1,485 projects whose own agent configuration covers security. These are not mods to install — they are how the maintainers of these repositories tell an agent what to do, and what to avoid.
All projects Building agents7,450Claude Code6,586Data and AI3,698Backend and APIs3,488Languages3,402Planning3,191Git and workflow3,129Code review2,728Memory and context2,353Testing2,330DevOps and cloud2,293Research2,288
Any agent Claude CodeCodexOpenCodeGitHub CopilotGemini CLICursorWindsurfKiro
| Project | Stars | Configures | Files | Always loaded |
|---|---|---|---|---|
| Whitening-Sinabro/clouvel No coding without a PRD. An MCP server that enforces the vibe-coding process, with fixed g | 2 | Claude Code | 4 | 3,103 tok |
| daedahl/claude-code-principles Working principles for configuring Claude Code, from hands-on practice | 2 | Claude Code | 3 | 102 tok |
| sumleo/AgentSkillsScanner | 2 | Claude Code | 1 | 1,773 tok |
| MokeyBytes/claude-baseline Reusable Claude Code baseline with safety hooks, audit logging, automatic formatting, cost | 2 | Claude Code | 19 | 975 tok |
| stranma/claude-code-python-template Production-ready Python project template for Claude Code with TDD workflow, 7 custom agent | 2 | Claude Code | 4 | 616 tok |
| WZ/agent-gate Single-user audit gate for AI agents that talk HTTP — local proxy + dashboard, no backend, | 2 | Claude Code | 1 | 4,691 tok |
| lodetomasi/claude-code-training-lab Training lab con 15 bug intenzionali per imparare Claude Code. 11 moduli pratici: dall'esp | 2 | Claude Code | 8 | — |
| lopes/foxglove Automatically generate decoy files. | 2 | Claude Code | 1 | 1,750 tok |
| php-workx/fuse A local firewall for AI agent commands | 2 | Claude Code, Codex, OpenCode | 2 | 2,996 tok |
| kounetsuman/zashiki Zashiki is an orchestration cockpit for visualizing Claude Code sessions on a single scree | 2 | Claude Code | 3 | 1,280 tok |
| hackingyseguridad/IA hackingyseguridad.com IA aplicada a la detección de vulnerabilidades y hacking (Offensive AI) | 2 | Claude Code | 14 | 1,751 tok |
| Mikacr1138/claude-bug-bounty Enable efficient bug bounty hunting across Web2 and Web3 with a tool that supports full re | 2 | Claude Code | 1 | 761 tok |
| kirti/claude-power-modes A reusable library of named prompt "modes" (SECURITYMODE, STAFFENGINEER, TESTMODE, etc.) f | 2 | Claude Code, GitHub Copilot | 2 | 1,417 tok |
| pashki975/thm-claude-kit A coach for TryHackMe, powered by Claude Code. A consistent methodology (classify → enumer | 2 | Claude Code | 1 | 337 tok |
| uttej-badwane/secure-cloud-prompt-engineering Security-focused prompt library and Claude Code skill for automated IaC security reviews. | 2 | Claude Code | 1 | 878 tok |
| Fodhol/skills fodhol.github.io 🚀 Enhance your AI-assisted security workflows with plugins from the Trail of Bits Skills | 2 | Claude Code | 1 | 1,781 tok |
| vinayaklatthe/microsoft-security-agent-toolkit Action layer for Microsoft Security AI agents - MCP servers, KQL snippets, Logic Apps temp | 2 | Claude Code, GitHub Copilot, Cursor | 3 | 1,694 tok |
| yu-iskw/skill-inspector npmjs.com A sophisticated tool designed to bring quality and security to the world of AI Agent Skill | 2 | Claude Code, Codex, OpenCode | 2 | 617 tok |
| mirekondro/The-Pre-Flight-Check mirekondro.github.io ✈️ Stop your AI coding agent from declaring 'done' on broken code. Fail-fast quality gate: | 2 | Claude Code, Codex, Gemini CLI, OpenCode | 3 | 3,486 tok |
| cubxxw/agent-kit Public, versioned Agent Skills to safely bootstrap and sync Claude Code, Codex, Qwen Code, | 2 | Claude Code, Codex, OpenCode | 4 | 188 tok |
| rodrigopg/whatsapp-mcp WhatsApp MCP Server — community fork with LID contact fixes, group management, security ha | 2 | Claude Code, Codex, OpenCode | 2 | 865 tok |
| getskillseal/skillseal getskillseal.github.io Self-verifying agent skills. Your seal of approval. 🦭 | 2 | Claude Code, Codex, OpenCode | 2 | 751 tok |
| morodomi/redteam-skills Claude Code Plugin for automated security auditing. Static analysis + dynamic verification | 2 | Claude Code | 1 | 1,849 tok |
| AbhiiGatty/cld-flare-maxxing cld-flare-maxxing.abhiigatty.com Claude Code and Codex plugin that audits, explains, and safely changes Cloudflare. Read-on | 2 | Claude Code, Codex, GitHub Copilot, OpenCode | 12 | 3,719 tok |
| filthyrake/damens_mcps A collection of MCP servers I've put together with various AI tools for infrastructure man | 2 | Claude Code, GitHub Copilot | 6 | 14,328 tok |
| revenantworks/claude-skills The Revenant packs marketplace — Agent Skills packs for Claude. | 2 | Claude Code | 4 | 986 tok |
| v0idw4lker/trustmcp Free, open-source security scanner for MCP servers, static analysis, live dynamic probing | 2 | Claude Code | 2 | 141 tok |
| willow-memory/willow-mcp Agent-neutral MCP server with persistent memory (SOIL + Postgres KB) and a sandboxed task | 2 | Claude Code | 4 | — |
| hexxla/mcp-ratchet Go package for enforcing tool call order in MCP servers. Token-based dependency system wit | 2 | Claude Code, Codex, OpenCode, Windsurf | 17 | 1,910 tok |
| kenithphilip/Tessera Signed provenance labels and taint-tracking policy for LLM agent security. The core librar | 2 | Claude Code | 1 | 3,345 tok |
| waleedkhanbaloch/claude-code-safety-net waleedkhanbaloch.github.io 🛡️ Enhance code safety with Claude Code Safety Net, a tool designed to identify and mitig | 2 | Claude Code, Codex, OpenCode | 2 | 3,226 tok |
| Taibur-Rahaman/Agent2Wp-AI-WordPress-Agent Security engine for WordPress AI Abilities — fail-closed risk classification, permission g | 2 | Claude Code, Codex, Gemini CLI, OpenCode | 3 | 714 tok |
| akar5h/jakk Black-box security scanner for MCP servers — deterministic single-call probes, no LLM. 13 | 2 | Claude Code | 1 | 668 tok |
| kummahiih/secure-claude A hardened, containerized environment for running Claude Code as an AI agent with access t | 2 | Claude Code | 1 | 261 tok |
| rashidazarang/email-intel Email infrastructure fingerprinting for macOS | 2 | Claude Code, Codex, OpenCode | 2 | 619 tok |
| aki0225/AgentToolGate A local AI Agent tool governance gateway: it does not prevent prompt injection, but preven | 2 | Claude Code, Codex, OpenCode | 2 | 807 tok |
| ArcadeAI/arcade-mcp-ts TypeScript framework for building MCP servers with built-in OAuth (21 providers), secret i | 2 | Claude Code | 1 | 1,246 tok |
| ns408/agentic-lab A lab exploring agentic AI for Cloud and DevOps, built as small, runnable demos. Work in p | 2 | Claude Code | 2 | — |
| gordcurrie/unifi-mcp MCP server written in Go that exposes UniFi home-network operations as tools | 2 | Claude Code, Codex, GitHub Copilot, OpenCode | 4 | 2,346 tok |
| adudley78/mcp-audit Security scanner for MCP (Model Context Protocol) server configurations. Detects prompt in | 2 | Claude Code | 1 | 22,263 tok |
| Synapsor/Synapsor-Runner synapsor.ai Let AI agents query and update Postgres/MySQL without raw SQL, unrestricted schema access, | 2 | Claude Code, Codex, GitHub Copilot, OpenCode | 3 | 1,188 tok |
| mrboups/xbrain grooveos.app Self-hostable, MCP-native memory backend for teams of humans and AI agents. A FastAPI serv | 2 | Claude Code | 5 | 5,300 tok |
| hyperpolymath/boj-server-cartridges Canonical registry of BoJ capability cartridges — each one a machine-checked ABI, a five-s | 2 | Claude Code | 1 | — |
| albertik322-sudo/mcp-control-plane Open-source MCP 2.0 control plane for Windows, homelab, Docker, MikroTik, Home Assistant, | 2 | Claude Code, Codex, OpenCode | 3 | 163 tok |
| hatyibei/shingan AI Agent Workflow Static Analyzer — detect infinite loops, cost explosions, PII leak paths | 2 | Claude Code, Codex | 3 | — |
| vpeetla-ai/aegisai-enterprise-agent-platform aegisai-enterprise-agent-platform.vercel.app Enterprise agent governance control plane — AI Gateway, HITL, OPA policy, signed audit, Fi | 2 | Claude Code, Codex, Cursor, OpenCode | 14 | 389 tok |
| theMobiusStrip/agentpay-guard Fail-closed spend guard for x402 agent payments: stateful policy plugin, EIP-3009 replay m | 2 | Claude Code, Codex, OpenCode | 4 | 2,431 tok |
| Ashveil1/Elengenix AI-assisted orchestration for bug bounty hunting. Automates security tools for reconnaiss | 2 | Claude Code, Codex, OpenCode | 2 | 3,049 tok |
| viplavfauzdar/aisecops-interceptor aisecops.net AISecOps Interceptor — Runtime security layer for AI agents | 2 | Claude Code, Codex, OpenCode | 2 | 2,389 tok |
| xsourabhsharma/ai-security-audit-pro Universal security-audit plugin and CLI engine for AI agents with OWASP-mapped reports for | 2 | Claude Code, Codex, Gemini CLI, OpenCode | 3 | 753 tok |