Security

29,964 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

adcs-persistence

241

blacklanternsecurity/red-run

Skill Claude CodeCodex

Establishes persistence and exploits weak certificate mapping in AD CS. Covers ESC9 (no security extension), ESC10 (weak certificate mapping), ESC12-15 (YubiHSM, issuance policy, altSecIdentities, application policies), Golden Certificate (forge with stolen CA key), certificate theft (DPAPI/CAPI/CNG), and account…

not rated 266 +3 5mo ago A 80 tokens GPL-3.0

vbs-scan-security

243

tanviet12/vbsec

Skill Claude CodeCodex

Use when scanning code for security vulnerabilities. Use when user says "scan security", "kiểm tra bảo mật", "security audit", "review security", or invokes /vbs-scan-security. For large scans (>20 main-language files OR >30 total OR >14 days) processes chunks sequentially. Outputs bilingual reports (vi/en).

not rated 265 3mo ago A 75 tokens original MIT

squirrelscan

245

squirrelscan/squirrelscan

Plugin Claude Code

Bundles 2 skills, 1 MCP server · 195 tokens together

Website QA tool built for coding agents (Claude Code, Cursor). 260+ rules across SEO, performance, security, accessibility & agent experience: audit from the CLI, fix findings in code, publish reports, and connect over MCP.

not rated 265 +1 changed yesterday A tokens not measured original MIT

install

246

lasso-security/claude-hooks

Command Claude Code

Install the prompt injection defender hooks into your Claude Code project.

not rated 265 +1 8mo ago A 0 tokens original MIT

cyberowlai

247

karimhabush/cyberowl

Skill Claude CodeCodex

Check if recent cybersecurity alerts from 10 international CERTs affect your current project. Use when the user asks about security vulnerabilities, CVEs, "is my project affected", "any new security alerts", "check for vulnerabilities", "cyberowlai", or "/cyberowlai". Also trigger when the user is working on…

not rated 263 today A 155 tokens original MIT

hermes-vault-access

248

asimons81/hermes-vault

Skill Claude CodeCodex

Use Hermes Vault as the canonical credential broker for Hermes and persistent sub-agents.

not rated 260 +1 10d ago A 22 tokens original MIT

mcp-defender-overview

249

MCP-Defender/MCP-Defender

Cursor rule Cursor

MCP Defender is a security application designed to monitor and protect Model Context Protocol (MCP) communications. It intercepts tool calls and responses, verifying them against security signatures to prevent potentially harmful operations. The following is a breakdown of the key components and files.

not rated 257 3mo ago A 993 tokens AGPL-3.0

cyber-neo CLAUDE.md

250

Hainrixz/cyber-neo

Instructions file

Instructions for Hainrixz/cyber-neo, covering cyber neo — contributor guidelines, what is cyber neo?, project structure, key design principles and contributing reference files.

not rated 257 +4 1mo ago A 876 tokens original MIT

security AGENTS.md

251

opensearch-project/security

Instructions file CodexOpenCode

AGENTS.md instructions for opensearch-project/security, covering agents.md — opensearch security plugin, keeping this file up to date, repository overview, repository structure and build.

not rated 252 changed today A 2,198 tokens original Apache-2.0

falcon-mcp

252

CrowdStrike/falcon-mcp

MCP server Claude CodeCodexCursor +2

CrowdStrike Falcon MCP Server. Runs locally from the falcon-mcp Python package. Needs 12 environment variables to run.

not rated 247 +6 3d ago A tokens not measured original MIT

git-proxy AGENTS.md

253

finos/git-proxy

Instructions file CodexOpenCode

AGENTS.md instructions for finos/git-proxy, covering agents.md — gitproxy, project overview, build & run, build and run unit tests.

not rated 246 +1 today A 1,936 tokens original Apache-2.0

SCStelz/security-investigator

Instructions file GitHub Copilot

Copilot instructions for SCStelz/security-investigator, covering github copilot - security investigation integration, 📑 table of contents, ⚠️ critical workflow rules - read first ⚠️, 🔧 environment configuration and prerequisites.

not rated 244 +1 today A 22,159 tokens original MIT

mcp-server

255

bitwarden/mcp-server

Settings file Claude Code

MCP server for interaction with Bitwarden.

not rated 246 +3 15d ago A tokens not measured GPL-3.0

svsm AGENTS.md

257

coconut-svsm/svsm

Instructions file CodexOpenCode

AGENTS.md instructions for coconut-svsm/svsm, covering directory structure, building and testing, build recipes, igvm and formal verification with verus.

not rated 239 3d ago A 4,005 tokens original MIT

maintenance

258

erikdarlingdata/PerformanceStudio

Skill Claude CodeCodex

Quarterly maintenance pass (every 1-3 months) — dependency/security audit, build health, and repo hygiene for PerformanceMonitor and PerformanceStudio.

not rated 236 +1 today A 31 tokens original MIT

ai-agent-security

259

ProgrammerAnthony/Expert-Coding-Harness

Skill Claude CodeCodexCursor

A security guide for AI agents—software that follows instructions and can use tools or data. It covers threats such as prompt injection, data leaks, unsafe code execution, unauthorized access, and compliance issues.

not rated 236 +1 3mo ago A 39 tokens original MIT

onionclaw

260

christinminor459/OnionClaw

Skill Claude CodeCodex

Search the Tor dark web, fetch .onion hidden service pages, rotate Tor identity, and run structured OSINT investigations. Use when user asks to search dark web, investigate .onion sites, find if data appeared on dark web, conduct Tor-based OSINT, look up dark web leaks, fetch any .onion URL, check for leaked…

not rated 236 2d ago B 82 tokens

security-build

261

cordwainersmith/Claudoscope

Agent

Security-sensitive implementation after approval - authentication and authorization, secrets handling, cryptography usage, input validation, hardening, dependency remediation. Give it only an approved, stable contract to execute; all pre-approval analysis belongs to the security-review role instead.

not rated 235 +1 9d ago A 53 tokens original MIT

SecSkills CLAUDE.md

262

Arenbai/SecSkills

Instructions file

A security testing guide for SecSkills, a library of practical penetration-testing techniques and reference material.

not rated 234 +3 3mo ago A 1,616 tokens original MIT

pytm

263

rohunj/claude-build-workflow

Skill Claude CodeCodex

Python-based threat modeling using pytm library for programmatic STRIDE analysis, data flow diagram generation, and automated security threat identification. Use when: (1) Creating threat models programmatically using Python code, (2) Generating data flow diagrams (DFDs) with automatic STRIDE threat identification…

not rated 231 7mo ago A 125 tokens

Hoylon/peerbridge-mcp

Instructions file CodexOpenCode

AGENTS.md instructions for Hoylon/peerbridge-mcp, a project described as: Local-first, auditable multi-agent control room for coding, review, evidence, and private remote work.

not rated 238 +68 2d ago A 200 tokens original Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: