Command Claude Code
Each agent is a Claude Code sub-agent invoked via claude --model claude-sonnet-4-6-20250929 with a role-specific prompt file. Agents operate on branches, submit PRs via conventional commits.
2,547 tagged Security, measured the same way as everything else here.
Browse within: compliance 150gdpr 116ai-security 105bug-bounty 90claude-ai 78devsecops 74appsec 61offensive-security 52pentesting 51ai-governance 50bugcrowd 49ai-coding 47ctf 46cybersecurity 43
Command Claude Code
Each agent is a Claude Code sub-agent invoked via claude --model claude-sonnet-4-6-20250929 with a role-specific prompt file. Agents operate on branches, submit PRs via conventional commits.
hoyt-harness/davinci-mcp-professional
Command Claude Code
Complete a security review of the pending changes on the current branch.
Command Claude Code
Part of lcm
Manage sensitive patterns for lossless-claude secret redaction — list, add, remove, test, or purge patterns.
Command ✓ vendor
A command for reviewing code quality, security, performance, and software architecture, the overall structure of a system.
Command Claude Code
This command formats the code, updates documentation to reflect changes, scans for leaked secrets, commits, and pushes to the remote main branch. It will REFUSE to proceed if any secrets or tokens are detected. It runs fully automatically with NO user prompts unless secrets are found.
Command Claude Code
Run this before /deploy to catch security issues. Three-step process: scan, triage, report.
Command Claude Code
AIOSON — Evidence-driven adversarial review, bounded hardening, and localized security coverage reports.
sabakan0123/claude-security-skills
Command
A full project scan that first detects the project structure and then runs sub-agents in parallel. The input does not explain which checks the scan performs.
sabakan0123/claude-security-skills
Command
A manually started security review of the changes between Git branches or commits. Git diff is the view of what code was added, removed, or changed.
sabakan0123/claude-security-skills
Command
A manually started runtime check for a server already deployed to a staging environment. It tests HTTP headers, sends dynamic probes, and checks authentication.
holgerleichsenring/agent-smith
Command Claude Code
Smoke-test the agent-smith CLI binary + docker-compose for api-scan / security-scan / fix-bug. Catches regressions that escape the unit test suite.
Command
Part of forge
Start Forge Mentor in this project — connect accounts, agree permissions, and begin the foundation interrogation.
martinholovsky/claude-project-scaffold
Command Claude Code
Review staged changes for bugs, security issues, and style.
martinholovsky/claude-project-scaffold
Command
Validate network policies and check for dangerous patterns.
Command Claude Code
Write and run a valid Foundry proof-of-concept that proves (or disproves) a Solidity exploit by asserting the actual harm on a forked chain or against local source.
Command Claude Code
Run a complete multi-phase security audit on the target codebase.
Myr-Aya/GouvernAI-claude-code-plugin
Command
Part of gouvernai
Show guardrails status, switch modes, set token cap, or view the audit log. Usage: /guardrails [status|log|strict|relaxed|audit|reset|policy|tokencap].
Command
Part of air-blackbox
Export a signed compliance evidence package as JSON or PDF for regulatory handoff.
tungnk123/mobile-best-practices
Command
Audit mobile app for security vulnerabilities using the mobile-best-practices database.
Command
A command that checks TypeScript and Next.js code against a company’s required coding, security, testing, and project rules. TypeScript adds types to JavaScript, while Next.js is a framework for building web applications.
Command
Part of sentinel-ai
Check text or a file for personally identifiable information and show the redacted version.
Command
Part of sentinel-ai
Generate a detailed safety risk report for the current conversation or a specific file.
Command
Part of sentinel-ai
Red-team your safety scanning by generating adversarial variants of a prompt injection attempt.
afiqiqmal/claude-security-audit
Command Claude Code
Run a comprehensive white-box and gray-box security audit with OWASP Top 10:2025, CWE, NIST CSF 2.0, SANS Top 25, ASVS, PCI DSS, MITRE ATT&CK, SOC 2 and ISO 27001 mapping. Shows findings by default. Append --fix to include remediation code blocks.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: