1,980 projects whose own agent configuration covers security. These are not mods to install — they are how the maintainers of these repositories tell an agent what to do, and what to avoid.
All projects Building agents7,374Claude Code6,573Data and AI3,706Backend and APIs3,486Languages3,398Planning3,181Git and workflow3,100Code review2,701Memory and context2,354Testing2,311Research2,292DevOps and cloud2,282
Any agent Claude CodeCodexOpenCodeGitHub CopilotGemini CLICursorWindsurfKiro
| Project | Stars | Configures | Files | Always loaded |
|---|---|---|---|---|
| 1Password/SCAM 1password.github.io SCAM - Security Comprehension Awareness Measure | Open-source benchmark that tests AI agen | 136 | Codex, OpenCode | 1 | 3,027 tok |
| WhitzardAgent/AgentGuard whitzard.tech AgentGuard: Zero-Trust Security Foundation for AI Agents | 135 | Codex, OpenCode | 1 | 1,264 tok |
| AlexAI-MCP/hermes-CCC Hermes Agent ported to Claude Code Channel — 46 native skills, no OAuth, no external proce | 134 | Claude Code | 1 | 561 tok |
| vigolium/piolium vigolium.com A Pi-native extension for thorough, agentic security audits | 134 | Claude Code, Codex, OpenCode | 2 | 2,082 tok |
| danyuchn/pii-guard Traditional Chinese (Taiwan) personal data de-identification tool that allows business doc | 131 | Claude Code, Codex, OpenCode | 3 | 1,416 tok |
| xenitV1/Antigravity-Workflows | 130 | Claude Code, Gemini CLI | 17 | 2,676 tok |
| agutinbaigo28/financial-agent-api financial agent api with multi-agent framework for scalable AI systems focusing on financi | 129 | Claude Code, Codex, GitHub Copilot, OpenCode | 50 | 34,906 tok |
| cx8537/sidabari | 129 | Claude Code | 1 | 5,214 tok |
| ccashwell/evm-cortex Ethereum protocol engineering squad for AI coding assistants | 128 | Claude Code, Codex, OpenCode | 2 | 4,119 tok |
| fran-olivares/usulnet usulnet.com Open-source Docker infrastructure platform. One web UI — containers, security, DNS, VPN, m | 128 | GitHub Copilot | 1 | 2,716 tok |
| mbhatt1/GhostLine Feed it a number. Your cloned voice does the social engineering, while you sip your coffee | 127 | Codex, OpenCode | 1 | 1,736 tok |
| riffpad/riffpad riffpad.ai Watch, approve and steer your coding agents from your phone. | 127 | Codex, OpenCode | 1 | 403 tok |
| hiromaily/go-crypto-wallet Cryptocurrency wallet for trading for Bitcoin, Bitcoin cash, Ethereum, ERC20, XRP Leger (R | 127 | Claude Code, Codex, GitHub Copilot, OpenCode | 6 | 3,234 tok |
| NeoTheCapt/RedteamAgent An AI red-team agent for authorized labs and web app pentesting workflows. Turns Claude Co | 126 | Claude Code | 1 | — |
| Archethect/sc-auditor Solidity smart contract auditor leveraging static analysis, Solodit findings and Map, Hunt | 122 | Claude Code, Codex, OpenCode | 2 | 1,446 tok |
| sinewaveai/agent-security-scanner-mcp npmjs.com Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallu | 121 | Claude Code | 3 | 1,918 tok |
| dcb/homeassistant-claude-kit AI-guided Home Assistant setup — automation templates, mobile-first React dashboard, and C | 119 | Claude Code, Codex, OpenCode | 5 | 3,903 tok |
| nirholas/pump-fun-sdk sdk.pumpk.it Token creation launching, bonding curve trading, AMM migration, tiered fees, creator fee s | 119 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 4 | 7,518 tok |
| dralgorhythm/claude-agentic-framework A More Effective Agent Harness for Claude | 118 | Claude Code, Codex, OpenCode | 35 | 2,168 tok |
| auth0/auth0-mcp-server Connect LLMs and AI agents to Auth0 Management APIs via an MCP server. Use natural-languag | 118 | Codex, Gemini CLI, OpenCode | 2 | 1,390 tok |
| momotech/LinkWork Open-source enterprise AI workforce platform — containerized roles, declarative skills, MC | 117 | Codex, OpenCode | 1 | 1,632 tok |
| walletbeat/walletbeat walletbeat.eth.limo An open repository of EVM-compatible wallets 🌸 | 117 | Claude Code, Codex, OpenCode | 5 | 1,101 tok |
| ammarion/waf-detector 🛡️ High-performance WAF & CDN detection tool. Identify protection layers (Cloudflare, Aka | 116 | Claude Code, Codex, OpenCode | 15 | 701 tok |
| block/codecrucible A purpose-built Go CLI tool that analyses Git repositories for security vulnerabilities us | 115 | Claude Code, Codex, OpenCode | 2 | 333 tok |
| microsoft/vscode-copilotstudio VS Code Extension for Copilot Studio | 108 | Claude Code, Codex, GitHub Copilot, OpenCode | 6 | 6,765 tok |
| microsoft/Agent365-Samples | 107 | Claude Code, GitHub Copilot | 11 | 5,728 tok |
| Clear-Capabilities/agentic-security clearcapabilities.com Build faster with an Agentic Workforce. Safe, secure, and compliant is now the default. | 106 | Claude Code | 2 | 6,613 tok |
| ai-sdlc-framework/ai-sdlc ai-sdlc.io Declarative governance framework for AI-augmented software development lifecycles | 105 | Claude Code | 9 | 13,939 tok |
| lgallard/terraform-aws-cognito-user-pool Terraform module to create Amazon Cognito User Pools, configure its attributes and resourc | 105 | Claude Code | 5 | 3,210 tok |
| joelhooks/agent-secrets 🛡️ Portable credential management for AI agents — Age encryption, session leases, killswi | 105 | Claude Code, Codex, OpenCode | 2 | 1,828 tok |
| tomkabel/google-botguard-security-research A Case Study in Bypassing Client-Side Anti-Fraud Mechanisms | 104 | Codex, OpenCode | 1 | 361 tok |
| microsoft/PromptKit Agentic prompts are the most important code you're not engineering. PromptKit fixes that — | 104 | GitHub Copilot | 1 | 1,144 tok |
| cuihuan/awesome-ai-gateway cuihuan.github.io ⚡ Awesome AI Gateway — pick an AI gateway from 160+ (LiteLLM, OpenRouter, Portkey, Kong, H | 104 | Claude Code | 1 | 988 tok |
| aws-samples/appmod-blueprints | 103 | Claude Code, Kiro | 18 | — |
| faramesh/faramesh-core docs.faramesh.dev Governance-as-Code for AI agents. Declarative constraints with deterministic enforcement. | 102 | GitHub Copilot | 1 | 210 tok |
| benavlabs/vibe-check Security checklist for vibe coded apps. AI rules file + automated audit + manual verificat | 102 | Codex, OpenCode | 1 | 1,071 tok |
| secutils-dev/secutils secutils.dev Secutils.dev is an open-source, versatile, yet simple security toolbox for engineers and r | 101 | Codex, OpenCode | 1 | 20,900 tok |
| CreamyG31337/chrysalis-ioc-triage | 100 | Codex, OpenCode | 1 | 786 tok |
| DSB-117/brainblast npmjs.com Predict the silent integration traps an AI agent would ship (zero-revenue configs, auth by | 100 | Claude Code | 2 | — |
| ominiverdi/opencode-chat-bridge Bridge OpenCode, Ferrum, and other ACP-compatible agents to Matrix, Slack, Mattermost, Wha | 100 | Codex, OpenCode | 1 | 44 tok |
| Smana/cloud-native-ref blog.ogenki.io Opiniated Cloud Native Platform Reference | 100 | Claude Code | 9 | 6,435 tok |
| awslabs/threat-modeling-mcp-server | 100 | Kiro | 10 | — |
| jiangkoumo/toolfence Local, fail-closed policy enforcement and human approval for MCP tool calls. | 100 | Codex, OpenCode | 1 | 417 tok |
| SteelMorgan/1c-agent-based-dev-framework Agent development framework for 1C | 98 | Claude Code | 6 | — |
| eunomia-bpf/ActPlane eunomia.dev eBPF Information Flow Enforcement for AI Agent safety, security and effectiveness | 98 | Claude Code, Codex, OpenCode | 6 | 2,205 tok |
| vmihalis/hacker-bob hackerbob.ai A local MCP runtime that attacks what you own and only reports what it proved. 17 CVEs acr | 97 | Claude Code, Codex, OpenCode | 36 | 1,942 tok |
| TryMightyAI/mighty-security Don't Simply Trust MCP Server Code, Validate and Scan | 97 | Claude Code | 1 | 2,216 tok |
| trailofbits/slither-mcp MCP server for Slither static analysis of Solidity smart contracts | 96 | Claude Code | 1 | 4,009 tok |
| deepklarity/harness-kit A kit for building with AI agents and also the engineering patterns around it. | 96 | Claude Code, Codex, OpenCode | 5 | 7,548 tok |
| josipjelic/orchestrated-project-template A Claude Code project template with pre-configured specialist agents, living documentation | 96 | Claude Code | 6 | 3,153 tok |