Security

24,538 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

NikolasMarkou/epistemic-deconstructor

Skill Claude CodeCodex

Systematic reverse engineering of unknown systems using scientific methodology. Use when: (1) Black-box analysis, (2) Competitive intelligence, (3) Security analysis, (4) Forensics, (5) Building predictive models. Features 6-phase protocol with a mandatory abductive expansion sub-phase, Bayesian inference…

not rated 23 1mo ago A 82 tokens GPL-3.0

crudauth

651

benavlabs/crudauth

Skill Claude CodeCodex

Use when building or modifying authentication in a FastAPI app with crudauth (the crudauth PyPI package) — covers CRUDAuth, the AuthUserMixin / makeauthidentity user model, IdentityConfig, currentuser(...) gates, session + bearer transports, OAuth (Google/GitHub), email verification / password reset / change, custom…

not rated 23 2mo ago B 188 tokens original MIT

crowdsec

652

crowdsecurity/crowdsec-skill

Plugin Claude Code

Bundles 2 skills · 274 tokens together

CrowdSec skills: an operational skill (install/configure/operate/debug the engine, cscli, bouncers, WAF and bot detection across bare-metal/Docker/Kubernetes) and a Service API skill (drive the premium Console cloud API — blocklists, allowlists, firewall integrations, metrics, decisions).

not rated 23 changed 6d ago A tokens not measured original MIT

src-hunter

654

fb0sh/pentester

Plugin Claude Code

Bundles 1 skill · 70 tokens together

A collection of tools and instructions for finding security weaknesses through SRC programs, public bug-bounty programs run by companies or platforms.

not rated 23 1mo ago A tokens not measured original MIT

operant-mcp

655

operantlabs/operant-mcp

MCP server Claude CodeCodexCursor +2

Security testing MCP server for penetration testing, forensics, and vulnerability assessment. Runs locally from the operant-mcp npm package.

not rated 23 5mo ago A tokens not measured original MIT

yaraflux-mcp-server

657

ThreatFlux/YaraFlux

MCP server Claude CodeCodexCursor +2

MCP server "yaraflux-mcp-server" as configured in ThreatFlux/YaraFlux. Runs in Docker (yaraflux-mcp-server:latest).

not rated 23 9d ago A tokens not measured original MIT

gouvernai

658

Myr-Aya/GouvernAI-claude-code-plugin

Plugin Claude Code

Bundles 1 skill, 1 command, 1 hook · 117 tokens together

Achieve flow state safely with Claude Code. Auto-approves routine work, gates risky actions, hard-blocks dangerous patterns. Dual enforcement (skill + hooks), token cap for cost governance, full audit trail. Zero dependencies.

not rated 23 +1 2mo ago A tokens not measured original MIT

agentlens

659

agentkitai/agentlens

MCP server Claude CodeCodexCursor +2

Tamper-evident, SHA-256 hash-chained audit trail and observability for AI agents. Runs locally from the @agentkitai/agentlens-mcp npm package.

not rated 23 10d ago A tokens not measured original MIT

java-deobfuscation

660

Stanislav-Povolotsky/jddlab

Skill Claude CodeCodex

Detect and reverse Java/Android obfuscation with jddlab - ProGuard/R8 renaming, string encryption, control-flow flattening and commercial protectors, using java-deobfuscator, simplify and dex2jar. Use when decompiled code is obfuscated or strings are encrypted.

not rated 23 +1 today A 65 tokens

security-audit

661

afiqiqmal/claude-security-audit

Command Claude Code

Run a comprehensive white-box and gray-box security audit with OWASP Top 10:2025, CWE, NIST CSF 2.0, SANS Top 25, ASVS, PCI DSS, MITRE ATT&CK, SOC 2 and ISO 27001 mapping. Shows findings by default. Append --fix to include remediation code blocks.

not rated 23 +1 6mo ago B 73 tokens original MIT

skarn

662

skarn-security/cursor-plugin

Plugin Cursor

Bundles 1 skill · 120 tokens together

Skarn for Cursor: audit your AI coding sessions and assistant configs for leaked credentials and risky configuration, and run the pre-execution guard. Backed by the Skarn detection engine on your machine; the skarn binary is installed separately. It declares one local MCP server, named skarn, with four tools (scansess.

not rated 23 today A tokens not measured original MIT

eva-galperin

665

dtannen/icon-agents

Agent Claude Code

Eva Galperin, cybersecurity activist and Director of Cybersecurity at Electronic Frontier Foundation (EFF). Expert in digital rights, surveillance, stalkerware, and protecting vulnerable populations from cyber threats. Focuses on making cybersecurity accessible to journalists, activists, and marginalized communities…

not rated 22 1y ago A 63 tokens

dynamic-verification

666

ShieldNet-360/secure-vibe

Skill Claude CodeCodex

Confirm or refute a vulnerability candidate against a live target with a deterministic probe, respecting authorization and scope. Use when a SAST or LLM review flags a possible injection or SSRF, when triaging a finding before filing a bug or shipping a fix, or when a verification result turns out wrong.

not rated 22 27d ago A 61 tokens original MIT

codescan-review

667

HeJiguang/codescan

Skill Codex

Use when reviewing source code for security issues and CodeScan MCP tools or CLI are available, especially for pre-merge diff review, repository intake, suspicious auth or input-handling code, or when a user explicitly asks for a CodeScan-based security scan.

not rated 22 5mo ago A 55 tokens original MIT

kroegha/kali-docker-pentesting

Skill Claude CodeCodex

Comprehensive pentesting toolkit using Kali Linux Docker container. Provides direct access to 200+ security tools without MCP overhead. Use when conducting security assessments, penetration testing, vulnerability scanning, or security research. Works via direct docker exec commands for maximum efficiency.

not rated 22 1mo ago B 58 tokens

security-research

670

rhysha/claude-security-research-skill

Skill Claude CodeCodex

Full-spectrum security research skill for web servers, REST APIs, web applications, and network/port enumeration. Triggers whenever the user wants to: find vulnerabilities, run a security assessment, scan a target, test an API for security issues, enumerate ports or services, check for OWASP Top 10 vulnerabilities…

not rated 22 5mo ago A 153 tokens original MIT

openclaw-vps-setup

671

AlexAtmtit/custom-skills

Skill Claude CodeCodex

Securely deploy OpenClaw (autonomous AI agent) on a Hetzner VPS with full hardening — Tailscale VPN, firewall, non-root user, loopback-only gateway, Telegram integration, and end-to-end security verification. Use this skill whenever the user mentions OpenClaw, ClawdBot, setting up an AI agent on a VPS, deploying…

not rated 22 6mo ago A 171 tokens original MIT

awesome-web-security

672

Correia-jpv/fucking-awesome-web-security

Skill Claude Code

Looks up curated web security learning resources (XSS, SQLi, CSRF, SSRF, OAuth/JWT, deserialization, SAML, recon, evasion, defensive tooling, CTF). Filters by topic, difficulty, language, and resource type. Returns top references with archive fallbacks. Defensive and educational use only.

not rated 22 2d ago A 71 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: