29,002 mods in this category, of every kind an
agent can take. Each one carries what it costs per session, what the
scan found, and whether it is the original.
API specification linting and security validation using Stoplight's Spectral with support for OpenAPI, AsyncAPI, and Arazzo specifications. Validates API definitions against security best practices, OWASP API Security Top 10, and custom organizational standards. Use when: (1) Validating OpenAPI/AsyncAPI specifications…
A set of instructions for the GeniusHu-tgty/Open-tgtylab project. It covers reverse engineering, web security challenges, long-running Claude Code or Codex sessions, and Android application knowledge.
AGENTS.md instructions for sjkim1127/Reversecore_MCP, covering agent customizations for reversecoremcp, project overview, quick commands, development setup and create virtual environment.
Claude Code instructions for cynative/cynative, a project described as: Open-source framework for security agents with live, read-only access to your infrastructure. Audit AWS, GCP, Azure, Kubernetes, GitHub and GitLab as one system for privilege escalation, public exposure, leaked credentials and more, with agents…
Catálogo de 14 patterns obrigatórios para app que integra LLM (Claude/GPT/Gemini) em produção. Use antes de shippar feature LLM pra produção, quando custo da API explode sem explicação, quando user reclama de "respostas demoram demais" ou "trava no meio", ao adicionar tool calling, agentes ou chat persistente. Cobre…
Instructions for lennney/mcp-slim-guard, covering slim guard agent contract, scope and source of truth, repository map, product invariants and code style.
Bypass bot detection using rebrowser-playwright (Node.js) or undetected-chromedriver (Python). Passes bot.sannysoft.com fingerprint checks and automates Google without triggering CAPTCHA. Authorized-use only — respect each site's ToS.
★not rated 192 10d agoA
tokens not measured
originalMIT
Use this agent when you need expert review of Rust code, particularly web services, HTTP implementations, or security-critical systems. Trigger this agent after completing logical code units like implementing HTTP handlers, API endpoints, authentication systems, middleware, database operations, or any Rust web…
Use this agent to perform a thorough two-stage review of a pull request or set of changed files — first verifying spec compliance, then evaluating code quality, security, test coverage, and performance. Prefer this over the inline /review command when the diff spans more than 5 files or more than 300 lines.
Claude Code instructions for databricks-industry-solutions/security-analysis-tool, covering claude.md, project overview, development commands, sdk development and sdk distribution.
The IDOR Agent (Insecure Direct Object Reference) is a specialist agent in BugTraceAI that detects and exploits IDOR vulnerabilities. It uses a WET→DRY two-phase pipeline with LLM-powered deduplication and optional deep exploitation analysis.
★not rated 184▲
+1 3d agoA0 tokens
originalApache-2.0
Use when managing Secure Enclave signing keys or encrypted secrets. Use for creating/listing/deleting P-256 keys, signing digests, running commands with secrets injected via vault exec, storing/retrieving encrypted secrets. Also use when an agent needs API keys, private keys, or credentials injected into a subprocess…
A set of project instructions for deploying and explaining a multi-layer VPN service based on VLESS Reality, Xray-core, and a management panel. It includes setup requirements, client choices, and guidance for communicating in Russian.
Enhances Claude Code from producing raw code into delivering production-ready systems. 14 specialized agents handle architecture, tested code, security audit, CI/CD, and documentation. Use for building apps/websites/services, adding features, hardening, deployment, testing, review, or architecture design.
Guidance for governing the identities of AI agents and non-human identities (NHIs) — Microsoft 365 Copilot Studio agents, Microsoft Foundry agents, custom AI agents, and traditional service principals/managed identities — through their full lifecycle. Covers ownership and tagging, scoped permissions and consent…
Agent work contracts and verifiable execution protocol — Ed25519-signed, offline-verifiable proof-carrying work for AI agents. Runs locally from the openworkproof Python package.
★not rated 170▲
+60 7d agoA
tokens not measured
originalApache-2.0
Instructions for huifer/skill-security-scan, covering claude.md, project overview, development commands, installation & setup and install dependencies.
Vet untrusted repos, skills, MCP servers, and packages with repo-forensics before installing them.
★not rated 169▲
+1 9d agoA20 tokens
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: