caido-community/caido-plugin-skill
Plugin Claude Code
Expert Caido plugin development with comprehensive SDK documentation.
24,538 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.
caido-community/caido-plugin-skill
Plugin Claude Code
Expert Caido plugin development with comprehensive SDK documentation.
NikolasMarkou/epistemic-deconstructor
Skill Claude CodeCodex
Systematic reverse engineering of unknown systems using scientific methodology. Use when: (1) Black-box analysis, (2) Competitive intelligence, (3) Security analysis, (4) Forensics, (5) Building predictive models. Features 6-phase protocol with a mandatory abductive expansion sub-phase, Bayesian inference…
Skill Claude CodeCodex
Use when building or modifying authentication in a FastAPI app with crudauth (the crudauth PyPI package) — covers CRUDAuth, the AuthUserMixin / makeauthidentity user model, IdentityConfig, currentuser(...) gates, session + bearer transports, OAuth (Google/GitHub), email verification / password reset / change, custom…
Plugin Claude Code
Bundles 2 skills · 274 tokens together
CrowdSec skills: an operational skill (install/configure/operate/debug the engine, cscli, bouncers, WAF and bot detection across bare-metal/Docker/Kubernetes) and a Service API skill (drive the premium Console cloud API — blocklists, allowlists, firewall integrations, metrics, decisions).
trnt-ai/trent-openclaw-security-assessment
Skill Claude Code
Assess your Agent deployment against security risks using Trent.
Plugin Claude Code
Bundles 1 skill · 70 tokens together
A collection of tools and instructions for finding security weaknesses through SRC programs, public bug-bounty programs run by companies or platforms.
MCP server Claude CodeCodexCursor +2
Security testing MCP server for penetration testing, forensics, and vulnerability assessment. Runs locally from the operant-mcp npm package.
jguimera/SecurityCopilotMCPServer
Cursor rule Cursor
This project is focused on developting and testing components for Microsoft Security Copilot.
MCP server Claude CodeCodexCursor +2
MCP server "yaraflux-mcp-server" as configured in ThreatFlux/YaraFlux. Runs in Docker (yaraflux-mcp-server:latest).
Myr-Aya/GouvernAI-claude-code-plugin
Plugin Claude Code
Bundles 1 skill, 1 command, 1 hook · 117 tokens together
Achieve flow state safely with Claude Code. Auto-approves routine work, gates risky actions, hard-blocks dangerous patterns. Dual enforcement (skill + hooks), token cap for cost governance, full audit trail. Zero dependencies.
MCP server Claude CodeCodexCursor +2
Tamper-evident, SHA-256 hash-chained audit trail and observability for AI agents. Runs locally from the @agentkitai/agentlens-mcp npm package.
Skill Claude CodeCodex
Detect and reverse Java/Android obfuscation with jddlab - ProGuard/R8 renaming, string encryption, control-flow flattening and commercial protectors, using java-deobfuscator, simplify and dex2jar. Use when decompiled code is obfuscated or strings are encrypted.
afiqiqmal/claude-security-audit
Command Claude Code
Run a comprehensive white-box and gray-box security audit with OWASP Top 10:2025, CWE, NIST CSF 2.0, SANS Top 25, ASVS, PCI DSS, MITRE ATT&CK, SOC 2 and ISO 27001 mapping. Shows findings by default. Append --fix to include remediation code blocks.
Plugin Cursor
Bundles 1 skill · 120 tokens together
Skarn for Cursor: audit your AI coding sessions and assistant configs for leaked credentials and risky configuration, and run the pre-execution guard. Backed by the Skarn detection engine on your machine; the skarn binary is installed separately. It declares one local MCP server, named skarn, with four tools (scansess.
Plugin Claude Code
Blocks secrets and PII before they reach the Anthropic API.
martinholovsky/claude-project-scaffold
Command Claude Code
Review staged changes for bugs, security issues, and style.
Agent Claude Code
Eva Galperin, cybersecurity activist and Director of Cybersecurity at Electronic Frontier Foundation (EFF). Expert in digital rights, surveillance, stalkerware, and protecting vulnerable populations from cyber threats. Focuses on making cybersecurity accessible to journalists, activists, and marginalized communities…
Skill Claude CodeCodex
Confirm or refute a vulnerability candidate against a live target with a deterministic probe, respecting authorization and scope. Use when a SAST or LLM review flags a possible injection or SSRF, when triaging a finding before filing a bug or shipping a fix, or when a verification result turns out wrong.
Skill Codex
Use when reviewing source code for security issues and CodeScan MCP tools or CLI are available, especially for pre-merge diff review, repository intake, suspicious auth or input-handling code, or when a user explicitly asks for a CodeScan-based security scan.
kroegha/kali-docker-pentesting
Skill Claude CodeCodex
Comprehensive pentesting toolkit using Kali Linux Docker container. Provides direct access to 200+ security tools without MCP overhead. Use when conducting security assessments, penetration testing, vulnerability scanning, or security research. Works via direct docker exec commands for maximum efficiency.
tungnk123/mobile-best-practices
Command Claude Code
Audit mobile app for security vulnerabilities using the mobile-best-practices database.
rhysha/claude-security-research-skill
Skill Claude CodeCodex
Full-spectrum security research skill for web servers, REST APIs, web applications, and network/port enumeration. Triggers whenever the user wants to: find vulnerabilities, run a security assessment, scan a target, test an API for security issues, enumerate ports or services, check for OWASP Top 10 vulnerabilities…
Skill Claude CodeCodex
Securely deploy OpenClaw (autonomous AI agent) on a Hetzner VPS with full hardening — Tailscale VPN, firewall, non-root user, loopback-only gateway, Telegram integration, and end-to-end security verification. Use this skill whenever the user mentions OpenClaw, ClawdBot, setting up an AI agent on a VPS, deploying…
Correia-jpv/fucking-awesome-web-security
Skill Claude Code
Looks up curated web security learning resources (XSS, SQLi, CSRF, SSRF, OAuth/JWT, deserialization, SAML, recon, evasion, defensive tooling, CTF). Filters by topic, difficulty, language, and resource type. Returns top references with archive fallbacks. Defensive and educational use only.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: