1,026 projects whose own agent configuration covers security. These are not mods to install — they are how the maintainers of these repositories tell an agent what to do, and what to avoid.
All projects Building agents7,374Claude Code6,573Data and AI3,706Backend and APIs3,486Languages3,398Planning3,181Git and workflow3,100Code review2,701Memory and context2,354Testing2,311Research2,292DevOps and cloud2,282
Any agent Claude CodeCodexOpenCodeGitHub CopilotGemini CLICursorWindsurfKiro
| Project | Stars | Configures | Files | Always loaded |
|---|---|---|---|---|
| nylas/cli cli.nylas.com Nylas CLI is a unified command-line tool for Nylas API authentication, email management (G | 68 | Claude Code, Codex, OpenCode | 21 | 2,360 tok |
| Srajangpt1/ai-security-crew MCP to put security context while vibe coding | 68 | Claude Code, Codex, OpenCode | 4 | 1,058 tok |
| AlekseiUL/sprut-agent-kit t.me Ready-to-use AI agent with soul, memory, and 23 skills for ClaudeClaw ⚡ | 63 | Claude Code, Codex, OpenCode | 1 | 1,171 tok |
| lirantal/agent-rules Rules and instructions for agentic coding tools like Cursor, Claude CLI, Gemini CLI, Qodo, | 62 | Codex, GitHub Copilot, Gemini CLI, OpenCode | 8 | 8,139 tok |
| HuTa0kj/vetix Vetix — Automated scanning, identification, and assessment of SKILL security risks. | 61 | Codex, OpenCode | 1 | 920 tok |
| neoneye/agent-memory-atlas neoneye.github.io Comparison of memory systems for agents | 61 | Claude Code, Codex, OpenCode | 6 | 1,758 tok |
| clidey/deptrust deptrust is a CLI that checks package versions for known vulnerabilities across npm, PyPI, | 61 | Claude Code, Codex, OpenCode | 3 | 1,309 tok |
| vichhka-git/opencode-shannon-plugin AI Penetration Testing Plugin for OpenCode — Autonomous pentesting with 600+ Kali Linux t | 60 | Codex, OpenCode | 1 | 1,881 tok |
| AlexanderMattTurner/agent-glovebox A minimal-friction secure experience that lets agents do their work. (beta) | 59 | Claude Code, Codex, GitHub Copilot, OpenCode | 40 | 11,125 tok |
| bug-ops/zeph bug-ops.github.io A memory-first AI agent that remembers why decisions were made — not just the last message | 58 | Codex, GitHub Copilot, OpenCode | 5 | 3,664 tok |
| Case211/skill-remnawave-xray Claude Code skill/plugin: Remnawave + Xray Reality/Vision + Caddy selfsteal + mihomo — ref | 58 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 4 | 1,844 tok |
| ZaneL1u/cloud-cli-proxy zanel1u.github.io A more powerful Claude Code wrapper that uses containerization to make you appear genuinel | 57 | Claude Code, Codex, OpenCode | 6 | 6,222 tok |
| pabpereza/kali-mcp AI Agent implementation to automate ethical hacking tasks. Use it with responsibility. | 57 | Claude Code, Codex, OpenCode | 8 | 3,420 tok |
| longzhi/clawhive Lightweight, Rust-native AI Agent platform. Security sandbox from day one. | 57 | Claude Code, Codex, OpenCode | 2 | 3,177 tok |
| Eljaja/BibaVPN DPI-resistant SOCKS5/HTTP tunnel over TLS+WebSocket for self-hosted single-VPS setups | 57 | Codex, OpenCode | 1 | 10,365 tok |
| cai-layer/cai getcai.app Press ⌥C on anything. Transform with AI, scripts, and shortcuts on any selection. 100% loc | 56 | Claude Code, Codex, GitHub Copilot, OpenCode | 3 | 6,135 tok |
| AuthPlane/authserver OAuth 2.1 Authorization Server for the Model Context Protocol (MCP) | 56 | Codex, OpenCode | 1 | 4,478 tok |
| Nextron-Labs/surface-watch surface-watch monitors the authorized external attack surface of an organization over time | 55 | Codex, OpenCode | 1 | 3,196 tok |
| Mindburn-Labs/helm-ai-kernel helm.docs.mindburn.org Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatibl | 55 | Codex, OpenCode | 1 | 361 tok |
| prowler-cloud/prowler-studio Prowler Studio an AI workflow that ensures Claude Code follows Prowler's guardrails to del | 55 | Codex, OpenCode | 1 | 6,255 tok |
| cybozu/prompt-hardener Prompt Hardener analyzes prompt-injection-originated risk in LLM-based agents and applicat | 54 | Claude Code, Codex, OpenCode | 3 | 1,192 tok |
| SkeneTechnologies/skene-cookbook 700+ AI skills for Claude and Cursor — PLG, marketing, security, DevEx, and more. One comm | 53 | Codex, Cursor, OpenCode | 2 | 3,860 tok |
| QuantumClaw/QClaw Open-source AI agent runtime with a knowledge graph for a brain. Runs anywhere. | 53 | Codex, OpenCode | 1 | 595 tok |
| ruaan-deysel/unraid-management-agent Go-based Unraid plugin monitor and control your Unraid system via REST API, WebSocket, MCP | 53 | Claude Code, Codex, GitHub Copilot, Cursor, Gemini CLI, OpenCode | 14 | 10,024 tok |
| solanabr/auditor-skill Claude Code / agentic security skill for Solana programs and software. Full audit-firm lif | 53 | Codex, OpenCode | 1 | 890 tok |
| davidmosiah/google-health-mcp wellness.delx.ai Local-first MCP server for Google Health API v4 (Fitbit + Pixel Watch) — Claude/Cursor/Her | 53 | Codex, OpenCode | 1 | 154 tok |
| RedHatProductSecurity/prodsec-skills Security skills for AI coding assistants and agentic systems | 52 | Codex, OpenCode | 1 | 1,360 tok |
| gke-labs/kube-agents gke-labs.github.io An autonomous agentic harness for Kubernetes. Proactive fleet audits, declarative GitOps r | 52 | Claude Code, Codex, OpenCode | 29 | 8,860 tok |
| SquidSec/SquidC5 squidoffense.com Security-first AI-native C5 teamserver (Command · Control · Cognitive · Collaborative · Co | 51 | Claude Code, Codex, GitHub Copilot, OpenCode | 3 | 5,685 tok |
| sageox/ox sageox.ai The hivemind for AI coding agents — persistent team context recorded once and recalled acr | 51 | Claude Code, Codex, OpenCode | 50 | 4,269 tok |
| asteroid-belt/skulto Offline and security-first tool for syncing and managing agent skills | 50 | Codex, OpenCode | 1 | 3,435 tok |
| delphicleancode/delphi-spec-kit inovefast.com.br An opinionated ecosystem of rules, skills, and steerings to elevate Delphi development to | 50 | Claude Code, Codex, GitHub Copilot, OpenCode | 3 | 9,608 tok |
| OWASP/Agent-Security-Regression-Harness owasp.community Executable security regression testing for agentic applications and MCP-integrated systems | 49 | Codex, OpenCode | 1 | 927 tok |
| RootCX/RootCX rootcx.com Governed infrastructure for internal tools and AI agents | 48 | Claude Code, Codex | 13 | 280 tok |
| marcieltorres/safe-chat-slack-bot marcieltorres.github.io SafeChat Slack Bot is an open-source project designed to enhance data security within Slac | 48 | Claude Code, Codex, OpenCode | 2 | 1,629 tok |
| senaykt/iac-security-scan-skills iac security scan skills for your AI workflows | 48 | Claude Code, Codex, OpenCode | 2 | 5,177 tok |
| matheusht/redthread An autonomous red-teaming engine for LLMs. RedThread manages the full security lifecycle: | 48 | Claude Code, Codex, OpenCode | 10 | 1,929 tok |
| openshift/service-ca-operator Controller to mint and manage serving certificates for Kubernetes services | 47 | Claude Code, Codex, OpenCode | 2 | 2,623 tok |
| aws-samples/sample-agent-skills-for-builders A curated collection of ready-to-use agent skills covering AWS development, security scann | 47 | Claude Code, Codex, OpenCode | 2 | 1,303 tok |
| web3insight-ai/web3insight web3insight.ai Discover, analyze, and connect with Web3 developers. Powered by GitHub data and on-chain a | 47 | Claude Code, Codex, OpenCode | 33 | 2,344 tok |
| DiegoGuidaF/PulseWeaver Self-hosted forward-auth sidecar that gates your services by request IP + host — give fami | 47 | Claude Code, Codex, OpenCode | 2 | 1,431 tok |
| Agent-Hellboy/mcp-server-fuzzer A generic mcp server fuzzer | 46 | Claude Code, Codex, OpenCode | 2 | 1,406 tok |
| sous-chefs/ossec supermarket.chef.io Development repository for the ossec cookbook | 46 | Codex, GitHub Copilot, OpenCode | 2 | 3,252 tok |
| DelineaXPM/delinea-mcp MCP server for the Delinea Secret Server and Platform APIs | 46 | Claude Code, Codex, OpenCode | 2 | 2,032 tok |
| incubateur-ademe/benefriches benefriches.ademe.fr L'outil numérique qui quantifie et monétarise les impacts environnementaux, sociaux et éco | 45 | Claude Code, Codex, OpenCode | 22 | 2,117 tok |
| Nighthawk42/bnet_auth_tool Python CLI/GUI for Battle.net authenticators: back up TOTP secrets in an encrypted local v | 45 | Claude Code, Codex, OpenCode | 2 | 906 tok |
| ssdeanx/AgentStack AgentStack is a production-grade multi-agent framework built on Mastra, delivering 50+ ent | 44 | Claude Code, Codex, GitHub Copilot, OpenCode | 50 | 34,906 tok |
| TazWake/Public halkynconsulting.co.uk Collection of scripts provided for public use | 44 | Claude Code, Codex, OpenCode | 2 | 2,945 tok |
| BlockedPath/pi-xai-oauth xAI (Grok) provider with OAuth support for pi | 43 | Codex, OpenCode | 1 | 2,961 tok |
| go-appsec/toolbox Collaborative application security testing between humans and agents via CLI and MCP | 43 | Claude Code, Codex, OpenCode | 2 | 6,730 tok |