding · Math · Science · RSI Reasoning — one unified SFT package
A unified, deduplicated, fully-browsable distillation & SFT corpus — every row real, every row visible.
📖 Jump to
What's inside · 🔁 Aggregation audit · 🛡 Cybersecurity · 💻 Coding · 🏭 Distillation deep-dive · 🔁 RSI · 🧮 Math/Science/More · 🎓 Training guide · 🔎 Browsing · 🧹 Quality · 🗺 Roadmap · 📄 License… See the full description on the dataset page: https://huggingface.co/datasets/Manusagents/Omni-Frontier-Distillation-SFT-Cyber-security-Coding-dataset-collection-v2.ai-agent-security-incidents
AI Agent Security Incident Database v0.1
A structured, machine-readable database of 1392 confirmed AI agent security incidents, collected and classified automatically.
What is this?
Every time an AI agent causes unintended harm — escaping a sandbox, exploiting an API, taking unauthorized actions, exfiltrating data — this database captures it.
This is not a list of theoretical risks. Every entry describes something that actually happened, with a verifiable source… See the full description on the dataset page: https://huggingface.co/datasets/gemmozero/ai-agent-security-incidents.clawhub-security-signals
ClawHub Security Signals
🦀 ClawHub | 📝 OpenClaw Blog | 🤗 Hugging Face Blog | 📄 Paper | 📄 Pre-Print
ClawHub Security Signals is a sanitized, MIT-licensed security-signals dataset for public OpenClaw agent skills. It captures how an agent-skill registry evaluates trust, provenance, bundled code, and scanner evidence at scale.
This dataset was presented in the paper ClawHub Security Signals: When VirusTotal, Static Analysis, and SkillSpector Disagree.
Paper snapshot: this… See the full description on the dataset page: https://huggingface.co/datasets/OpenClaw/clawhub-security-signals.cyber-security-100m
WitFoo Precinct6 Cybersecurity Dataset (large)
Overview
A large-scale, labeled cybersecurity dataset derived from production Security Operations Center (SOC) data processed by WitFoo Precinct version 6.x. This dataset contains 114,234,041 sanitized security events (signal logs) across 5 organizations and 12,361 incident provenance graphs (47,632 nodes, 32,086,552 edges).
Available in two sizes:
witfoo/precinct6-cybersecurity — 2.1M signals (smaller, faster to… See the full description on the dataset page: https://huggingface.co/datasets/Manusagents/cyber-security-100m.WELLS_FARGO_COMMERCIAL_MORTGAGE_SECURITIES_INC_850779
WELLS FARGO COMMERCIAL MORTGAGE SECURITIES INC
SEC ABS-EE asset-level filings for CIK 850779 (WELLS FARGO COMMERCIAL MORTGAGE SECURITIES INC).
Filings: 55
Parquet files: 110
Total size: 6.6 MB
Reporting period start: 2016-12-12
Reporting period end: 2023-12-11
Parquet files are loan-level / asset-level data extracted from XML exhibits, organised as {accession_nodash}/{exhibit_name}.parquet. Reporting-period dates are derived from the asset-level XML (reportingPeriodEndingDate).… See the full description on the dataset page: https://huggingface.co/datasets/DenyTranDFW/WELLS_FARGO_COMMERCIAL_MORTGAGE_SECURITIES_INC_850779.JPMCC_Commercial_Mortgage_Securities_Trust_2017_JP6_1701638
cik
form
accessionNumber
fileNumber
filmNumber
reportDate
url
1701638
ABS-EE
0001539497-17-000781
333-206361-10
17856961
2017-06-16
https://sec.gov/Archives/edgar/data/1701638/000153949717000781
1701638
ABS-EE
0001056404-17-003197
333-206361-10
17985221
2017-07-17
https://sec.gov/Archives/edgar/data/1701638/000105640417003197
1701638
ABS-EE
0001056404-17-003799
333-206361-10
171057986
2017-08-17
https://sec.gov/Archives/edgar/data/1701638/000105640417003799
1701638
ABS-EE… See the full description on the dataset page: https://huggingface.co/datasets/DenyTranDFW/JPMCC_Commercial_Mortgage_Securities_Trust_2017_JP6_1701638.clawhub-security-signals-live
ClawHub Security Signals Live
This dataset is the refreshed ClawHub security-signals corpus for scanner testing, prompt regression checks, and operational research against recent public ClawHub skills.
It is a moving dataset, not the fixed paper benchmark. main is expected to change when the ClawHub security dataset snapshot workflow publishes a new sanitized export. Pin a Hugging Face revision or commit when you need reproducibility.
For the frozen research-paper snapshot, use… See the full description on the dataset page: https://huggingface.co/datasets/OpenClaw/clawhub-security-signals-live.security-master
US Security Master
Which company a ticker belonged to, on a date. Which filer a CUSIP points at.
What a company used to be called.
23 529 filers · 143 932 identifier spans · 10 056 033 dated observations ·
74 392 CUSIPs · 1960 to 2026
This is the glue for the rest of the family. Every other ZipLime dataset keys
on the SEC's CIK, which never changes — and every price series, broker feed and
research note keys on a ticker, which changes all the time. Joining the two
with today's… See the full description on the dataset page: https://huggingface.co/datasets/ZipLime/security-master.llm-security-leaderboard-contentscairo-security-audits
Cairo Security Audits
A source-traceable corpus of public Cairo and Starknet security-audit metadata and normalized finding annotations.
Version 0.3.0 packages every entry in the audit inventory frozen at keep-starknet-strange/starknet-skills@17a76e8. It covers 32 accessible reports from 10 auditing firms and 286 normalized finding annotations. Eleven records are checked against rendered reports and two link to exact vulnerable/fixed commits. The release does not redistribute… See the full description on the dataset page: https://huggingface.co/datasets/starknet-ai/cairo-security-audits.HARMLESS_Synthetic_Injected_PDFs_EDA
Injected PDFs - EDA and Evaluation Corpus
This repository holds the exploratory data analysis for a project on detecting harmless-but-real
attack payloads injected into PDF files, together with the dataset that analysis produced.
The project has two halves, both in the notebook Final_project_V7_EDA.ipynb:
Question
Input
Part 1
Is our synthetic corpus a stand-in for real malware, or is it something else?
The published CIC feature table (11,126 x 34)
Part 2
Is our… See the full description on the dataset page: https://huggingface.co/datasets/Cyber-security-final-project/HARMLESS_Synthetic_Injected_PDFs_EDA.IndustryCorpus2_other_information_services_information_security
IndustryCorpus2: Information Services
This repository contains the IndustryCorpus2: Information Services domain subset of BAAI/IndustryCorpus2.
Refer to the parent dataset card for data construction, intended use, limitations,
and licensing details.
Citation
If you use this dataset in your work, please cite IndustryCorpus2:
@misc{shi2024industrycorpus2,
title = {IndustryCorpus2},
author = {Xiaofeng Shi and Lulu Zhao and Hua Zhou and Donglin Hao},
year… See the full description on the dataset page: https://huggingface.co/datasets/BAAI/IndustryCorpus2_other_information_services_information_security.cyber-security-100m
WitFoo Precinct6 Cybersecurity Dataset (large)
Overview
A large-scale, labeled cybersecurity dataset derived from production Security Operations Center (SOC) data processed by WitFoo Precinct version 6.x. This dataset contains 114,234,041 sanitized security events (signal logs) across 5 organizations and 12,361 incident provenance graphs (47,632 nodes, 32,086,552 edges).
Available in two sizes:
witfoo/precinct6-cybersecurity — 2.1M signals (smaller, faster to… See the full description on the dataset page: https://huggingface.co/datasets/Nobody05/cyber-security-100m.Cyber-Security-Breachesagent-skills-security-grades
Agent Skills Security Grades
Security grades and quality scores for 130,173 open-source AI agent skills and
MCP servers collected from GitHub, from Agent Skills Hub.
Each row is one skill/server with a rule-based security grade
(SAFE / CAUTION / UNSAFE / REJECT / UNAUDITED), red-flag identifiers, and a
0–100 quality score.
Why this exists
AI coding agents install third-party skills that run with the agent's full
permissions and credentials, but marketplaces rank… See the full description on the dataset page: https://huggingface.co/datasets/jasonzhuyansen/agent-skills-security-grades.Python-Security-Code-Datasethol-plugin-security
HOL Plugin Security
Snapshot of Hashgraph Online plugin-catalog scores, modeled HOL Guard runtime fixtures, and curated public advisories. Dataset id: HashgraphOnline/hol-plugin-security.
The default config is plugins (205 scored registry plugins). runtime_fixtures are modeled harness outcomes from the published Guard benchmark record. advisories are the 22 public HOL Guard advisory pages. advisories.threat_class is set from the official hub listing badges on… See the full description on the dataset page: https://huggingface.co/datasets/HashgraphOnline/hol-plugin-security.World_Omni_Automobile_Lease_Securitization_Trust_2022_A_1907872
World Omni Automobile Lease Securitization Trust 2022-A
SEC ABS-EE asset-level filings for CIK 1907872 (World Omni Automobile Lease Securitization Trust 2022-A).
Filings: 25
Parquet files: 25
Total size: 62.3 MB
Parquet files are loan-level / asset-level data extracted from XML exhibits, organised as {accession_nodash}/{exhibit_name}.parquet. Reporting-period dates are derived from the asset-level XML (reportingPeriodEndingDate).
Filing index
cik
form… See the full description on the dataset page: https://huggingface.co/datasets/DenyTranDFW/World_Omni_Automobile_Lease_Securitization_Trust_2022_A_1907872.africa-synth-agriculture-and-food-security-dataset-all
African Agriculture & Food Security Synthetic Dataset | Africa (Electric Sheep Africa metadata inventory)
Size category: 1M<n<10M - Formats: parquet - Sector: agriculture_food - Engineered by Electric Sheep Africa
TL;DR
This dataset is part of the Electric Sheep Africa catalog on Hugging Face. It is indexed for African data discovery with standardized metadata, loading guidance, provenance notes, and analyst-oriented context.
What This Dataset… See the full description on the dataset page: https://huggingface.co/datasets/electricsheepafrica/africa-synth-agriculture-and-food-security-dataset-all.Evaluation_of_OpenSource_Models_for_PDF_Injection_Recognition
Injected PDFs - Model Evaluation
This repository holds the model evaluation stage of a project on detecting harmless-but-real
attack payloads injected into PDF files, together with the artefacts it produced for the
application.
Nothing is trained here. Seven off-the-shelf models are measured against the same 1,100 PDFs,
and the two winners are exported for the app to load.
Question
Candidates
Winner
Part A
Which files look like this one?
3 embedding models x 2 inputs… See the full description on the dataset page: https://huggingface.co/datasets/Cyber-security-final-project/Evaluation_of_OpenSource_Models_for_PDF_Injection_Recognition.security-vuln-patches
Security Vulnerability Fix Patches
A curated dataset of 355 validated real-world vulnerability fix patches mined from public GitHub repositories.
Each record contains the unified diff of a pull request or commit that fixes a specific CWE (Common Weakness Enumeration) vulnerability, along with metadata about the repository, language, and fix type.
Dataset Summary
Source: Public GitHub PRs and commits (2024-2025) discovered via BigQuery analysis of GH Archive data… See the full description on the dataset page: https://huggingface.co/datasets/rgaucher/security-vuln-patches.network_securityWorld_Omni_Automobile_Lease_Securitization_Trust_2021_A_1863708
World Omni Automobile Lease Securitization Trust 2021-A
SEC ABS-EE asset-level filings for CIK 1863708 (World Omni Automobile Lease Securitization Trust 2021-A).
Filings: 31
Parquet files: 31
Total size: 77.6 MB
Parquet files are loan-level / asset-level data extracted from XML exhibits, organised as {accession_nodash}/{exhibit_name}.parquet. Reporting-period dates are derived from the asset-level XML (reportingPeriodEndingDate).
Filing index
cik
form… See the full description on the dataset page: https://huggingface.co/datasets/DenyTranDFW/World_Omni_Automobile_Lease_Securitization_Trust_2021_A_1863708.Bridgecrest_Lending_Auto_Securitization_Trust_2024_2_2018148
Bridgecrest Lending Auto Securitization Trust 2024-2
SEC ABS-EE asset-level filings for CIK 2018148 (Bridgecrest Lending Auto Securitization Trust 2024-2).
Filings: 29
Parquet files: 1
Total size: 1.9 MB
Reporting period start: 2024-03-31
Reporting period end: 2026-03-31
Parquet files are loan-level / asset-level data extracted from XML exhibits, organised as {accession_nodash}/{exhibit_name}.parquet. Reporting-period dates are derived from the asset-level XML… See the full description on the dataset page: https://huggingface.co/datasets/DenyTranDFW/Bridgecrest_Lending_Auto_Securitization_Trust_2024_2_2018148.mcp-security-scan-2026
MCP Security Scan Dataset 2026
Security scan results for 4,867 MCP (Model Context Protocol) server repositories, scanned by MCPShield.
Dataset Description
This is the largest public labeled MCP security dataset. Each entry contains the security grade, score, and detailed findings for a GitHub repository implementing an MCP server.
Scanner
MCPShield v5.0 — Two-pass detection architecture:
Pass 1: 49 regex rules covering OWASP MCP Top 10 (94% detection on… See the full description on the dataset page: https://huggingface.co/datasets/MCPShield/mcp-security-scan-2026.africa-madagascar-african-development-bank-food-security-december-2011-f783794e
African Development Bank, Food Security, December 2011 | Africa (Madagascar official open data)
43,983 rows - 1 Africa country - 2011 - Repackaged by Electric Sheep Africa
TL;DR
This dataset packages one official CSV resource from Madagascar as
ML-ready Parquet. The source file is the provenance boundary; all usable
indicators or tabular columns from the resource stay together in this repo.
About the source
Source: African Development Bank… See the full description on the dataset page: https://huggingface.co/datasets/electricsheepafrica/africa-madagascar-african-development-bank-food-security-december-2011-f783794e.JPMDB_Commercial_Mortgage_Securities_Trust_2019_COR6_1792158
cik
form
accessionNumber
fileNumber
filmNumber
reportDate
url
1792158
ABS-EE
0001539497-19-001941
333-226123-06
191200923
2019-11-09
https://sec.gov/Archives/edgar/data/1792158/000153949719001941
1792158
ABS-EE
0001056404-19-011896
333-226123-06
191309420
2019-12-13
https://sec.gov/Archives/edgar/data/1792158/000105640419011896
1792158
ABS-EE
0001056404-20-000444
333-226123-06
20554049
2020-01-15
https://sec.gov/Archives/edgar/data/1792158/000105640420000444
1792158
ABS-EE… See the full description on the dataset page: https://huggingface.co/datasets/DenyTranDFW/JPMDB_Commercial_Mortgage_Securities_Trust_2019_COR6_1792158.
