Security agents

29,647 tagged Security, measured the same way as everything else here.

Browse within: ai-security 90cybersecurity 77Autonomous Agents 74bug-bounty 73ai-security-tool 64appsec 63agentic-coding 57Multi-Agent 51offensive-security 51multi-agent-systems 50ctf 47claude-code-skills 44compliance 40agentic 39

civitai/civitai

Agent Claude Code

Reviews a feature segment in the main Civitai Next.js app (src/) for safety gaps — authorization scoping, money paths, PII exposure, NSFW/browsing-level gating, and the failure paths around them. Use before calling a segment done, alongside civitai-reuse-review, civitai-perf-review, civitai-test-review and…

7.2k +1 today A 85 tokens original Apache-2.0

android/skills

Skill Claude CodeCodex

Best practices for Android Intent security. Use this skill when auditing component configurations in AndroidManifest.xml activities, services, receivers) or source code handling incoming Intents (getIntent, getParcelableExtra) to prevent Intent Redirection and unauthorized access.

7.1k +45 yesterday A 53 tokens original Apache-2.0

NVIDIA-NeMo/Guardrails

Skill Claude CodeCodex

Helps developers create a NeMo Guardrails configuration for an LLM application. Use when users want to build, scaffold, configure, test, or iterate on input, output, retrieval, dialog, execution, Colang, or catalog-based guardrails. Trigger keywords - create guardrails, build guardrails, scaffold config, write rails…

7.0k +3 6d ago A 101 tokens

Guardrails CLAUDE.md

100

NVIDIA-NeMo/Guardrails

Instructions file

Claude Code instructions for NVIDIA-NeMo/Guardrails, a project described as: NeMo Guardrails is an open-source toolkit for easily adding programmable guardrails to LLM-based conversational systems.

7.0k +3 6d ago A 3 tokens

reviewer-security

101

tw93/Waza

Agent

You are a security specialist reviewing a code diff. Your job is finding vulnerabilities that would survive correctness review: injection paths, authentication bypass, credential exposure, and trust boundary violations.

6.9k +11 yesterday A 0 tokens original MIT

trailofbits/skills

Plugin Claude Code

Plugin marketplace listing 42 plugins: audit-context-building, building-secure-contracts, burpsuite-project-parser, claude-in-chrome-troubleshooting, constant-time-analysis.

6.9k +18 changed today A tokens not measured CC-BY-SA-4.0

skills CLAUDE.md

103

trailofbits/skills

Instructions file

Claude Code instructions for trailofbits/skills, a project described as: Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows.

6.9k +18 yesterday A 5 tokens CC-BY-SA-4.0

trailofbits/skills

Skill Claude CodeCodex

Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI Inference. Detects attack vectors where attacker-controlled input reaches AI agents running in CI/CD pipelines, including env var intermediary patterns, direct…

6.9k +18 changed today A 105 tokens CC-BY-SA-4.0

burp-search

105

trailofbits/skills

Command

Searches Burp Suite project files for security analysis.

6.9k +18 yesterday A 10 tokens CC-BY-SA-4.0

trailofbits/skills

Skill Claude CodeCodex

Searches and explores Burp Suite project files (.burp) from the command line. Use when searching response headers or bodies with regex patterns, extracting security audit findings, dumping proxy history or site map data, or analyzing HTTP traffic captured in a Burp project.

6.9k +18 changed today A 59 tokens CC-BY-SA-4.0

ct-check

107

trailofbits/skills

Command

Detects timing side-channels in cryptographic code.

6.9k +18 yesterday A 10 tokens CC-BY-SA-4.0

diff-review

108

trailofbits/skills

Command

Performs security-focused differential review of code changes.

6.9k +18 yesterday A 9 tokens CC-BY-SA-4.0

PreToolUse

109

lingfengQAQ/webnovel-writer

Hook

Runs before the agent uses a tool for Write, Edit, MultiEdit and Bash tool calls, executing guard_runtime_write.py via python (2 commands). From lingfengQAQ/webnovel-writer.

6.9k +39 2d ago A tokens not measured GPL-3.0

trap-detector

110

wbh604/UZI-Skill

Skill Claude CodeCodex

A detector for investment scams that examines signs such as coordinated recommendations, paid groups, false claims, and unusually promotional stock activity.

6.7k +40 6d ago A 96 tokens original MIT

osmedeus-expert

111

j3ssie/osmedeus

Skill Claude CodeCodex

Expert guide for the Osmedeus security automation workflow engine. Use when: (1) writing or editing YAML workflows (modules and flows), (2) running osmedeus CLI commands (scan, workflow management, installation, server), (3) configuring steps, runners, triggers, or template variables, (4) debugging workflow execution…

6.5k +1 25d ago A 113 tokens original MIT

Ed1s0nZ/CyberStrikeAI

Agent

A planning agent for authorized, non-destructive security testing. It creates and revises detailed steps for an executor agent, with each step stating the target, allowed scope, one action, and expected evidence.

6.2k +151 7d ago A 70 tokens original Apache-2.0

Ed1s0nZ/CyberStrikeAI

Skill Claude CodeCodex

A skill for examining Android packages, Windows executables, native libraries, and some cross-platform app binaries to understand how they work.

6.2k +151 7d ago A 70 tokens original Apache-2.0

Ed1s0nZ/CyberStrikeAI

Skill Claude CodeCodex

A method for finding attack chains by combining smaller capabilities such as reading files, writing files, making server requests, or using credentials. It treats a serious outcome as a sequence of separately gained abilities.

6.2k +151 7d ago A 67 tokens original Apache-2.0

Ed1s0nZ/CyberStrikeAI

Skill Claude CodeCodex

A collection of cybersecurity playbooks for investigating and exploiting specific systems, including GoEdge CDN, ARP man-in-the-middle attacks, BT Panel, OCS, MinIO, and CDN-to-S3 access chains.

6.2k +151 7d ago A 91 tokens original Apache-2.0

agt-check

117

microsoft/agent-governance-toolkit

Command ✓ vendor

Check text against AGT prompt-injection, context-poisoning, and MCP threat detectors.

6.2k +22 yesterday A 19 tokens original MIT

Tencent/AI-Infra-Guard

Instructions file ✓ vendor

Claude Code instructions for Tencent/AI-Infra-Guard, covering claude.md, project overview, build commands, build web server binary and build agent binary.

6.1k +24 yesterday A 1,179 tokens original Apache-2.0

At most 3 mods per repository are shown here — the rest are on their repository pages: