scan
01Command
Run automated static analysis and write the results to .claude/findings.json.
26 tagged sast, measured the same way as everything else here.
Browse within: appsec 23semgrep 16threat-modeling 15mobile-security 6owasp 6security-tools 6
Command
Run automated static analysis and write the results to .claude/findings.json.
Command
Prepare a focused analysis scope for large codebases or monorepos using repomix. Creates a digestible snapshot of the target code for subsequent security analysis.
Command
Combines application understanding with systematic threat identification. First understands the application, then identifies what could go wrong.
ch0ks/hackarandas-claude-toolbelt
Command
Check if Semgrep is installed and working. If not, install it using the best available method. Then log in to Semgrep Pro, enable the Pro engine, and run a local Pro scan in the current directory.
ch0ks/hackarandas-claude-toolbelt
Command
List all Claude Code sessions across all projects, sorted by most recent. Show project context, date, and the exact resume command for each session.
Command Claude Code
Static Application Security Testing (SAST) for code vulnerability analysis across multiple languages and frameworks.
tinoimammp/vantage-security-agent
Command
Apply a code-level fix for a finding from /vantage:scan-diff's commit/PR/MR scan — modifies the target repository's source code.
tinoimammp/vantage-security-agent
Command
Scan only the changed files in a single commit or PR/MR for newly introduced vulnerabilities (fast incremental check, not a full pipeline run).
tinoimammp/vantage-security-agent
Command
Run the full mobile SAST pipeline (phases 01-06) against this repository — Android, iOS, React Native, or Flutter.
Command Claude Code
Report whether a newer zzop-mcp release exists, and how to take it. Never installs anything.
Yashvendra/claude-security-skills
Command
Builds deep architectural context before vulnerability hunting.