Three hooks, no agents. A stated test result must reproduce, a fabricated import never reaches disk, and every command's real output is recorded. Active in every project the moment it is installed.
★not rated 1 21d agoA
tokens not measured
originalMIT
AI agent security for Claude Code — read the code, break the running agent, prove it (exploit-validated). Commands: /static-scan, /red-team. Subagent: agent-red-teamer. Skills: RT-1..RT-9.
★not rated 1 1mo agoA
tokens not measured
originalMIT
Deep white-box OSWE-style web app security audit via /oswe:audit (PHP, Node.js, Python, Java, .NET) — Markdown + visual HTML reports. By Laucked Security.
★not rated 1 4d agoA
tokens not measured
originalMIT
Claude Code injects your account email into session context, where an agent may reuse it as a legitimate value and commit it. This warns once per session when a personal address appears in a tool payload. Never blocks.
★not rated 1 1mo agoA
tokens not measured
originalMIT
Automatic tool-call review for Claude Code. A local encoder scores every proposed tool call before it runs, approving safe work and blocking dangerous calls with an explanation the agent can act on.
★not rated 1 29d agoA
tokens not measured
originalApache-2.0
Auto-detects API keys and secrets in your prompts, saves them to chmod-600 files in /.claude/secrets/, blocks the original prompt, and re-submits a sanitized version via OS-level paste automation. Cross-platform (macOS, Linux, Windows). Zero-friction secret hygiene for Claude Code.
★not rated 1 24d agoA
tokens not measured
originalMIT
Find and scrub credentials that leaked into Claude Code's own local logs. Scan is read-only, scrub is gated, and every run ends on a rotation checklist.
★not rated 1 11d agoA
tokens not measured
originalMIT
Modèle de garde-fou d'installation npm/bun : refuse les paquets malveillants connus (arbre transitif inclus) et met en quarantaine les versions publiées depuis moins de 3 jours.
★not rated 1 yesterdayA
tokens not measured
originalMIT
Eight defensive hooks: blocks recursive rm on $HOME, download-and-execute pipelines, secrets-file access, path-less formatter runs, credentials in the staged diff, and the two zsh quoting mistakes that fail silently; warns on stale lockfiles and shellcheck findings; masks credential-shaped values out of Bash output…
★not rated 1
changed 3d agoA
tokens not measured
originalApache-2.0
Turn Claude Code into an EU AI Act governance assistant: a deterministic, cited risk classifier (Digital Omnibus timeline, NIST AI RMF / ISO 42001 / ALTAI crosswalks) with 21 report generators — risk assessment, DPIA, FRIA, Annex IV, conformity tracker, AI security, data governance, forensic readiness, governance…
★not rated 1
changed 2d agoA
tokens not measured
originalMIT
Agent sidecar proxy — policy enforcement, tracing, and approval for AI agents.
★not rated 1 1mo agoA
tokens not measured
originalApache-2.0
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: