Security agents

4,251 tagged Security, measured the same way as everything else here.

Browse within: Autonomous Agents 74ai-security-tool 64appsec 63ai-security 62agentic-coding 59Multi-Agent 51offensive-security 51multi-agent-systems 50cybersecurity 49claude-code-skills 47bug-bounty 45compliance 40agent-orchestration 38agentic 36

sec-auditor

169

iii-experimental/agentos

Agent

Part of agentos

Security audit agent — scans for vulnerabilities, checks permissions, reviews secrets.

162 3mo ago A 18 tokens original Apache-2.0

attribution

170

DataDog/pathfinding.cloud

Agent Claude Code ✓ vendor

Find references to this attack path to include in the yaml and try to find the person who identified this attack path.

152 8d ago A 26 tokens original Apache-2.0

api-auth-analyzer

173

25smoking/Gwxapkg

Agent

An analyzer for finding possible authentication and authorization weaknesses in APIs. APIs are the interfaces that let software systems exchange requests and data.

151 +3 13d ago A 0 tokens original MIT

burp-correlator

174

25smoking/Gwxapkg

Agent

A tool for matching a raw Burp Suite HTTP request with the corresponding Gwxapkg source API, pseudocode, and call chain. Burp Suite is a web-security tool that records and edits HTTP requests.

151 +3 13d ago A 0 tokens original MIT

25smoking/Gwxapkg

Agent

A business-risk analyst that examines application workflows such as sign-in, verification codes, password resets, licence searches, orders, and payments.

151 +3 13d ago A 0 tokens original MIT

Fausto-404/ai-mobile-reverse-skills

Agent

A mobile-app reverse-engineering analysis role that links captured requests, request fields, signatures, authentication data, and code locations. Reverse engineering here means examining local app code and traffic to understand how they correspond.

150 +1 19d ago A 0 tokens original MIT

Fausto-404/ai-mobile-reverse-skills

Agent

A mobile reverse-engineering agent for analyzing native cryptography code, JNI bridges, and shared-library logic. JNI is the interface that lets Java or Kotlin code call native code, while a shared library is compiled code such as an Android .so file.

150 +1 19d ago A 0 tokens original MIT

acx-reviewer

179

KbWen/agentic-os

Agent Claude Code

AgentCortex /review phase executor. Use when delegating code review that must apply adversarial checks, AC alignment, and scope enforcement per agentic-os governance.

149 9d ago A 38 tokens original MIT

security-auditor

180

webdevtodayjason/context-forge

Agent

You scan {{#if projectName}}{{projectName}}{{else}}the project{{/if}} for security issues across three axes: application code (OWASP Top 10), dependencies (CVEs), and credential leaks. You are conservative — prefer false positives over false negatives, but always tag confidence.

149 +1 3mo ago A 0 tokens original MIT

code-reviewer

181

serpro69/claude-toolbox

Agent

Part of kk

Independent code reviewer with no authorship attachment. Reviews git diffs for SOLID violations, security risks, code quality issues, and architecture smells using the SOLID code review methodology.

148 changed today A 40 tokens

security-auditor

183

shashankswe2020-ux/whoop-mcp

Agent

🛡️ Security engineer focused on vulnerability detection, threat modeling, and secure coding practices. Saves audit reports to docs/security-audits/ and creates GitHub issues for each finding.

146 19d ago A 43 tokens original MIT

reviewer

184

rokoss21/iosm-cli

Agent

Code review specialist for quality and security analysis.

145 +1 4mo ago A 11 tokens copy · 100% MIT

reviewer

188

dmae97/omk

Agent

Code review specialist for quality and security analysis.

142 +1 2d ago A 11 tokens

ad-attack-planner

189

ADScanPro/Claude-AD

Agent

Part of Claude-AD

Reasons about low-privilege-to-Domain-Admin paths in an authorized Active Directory assessment. Takes the enumerator's inventory plus the BloodHound CE graph and works out which edges to chain (GenericAll to ResetPassword to a privileged group, Kerberoast to crack to privilege, ADCS ESC1/ESC8, DCSync). It plans and…

141 +4 9d ago A 96 tokens original MIT

ad-enumerator

190

ADScanPro/Claude-AD

Agent

Part of Claude-AD

Runs the COLLECTION phase of an authorized Active Directory assessment from a low-privilege domain account. Orchestrates standard tools (netexec/nxc, impacket, rusthound-ce or bloodhound-python, certipy) to enumerate users, groups, SPNs, interesting ACLs, ADCS templates and trusts, then returns a structured inventory…

141 +4 9d ago B 87 tokens original MIT

ad-exploit-operator

191

ADScanPro/Claude-AD

Agent

Part of Claude-AD

Executes ONE exploitation step from an approved attack plan in an authorized Active Directory assessment, invoking the matching technique skill (kerberos-attacks, adcs-attacks, acl-abuse, coercion-ntlm-relay) with the standard tool. Always asks for human confirmation before any action that modifies the directory…

141 +4 9d ago A 91 tokens original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: