anshajk

10 mods across 2 repositories, 10 stars between them.

security-reviewer

01

anshajk/claude-security

Agent Claude Code

Independent OWASP security reviewer. Invoke (proactively or on request) to run a security-only pass over a diff, endpoint, or file before it merges. Reports vulnerabilities with file:line, exploit, and fix; never modifies code.

2 1mo ago A 52 tokens

PreToolUse

02

anshajk/claude-security

Hook Claude Code

Runs before the agent uses a tool for Write and Edit tool calls, executing secret-scan.sh via bash. From anshajk/claude-security.

2 1mo ago A tokens not measured

hat-blackbox

04

anshajk/claude-security

Skill Claude CodeCodex

Black-box hat — test ONLY against the published contract; you may NOT read the implementation.

2 1mo ago A 22 tokens

hat-design

05

anshajk/claude-security

Skill Claude CodeCodex

Design/DRY hat — review this diff ONLY for architecture, duplication, and maintainability.

2 1mo ago A 22 tokens

hat-security

06

anshajk/claude-security

Skill Claude CodeCodex

Security hat — review this diff ONLY through a security lens. One vantage, deep, no other concerns.

2 1mo ago A 24 tokens

owasp-review

07

anshajk/claude-security

Skill Claude CodeCodex

Reviews application code for OWASP Top 10 style vulnerabilities (injection, broken access control / IDOR, SSRF, XSS, secrets, insecure deserialization, security misconfiguration). Use when reviewing a diff, an endpoint, or a file for security issues, or whenever the user asks for a security pass, OWASP check, or "is…

2 1mo ago B 81 tokens

self-verify

08

anshajk/claude-security

Skill Claude CodeCodex

Self-verifying loop — build, test, and lint before presenting any diff, then self-critique.

2 1mo ago A 26 tokens

triage

09

anshajk/claude-security

Skill Claude CodeCodex

Triage a single security finding end to end — confirm real vs. false positive, then remediate or dismiss with a written record.

2 1mo ago A 30 tokens

docs

10

anshajk/claude-security

MCP server Claude CodeCodexCursor

Gives the agent read and write access to a set of allowed directories on the local filesystem. Runs locally from the @modelcontextprotocol/server-filesystem npm package.

2 1mo ago A tokens not measured