1,480 projects whose own agent configuration covers security. These are not mods to install — they are how the maintainers of these repositories tell an agent what to do, and what to avoid.
All projects Building agents7,374Claude Code6,573Data and AI3,706Backend and APIs3,486Languages3,398Planning3,181Git and workflow3,100Code review2,701Memory and context2,354Testing2,311Research2,292DevOps and cloud2,282
Any agent Claude CodeCodexOpenCodeGitHub CopilotGemini CLICursorWindsurfKiro
| Project | Stars | Configures | Files | Always loaded |
|---|---|---|---|---|
| JDArmy/Evasion-SubAgents Claude Code evasion SubAgents | 315 | Claude Code | 10 | — |
| 0rangec3t/Black-cat Claude Code RedTeam Skill — Hypothesis-Driven Cognitive Architecture. A hypothesis- and ev | 310 | Claude Code | 2 | — |
| apollographql/apollo-mcp-server apollographql.com Apollo MCP Server | 308 | Claude Code, Codex, OpenCode | 5 | 1,032 tok |
| db-lyon/ue-mcp ue-mcp.com Complete Unreal Engine development toolkit exposed as MCP tools. | 306 | Claude Code | 3 | 4,463 tok |
| Encod3d-Sec/TORCH Karpathy LLM based claude harness for PenetrationTesting / Bugbounty using obsidian | 303 | Claude Code | 1 | 7,786 tok |
| lbx154/Argus A self-evolving multi-agent system for autonomous research, operating 24/7 to explore, lea | 301 | Claude Code, Codex, GitHub Copilot | 2 | 616 tok |
| ucsandman/DashClaw dashclaw.io Remote approvals, policy checks, and execution evidence for unattended AI agents. | 297 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 30 | 10,148 tok |
| semgrep/skills semgrep.dev A collection of skills for AI coding agents from Semgrep | 297 | Claude Code, Codex, OpenCode | 2 | 1,020 tok |
| HarmonicSecurity/claudit-sec Security audit tool for Claude Desktop and Claude Code on macOS — single-command visibilit | 294 | Claude Code | 1 | 2,074 tok |
| GreyhavenHQ/greywall greywall.io Container-free, deny-by-default sandbox for AI coding agents. Kernel-enforced filesystem, | 291 | Claude Code | 1 | 749 tok |
| eqtylab/cupcake cupcake.eqtylab.io A native policy enforcement layer for AI coding agents. Built on OPA/Rego. | 289 | Claude Code, GitHub Copilot | 3 | 12,811 tok |
| mylee04/code-notify Cross-platform desktop notifications for Claude Code, Codex, and Gemini CLI. Install via H | 288 | Claude Code | 11 | — |
| sigcli/sigcli sigcli.ai The authentication CLI & Proxy for AI agents. Give agents access, not your credentials. | 288 | Claude Code | 10 | 2,140 tok |
| jakejarvis/domainstack.io domainstack.io 🧰 All-in-one domain name intelligence as a service | 285 | Claude Code, Codex, OpenCode | 2 | 5,046 tok |
| PlamenTSV/plamen Autonomous Web3 security audit agent for Claude Code | 281 | Claude Code, Codex | 1 | 1,396 tok |
| aartiq/servicenow-mcp servicenow-mcp.com ServiceNow MCP server: 450+ tools and 26 AI capabilities for any AI (Claude, ChatGPT, Gemi | 274 | Claude Code | 10 | — |
| SecurityClaw/SecurityClaw A modular, skill-based autonomous Security Operations Center (SOC) agent that monitors Ope | 272 | Claude Code | 1 | — |
| lasso-security/claude-hooks lasso.security Lasso security integrations for Claude Code, including prompt-injection defenses | 265 | Claude Code | 3 | — |
| Hainrixz/cyber-neo tododeia.com Open-source cybersecurity analysis agent for Claude Code. Scans projects for vulnerabiliti | 257 | Claude Code | 1 | 876 tok |
| zapier/sdk docs.zapier.com Agent-readable docs, verified examples, and skill manifest for @zapier/zapier-sdk | 249 | Claude Code, Codex, OpenCode | 2 | 2,403 tok |
| finos/git-proxy git-proxy.finos.org Deploy custom push protections and policies on top of Git | 246 | Claude Code, Codex, GitHub Copilot, OpenCode | 17 | 2,404 tok |
| bitwarden/mcp-server bitwarden.com MCP server for interaction with Bitwarden. | 246 | Claude Code | 1 | — |
| SCStelz/security-investigator Automated security investigation tool using Microsoft MCP Servers, GitHub Copilot, Python | 244 | Claude Code, Codex, GitHub Copilot | 29 | 22,159 tok |
| komunite/kalfa komunite.com.tr Claude Code için Türkçe profesyonel işletim sistemi — 10 uzman agent, 22 komut, 993 skill, | 244 | Claude Code | 7 | — |
| 0xiehnnkta/nemesis-auditor The Inescapable Auditor -- iterative deep-logic security audit agent for Claude Code | 243 | Claude Code | 1 | 618 tok |
| adcontextprotocol/adcp Docs and reference implementation for the Ad Context Protocol | 242 | Claude Code, Codex, OpenCode | 31 | 218 tok |
| lalitgehani/SnackBase snackbase.dev SnackBase is a Python/FastAPI-based BaaS providing auto-generated REST APIs, multi-tenancy | 238 | Claude Code, Codex, OpenCode | 2 | 4,006 tok |
| erikdarlingdata/PerformanceStudio erikdarling.com Free, open-source SQL Server execution plan analyzer — cross-platform GUI + CLI with 30 an | 237 | Claude Code | 1 | — |
| Arenbai/SecSkills Professional penetration-testing skill module for Claude Code. Strictly follows the PTES s | 235 | Claude Code | 1 | 1,616 tok |
| bx33661/Wireshark-MCP Wireshark-MCP,Give your AI assistant a packet analyzer. Drop a .pcap file, ask questions i | 228 | Claude Code, GitHub Copilot | 3 | 235 tok |
| HeadyZhang/agent-audit headyzhang.github.io Static security scanner for LLM agents — prompt injection, MCP config auditing, taint anal | 226 | Claude Code | 1 | 3,386 tok |
| grisuno/LazyOwn reddit.com LazyOwn RedTeam/APT Framework is the first RedTeam Framework with an AI-powered C&C, featu | 226 | Claude Code, Codex, OpenCode | 2 | 15,495 tok |
| bhavsec/autopentest-ai Agentic Pentesting MCP server that discovers, exploits, and reports web application vulner | 226 | Claude Code | 1 | 29,523 tok |
| Cisco-Talos/EvidenceForge Generate realistic synthetic security logs for cybersecurity threat hunting training and r | 225 | Claude Code, Codex, OpenCode | 2 | 10,879 tok |
| sondera-ai/sondera-coding-agent-hooks Hooking implementations and supporting tools for various coding agents (Claude, Cursor, Ge | 223 | Claude Code, Codex, OpenCode | 3 | 1,505 tok |
| vinikjkkj/zapo zapo.to 🧩 Lightweight, high-performance TypeScript library for the WhatsApp Web protocol, built f | 223 | Claude Code, Codex, OpenCode | 2 | 12,947 tok |
| first-fluke/fullstack-starter deepwiki.org Production-ready fullstack monorepo template with Next.js, FastAPI, Flutter, Terraform, an | 222 | Claude Code, Codex, OpenCode | 8 | 3,600 tok |
| Esonhugh/pydoll-cf-waf-bypasser-skills An antibot WAF bypasser based on the pydoll framework, good at Cloudflare. Skills for bypa | 220 | Claude Code | 1 | — |
| JameZUK/Arkana arkana.re Arkana - Your entire malware analysis lab, behind one AI prompt. 250+ MCP tools for binary | 218 | Claude Code | 7 | 9,744 tok |
| GaaraZhu/gate A deterministic privacy boundary between your data and AI. | 216 | Claude Code | 1 | 1,400 tok |
| kstenerud/yoloai yoloai.dev Your agent is a security risk, so treat it like one. yoloAI does AI agent sandboxing right | 211 | Claude Code, Codex, OpenCode | 5 | 4,163 tok |
| spire-studio/cloakbot A privacy-first AI agent that sanitizes your prompts locally with a local LLM before forwa | 209 | Claude Code, Codex, OpenCode | 2 | 770 tok |
| akiselev/ghidra-cli Automate Ghidra reverse engineering from the command line — headless analysis, decompilati | 208 | Claude Code, Codex, OpenCode | 4 | 767 tok |
| Garudex-Labs/caracal caracal.run 🐾 Authority, not credentials, for AI agents: policy-approved actions, delegation that can | 205 | Claude Code, GitHub Copilot | 19 | 4,434 tok |
| cynative/cynative cynative.com Open-source framework for security agents with live, read-only access to your infrastructu | 197 | Claude Code, Codex, OpenCode | 2 | 5,994 tok |
| MCP-Manager/MCP-Checklists mcpmanager.ai | 195 | Claude Code | 1 | 4,505 tok |
| rileyhilliard/rr Easily sync code to a remote machine and run commands there. That's it. | 195 | Claude Code | 2 | — |
| lennney/mcp-slim-guard take-a-deep-breath0.com Context compression for MCP. Same upstream call, exact results recoverable. | 192 | Claude Code, Codex, GitHub Copilot, OpenCode | 3 | 1,224 tok |
| nizos/probity TDD enforcement and guardrails for Claude Code, Codex, and GitHub Copilot CLI | 190 | Claude Code | 3 | 396 tok |
| erans/lunaroute LunaRoute is a high-performance local proxy for AI coding assistants like Claude Code, Ope | 188 | Claude Code | 1 | — |