Security agents

4,196 tagged Security, measured the same way as everything else here.

Browse within: ai-security 90cybersecurity 77Autonomous Agents 74bug-bounty 73ai-security-tool 64appsec 63agentic-coding 57Multi-Agent 51offensive-security 51multi-agent-systems 50ctf 47claude-code-skills 44compliance 40agentic 39

security-auditor

121

gupsammy/Claudest

Agent

Part of claude-coding

Use this agent when you need a security review — finding exploitable vulnerabilities in authentication, untrusted-input handling, secrets, or dependencies. Recommended PROACTIVELY after changes to auth/authz, API endpoints, input parsing, file uploads or path handling, or cryptography. Not for general code quality…

273 2mo ago A 89 tokens

critic

122

NYCU-Chung/my-claude-devteam

Agent

Part of my-claude-devteam

Code reviewer and security auditor. Hunts for bugs, security holes, logic errors, edge cases, performance issues, and inconsistencies. Every finding with file path + line number. Use before every commit, deploy, or merge. Also handles deep security review (hardcoded secrets, injection, XSS, path traversal).

270 4mo ago A 65 tokens original MIT

securityclaw

123

SecurityClaw/SecurityClaw

Agent

Use for SecurityClaw orchestration, routing, skill-manifest, and investigation workflow changes.

269 +1 27d ago A 23 tokens original MIT

knight

124

ruizrica/agent-pi

Agent

Security review specialist — finds vulnerabilities, injection risks, secrets exposure, auth bypasses, and configuration weaknesses with adversarial precision.

267 +1 1mo ago A 27 tokens original MIT

meta-sentinel

125

KimYx0207/Meta_Kim

Agent

Design security boundaries, hooks, permissions, and rollback rules for MetaKim agents.

266 4d ago A 21 tokens original Apache-2.0

ad-exploit-agent

126

blacklanternsecurity/red-run

Agent

Active Directory exploitation subagent for red-run. Executes one AD technique skill per invocation as directed by the orchestrator. Handles Kerberos attacks, ADCS abuse, ACL exploitation, credential operations, lateral movement, and domain persistence. Use when the orchestrator needs to exploit an AD vulnerability.

266 +3 5mo ago A 62 tokens GPL-3.0

web-exploit-agent

127

blacklanternsecurity/red-run

Agent

Web application exploitation subagent for red-run. Executes one web technique skill per invocation as directed by the orchestrator. Handles injection testing, authentication bypass, file upload, deserialization, and all other web exploitation techniques. Use when the orchestrator needs to exploit a web vulnerability.

266 +3 5mo ago A 60 tokens GPL-3.0

windows-privesc-agent

128

blacklanternsecurity/red-run

Agent

Windows privilege escalation subagent for red-run. Executes one privesc skill per invocation as directed by the orchestrator. Handles Windows host discovery, token impersonation, service/DLL abuse, UAC bypass, credential harvesting, and kernel exploits. Use when the orchestrator has shell access on a Windows host and…

266 +3 5mo ago A 75 tokens GPL-3.0

Audit

129

BlackBeltTechnology/pi-agent-dashboard

Agent

Deep security + performance audit of a specific diff. Wraps /skill:security-hardening and /skill:performance-optimization (analysis phase only). Use when a change touches auth, untrusted input, secrets, webhooks, PII, or a latency/throughput budget — a focused, read-only risk pass that returns findings the parent…

263 3d ago A 98 tokens original MIT

security-reviewer

130

klboke/kkRepo

Agent

Review kkRepo changes for security-sensitive risks.

251 3d ago A 13 tokens original Apache-2.0

security

131

EmpiricaAI/empirica

Agent

Part of claude-code-integration

Use this agent for implementation, modification, and execution tasks requiring security, authentication, authorization, encryption, vulnerabilities expertise. This agent has Security Expert's epistemic profile with calibrated confidence thresholds.

244 5d ago A 39 tokens original MIT

security-build

132

cordwainersmith/Claudoscope

Agent

Security-sensitive implementation after approval - authentication and authorization, secrets handling, cryptography usage, input validation, hardening, dependency remediation. Give it only an approved, stable contract to execute; all pre-approval analysis belongs to the security-review role instead.

233 +1 7d ago A 53 tokens original MIT

auditor

133

OdradekAI/bundles-forge

Agent

Part of bundles-forge

Use when a bundle-plugin needs systematic quality audit and security scan against the 10-category checklist. Dispatched by auditing for thorough automated assessment.

230 4mo ago A 31 tokens original Apache-2.0

code-quality-reviewer

134

yonatangross/orchestkit

Agent

Part of ork

Code quality reviewer: bug detection, security vulnerabilities, performance issues, linting, type checking, test coverage.

224 3d ago A 27 tokens original MIT

testing-pr-security

135

icoretech/airbroke

Agent

Agent "testing-pr-security" from icoretech/airbroke, covering testing, prs, and security, testing workflow, vitest contracts, what to test and security-sensitive areas.

222 3d ago A 0 tokens original MIT

LerianStudio/ring

Agent

Safety Review: Reviews vulnerabilities, authentication, input validation, and OWASP risks. Runs in parallel with other reviewers at Gate 8.

210 14d ago A 33 tokens original Apache-2.0

reviewer

138

weidu12123/Liyuan

Agent

Code review specialist for quality and security analysis.

209 +3 4d ago A 11 tokens

ghidra-agent

139

akiselev/ghidra-cli

Agent Claude Code

This subagent specializes in reverse engineering binaries using Ghidra CLI. It provides efficient, token-optimized access to binary analysis capabilities for Claude Code and other AI agents.

205 +3 25d ago A 0 tokens GPL-3.0

red-team

140

Miguok/fable-harness

Agent Claude Code

A security and failure-mode reviewer that challenges a conclusion or design by looking for unsafe inputs, permission problems, race conditions, data loss, partial failures, and injection risks.

201 7d ago A 71 tokens original MIT

security-operator

141

GeniusHu-tgty/Open-tgtylab

Agent

An AI agent described as an experienced hacker focused on reverse engineering, finding and exploiting vulnerabilities, analyzing malicious software, game security, and mobile security.

200 +1 1mo ago B 24 tokens GPL-3.0

paladini/harness-score

Agent Cursor

Use when a check or dimension in packages/cli/src/checks/ changes point values, thresholds, or is added/removed — verifies score.ts, maturity-model.md, measure-and-improve.md, and all fixtures/level-0..4 stay in sync before the change ships.

199 5d ago A 64 tokens original MIT

APIM Policy Author

143

thomast1906/github-copilot-agent-skills

Agent

Expert agent for creating production-ready Azure API Management policy XML for authentication (OAuth, JWT, subscription keys), rate limiting, CORS, error handling, and transformations. Implements hybrid authentication and security best practices.

197 +1 1mo ago A 46 tokens

Agent Author

144

agentgg-dev/agentgg

Agent

Distills a past security report into a reusable agentgg agent that catches the same anti-pattern if it recurs in this codebase.

194 5d ago A 30 tokens original Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: