thapr0digy
01Plugin Claude Code
Plugin marketplace listing 15 plugins: vuln-scan, pentest-core, pentest-recon, pentest-enum, pentest-analysis.
Plugin Claude Code
Plugin marketplace listing 15 plugins: vuln-scan, pentest-core, pentest-recon, pentest-enum, pentest-analysis.
Plugin Claude Code
PreToolUse hook that hard-blocks irreversible filesystem and system-destructive Bash commands (rm -rf /, dd to /dev/, mkfs, fork bombs, sudo destructives) and prompts via permissionDecision: ask for history-rewriting and shared-state side effects (git force-push/reset --hard/filter-repo, gh pr merge/close, kubectl del.
Plugin Claude Code
Scans a parent directory of git repositories and generates an interactive D3.js dependency graph showing cross-repo relationships.
Plugin Claude Code
Target prioritization and attack surface analysis for penetration testing engagements. Synthesizes recon, enumeration, and scanning data to recommend high-value targets.
Plugin Claude Code
Core infrastructure for offensive security engagements. Manages engagement configuration, scope validation, remote execution, evidence organization, and Plextrac-compatible finding export.
Plugin Claude Code
Enumeration skills for penetration testing engagements. Web application, network service, and cloud infrastructure enumeration.
Plugin Claude Code
Defense evasion techniques for red team engagements. Payload obfuscation, AMSI/ETW bypass, LOLBins, process injection, C2 communications, and covering tracks. Entire plugin is RoE-gated.
Plugin Claude Code
Exploitation guidance and credential attack skills for penetration testing engagements. Expert-assisted exploit selection, payload generation, and password spraying/cracking.
Plugin Claude Code
Hooks that enforce the pentest- skill methodology and orchestration boundaries. Routes pentest engagement prompts to the conductor (UserPromptSubmit), gates Bash invocations against the active phase's tool allowlist (PreToolUse), watches worker artifacts for newly-discovered services (PostToolUse), and blocks WebFetch.
Plugin Claude Code
Active Directory attack chains and post-exploitation skills for penetration testing engagements. AD exploitation, privilege escalation, lateral movement, loot collection, and detection rule generation.
Plugin Claude Code
Passive and active reconnaissance skills for penetration testing engagements. Subdomain enumeration, port scanning, service fingerprinting, OSINT, and attack surface discovery.
Plugin Claude Code
Vulnerability scanning and custom template generation for penetration testing engagements. Nuclei-based scanning with tech-stack-aware template selection and custom template creation.
Plugin Claude Code
Social engineering skills for penetration testing engagements. Phishing campaign setup, email template generation, infrastructure configuration, and results parsing. RoE-gated.
Plugin Claude Code
Utility skills for penetration testing engagements. Finding report writing, engagement cleanup checklist generation, and remediation retesting.
Plugin Claude Code
Standalone secret scanning using trufflehog. Can append results to existing vuln-scan reports.
Plugin Claude Code
Renames the active tmux window to a visible marker (⚠ CLAUDE) whenever Claude Code is waiting on user input, and restores the original name once you respond.
Plugin Claude Code
Reality-checks a freshly written spec or plan against actual code, docs, and API specs using parallel read-only research agents, then applies approved corrections.
Plugin Claude Code
Autonomous vulnerability scanning pipeline for code repositories. Runs an 8-phase pipeline: recon, threat model, static analysis, LLM code review, dependency scan, secret detection, validation, and reporting.