Security

24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

agent-workflow

1153

galact-byte/galact-Skills

Skill Claude CodeCodex

Use when an agent must decide whether to proceed autonomously, ask for clarification, request approval, or select an appropriate verification scope for a coding or documentation task.

not rated 6 +1 changed 3d ago A 35 tokens

tailscale

1155

dinglebear-ai/rtailscale

Plugin Claude Code

Bundles 1 skill, 1 MCP server · 175 tokens together

MCP server and CLI for Tailscale: inspect and manage tailnet devices, routes, users, keys, DNS, and ACL policy over stdio or streamable HTTP.

not rated 5 18d ago A tokens not measured AGPL-3.0

FedRAMP20xMCP

1156

KevinRabun/FedRAMP20xMCP

MCP server Claude CodeCodexCursor +2

MCP server for querying FedRAMP 20x requirements. Runs locally from the fedramp-20x-mcp Python package.

not rated 5 6mo ago A tokens not measured

guardvibe

1157

goklab/guardvibe

MCP server Claude CodeCodexCursor +2

Deterministic security layer your AI can't be. 441 rules, 37 tools, CLI + doctor + host audit. Runs locally from the guardvibe npm package.

not rated 5 29d ago A tokens not measured original Apache-2.0

mcp-bastion

1158

vaquarkhan/MCP-Bastion

MCP server Claude CodeCodexCursor +2

Security middleware for MCP servers protecting LLM agents from prompt injection, resource exhaustion, and PII leakage. Runs locally from the mcp-bastion-python Python package.

not rated 5 today A tokens not measured

gov-cybersecurity

1159

martc03/gov-mcp-servers

Skill Claude CodeCodex

CVE vulnerability lookup via NIST NVD, CISA KEV, EPSS scores, and MITRE ATT&CK. 7 tools for real-time cybersecurity intelligence.

not rated 5 5mo ago A 41 tokens original MIT

argus

1160

ironclawdevs27/Argus

MCP server Claude CodeCodexCursor +2

Argus — the QA layer for AI-assisted development. Claude-native (MCP) Chrome audits across 67 categories — errors, visual regressions, a11y, security, performance — no test files, secrets redacted by default (Aegis). Runs locally from the argusqa-os npm package.

not rated 5 1mo ago A tokens not measured original MIT

hibp

1161

darrenjrobinson/HIBP-MCP-Server

MCP server Claude CodeCodexCursor +2

A Model Context Protocol (MCP) server for the Have I Been Pwned (HIBP) API. Runs locally from the @darrenjrobinson/hibp-mcp npm package. Needs 2 environment variables to run.

not rated 5 5d ago A tokens not measured original MIT

imouiche/complete-mitre-attack-mcp-server

MCP server Claude CodeCodexCursor +2

MCP server providing 50+ tools for MITRE ATT&CK techniques, groups, and mitigations. Runs locally from the @imouiche/mitre-attack-mcp-server npm package.

not rated 5 8mo ago A tokens not measured

diffgate

1163

srbsa/diffgate

Plugin Claude Code

Bundles 1 skill, 1 MCP server · 54 tokens together

A deterministic guardrail your coding agent runs on itself — structured findings on just the changed lines, before the code reaches disk. Zero LLM tokens, 0 false blocks.

not rated 5 1mo ago A tokens not measured original Apache-2.0

leakferret

1164

leakferrethq/leakferret

MCP server Claude CodeCodexCursor +2

Context-aware secret scanner: lets an AI agent scan, verify, and rewrite secrets before committing. Runs locally from the @leakferret/mcp npm package.

not rated 5 12d ago A tokens not measured original MIT

rad-code-review

1165

RadOrigin-LLC/RAD-Claude-Skills

Plugin Claude Code

Bundles 1 skill · 172 tokens together

The specialist lanes and memory that the built-in /code-review doesn't have. Invokes the built-in engine for general bug-finding (quick/standard/deep map to its effort levels), then adds what it lacks: a mechanical hallucinated-imports validator (lockfile-verified across Python/JS/TS/Rust/Go, with a vendored denylist…

not rated 5 26d ago A tokens not measured original Apache-2.0

siteaudit-mcp

1166

vdalhambra/siteaudit-mcp

MCP server Claude CodeCodexCursor +2

Instant SEO, performance, and security audits for any URL — an MCP server for AI agents. Runs locally from the siteaudit-mcp Python package.

not rated 5 4mo ago A tokens not measured original MIT

api-scam-hunter

1167

astrozeta/api-scam-hunter

Skill Claude CodeCodex

Detects whether a purchased AI API key/endpoint (Claude/Anthropic, OpenAI, etc.) — often bought cheap from a reseller or marketplace like GamsGo — is actually a man-in-the-middle proxy that intercepts, rewrites or degrades traffic. Trigger when the user says things like "I bought a third-party API key", "is this…

not rated 5 2mo ago A 167 tokens original MIT

cybersecurity-pro

1169

pitimon/claude-cybersecurity-skill

Plugin Claude Code

Bundles 1 skill · 158 tokens together

Professional cybersecurity skill: 22 domains covering IR, DFIR, DevSecOps, SOC+SOAR, GitOps, Code Security, Container/Supply Chain, Threat Modeling, Compliance Frameworks, Cloud Security & CSPM, Zero Trust Architecture, AI/ML Security, API Security, Vulnerability Management, Threat Intelligence, Cross-Domain…

not rated 5 4mo ago A tokens not measured

swag-mcp

1170

jmagar/swag-mcp

Plugin Claude Code

Bundles 1 skill, 2 hooks, 1 MCP server · 118 tokens together

SWAG reverse proxy configuration management via MCP. Create, edit, view, and manage nginx proxy configurations with auth integration.

not rated 5 5d ago A tokens not measured original MIT

1password

1171

kcmadden/claude-code-1password-skill

Skill Claude CodeCodex

Integrate 1Password secrets management into Claude Code workflows. Use when the user wants to: store API keys or credentials in 1Password, read secrets from 1Password into scripts or config, set up .env files using 1Password secret references, rotate or update credentials, manage developer secrets across projects, use…

not rated 5 1mo ago A 155 tokens original MIT

fresh-eyes-review

1172

2389-research/fresh-eyes-review

Plugin Claude Code

Bundles 1 skill · 83 tokens together

Mandatory final sanity check before commits/PRs - catches security vulnerabilities, logic errors, and bugs that slip through tests.

not rated 5 2mo ago A tokens not measured original MIT

devinbarry/longline

Skill Claude Code

Use when scoping allow/ask rules for a command family (kubectl, oc, terraform, aws, gcloud, docker, etc.) to one repository so routine invocations stop prompting only inside that repo. Triggers include "allow kubectl in this repo", "stop asking about X commands", "add longline rules for this project", "allowlist…

not rated 5 1mo ago B 102 tokens original MIT

hardening

1174

Cholulaa/claude-code-hardening-skill

Skill Claude Code

Complete security hardening of a Linux server based on CIS Benchmarks, NIST 800-123, and ANSSI BP-028. Smart service discovery to avoid disruption. 4 hardening levels (minimal/standard/enhanced/paranoid). Installs open-source security tools, hardens SSH/kernel/firewall/systemd/permissions, runs all scans, generates a…

not rated 5 5mo ago B 80 tokens original MIT

Newmcpe/ida-reverse-engineering-skill

Skill Claude CodeCodex

Drive IDA Pro through the IDA Pro MCP like a senior reverse engineer: don't just narrate decompiler output, transform the database. Use this whenever the user is reverse engineering, analyzing malware, working a crackme or CTF, or doing binary/firmware analysis with IDA Pro over an MCP connection (mrexodia/ida-pro-mcp…

not rated 5 3mo ago A 243 tokens WTFPL

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: