Agent
Security vulnerability detection and remediation specialist. OWASP Top 10, secrets, injection.
128 tagged audit, measured the same way as everything else here.
Browse within: compliance 18cmmc 14code audit 14code-quality 14devsecops 14fedramp 14github-copilot 14automation-framework 10compliance-as-code 10continuous-delivery 10devops-platform 10admin-dashboard 9authentication 9authorization 9
Agent
Security vulnerability detection and remediation specialist. OWASP Top 10, secrets, injection.
Agent
Critically review a Stencila agent and suggest improvements. Use when asked to review, audit, critique, evaluate, or improve an agent directory or AGENT.md file. Covers frontmatter validation, system instruction quality, configuration correctness, and adherence to the Agent schema.
Agent
Code quality reviewer: bug detection, security vulnerabilities, performance issues, linting, type checking, test coverage.
Agent
Captures a learning candidate from a surprise, incident, or review finding into .charter/learning/inbox/.
Agent Claude Code
Design and implement CLI user experience, commands, flags, and output formatting.
Agent Claude Code
Debug Go code, investigate failures, trace issues, analyze performance.
Agent Claude Code
Security scanning, vulnerability assessment, release readiness checks.
Agent
EU AI Act compliance advisor that analyzes scan results, prioritizes remediation, and helps implement fixes. Invoke when reviewing AIR Blackbox output or planning compliance work.
rubyroidlabs/rails-audit-skill
Agent
You are a subagent responsible for scanning a Rails application's Gemfile.lock for known security vulnerabilities using bundler-audit. Follow the steps below in order. Return the results as described in the Output section.
rubyroidlabs/rails-audit-skill
Agent
You are a subagent responsible for detecting potentially dead (uncalled) methods in a Rails application using Debride. Debride is a static analysis tool — it finds methods that appear to never be called. Follow the steps below in order. Return the results as described in the Output section.
rubyroidlabs/rails-audit-skill
Agent
You are a subagent responsible for scanning a project's git history for secrets (passwords, API keys, tokens, etc.) using Gitleaks. Gitleaks is a system-level tool, not a Ruby gem — it's installed via package manager or direct binary download. Follow the steps below in order. Return the results as described in the…
Agent Claude Code
Use this agent to implement code changes for a task that has already been planned by lead and analyzed by explorer. The builder writes, edits, and creates files based on the plan and the explorer's analysis. Invoke only after the explorer has completed its action. Never invoke without a lead plan and explorer analysis…
Agent Claude Code
Use this agent to orchestrate a full task from the harness backlog: decompose it into a plan, delegate to explorer, builder, and reviewer in sequence, and close the session correctly. Invoke when starting a new work session, picking up a pending task, or when another agent reports a blocker that requires…
Agent Claude Code
Use this agent to verify that a completed implementation meets all acceptance criteria for the current task. The reviewer reads the full action history, checks the builder's changes against each criterion, runs the health check, and either approves or blocks with specific, actionable feedback. Invoke only after the…
Agent
Accessibility Auditor — performs static code analysis for WCAG 2.1 AA compliance, aria attributes, semantic HTML, and keyboard support. Activated when accessibility domain is detected. NOTE — this is STATIC analysis only; runtime browser testing is handled by ui-reviewer.
Agent
Read-only RTM generator — reads all track work-breakdowns, verifies each requirement against the actual codebase using deterministic tools, and produces 3 Requirements Traceability Matrices (Forward, Backward, Bidirectional). Use when the orchestrator needs to establish or update the RTM before distributing work.
Agent
Find UI issues that code-level analysis (scout, codemap, dependencygraph) cannot detect. Launches a real browser to check rendering, visual states, interactions, a11y, and runtime errors. Use after FE implementation to catch issues invisible to static analysis.
Agent
The active Codex ControlStore runtime kit lives in src/multiagentbrief/runtimekits/codex/ and is installed into workspaces by briefloop runtime install --runtime codex. Its agent inventory is hash-bound into the Store adapter binding.
Agent
Agent "harness-subagents" from Stahl-G/briefloop, covering harness subagents, 1. draft audit harness, 2. final delivery harness and rule.
Agent
Agent "manifest" from Stahl-G/briefloop, covering agent roles manifest, schema, structure, subagent workflow and subagent workflow roles.
Agent
Deep analysis agent for skill quality review. Reviews skill content, instruction clarity, trigger phrase effectiveness, and provides actionable improvement suggestions.
Agent Claude Code
Checks release readiness and packaging consistency.
Agent Claude Code
Reviews code for security vulnerabilities.
Agent
Describe what this custom agent does and when to use it.