agent-workflow
1153Skill Claude CodeCodex
Use when an agent must decide whether to proceed autonomously, ask for clarification, request approval, or select an appropriate verification scope for a coding or documentation task.
24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.
Skill Claude CodeCodex
Use when an agent must decide whether to proceed autonomously, ask for clarification, request approval, or select an appropriate verification scope for a coding or documentation task.
Plugin Claude Code
Auto-approve safe bash commands validated against safecmd's allowlist.
Plugin Claude Code
Bundles 1 skill, 1 MCP server · 175 tokens together
MCP server and CLI for Tailscale: inspect and manage tailnet devices, routes, users, keys, DNS, and ACL policy over stdio or streamable HTTP.
MCP server Claude CodeCodexCursor +2
MCP server for querying FedRAMP 20x requirements. Runs locally from the fedramp-20x-mcp Python package.
MCP server Claude CodeCodexCursor +2
Deterministic security layer your AI can't be. 441 rules, 37 tools, CLI + doctor + host audit. Runs locally from the guardvibe npm package.
MCP server Claude CodeCodexCursor +2
Security middleware for MCP servers protecting LLM agents from prompt injection, resource exhaustion, and PII leakage. Runs locally from the mcp-bastion-python Python package.
Skill Claude CodeCodex
CVE vulnerability lookup via NIST NVD, CISA KEV, EPSS scores, and MITRE ATT&CK. 7 tools for real-time cybersecurity intelligence.
MCP server Claude CodeCodexCursor +2
Argus — the QA layer for AI-assisted development. Claude-native (MCP) Chrome audits across 67 categories — errors, visual regressions, a11y, security, performance — no test files, secrets redacted by default (Aegis). Runs locally from the argusqa-os npm package.
darrenjrobinson/HIBP-MCP-Server
MCP server Claude CodeCodexCursor +2
A Model Context Protocol (MCP) server for the Have I Been Pwned (HIBP) API. Runs locally from the @darrenjrobinson/hibp-mcp npm package. Needs 2 environment variables to run.
imouiche/complete-mitre-attack-mcp-server
MCP server Claude CodeCodexCursor +2
MCP server providing 50+ tools for MITRE ATT&CK techniques, groups, and mitigations. Runs locally from the @imouiche/mitre-attack-mcp-server npm package.
Plugin Claude Code
Bundles 1 skill, 1 MCP server · 54 tokens together
A deterministic guardrail your coding agent runs on itself — structured findings on just the changed lines, before the code reaches disk. Zero LLM tokens, 0 false blocks.
MCP server Claude CodeCodexCursor +2
Context-aware secret scanner: lets an AI agent scan, verify, and rewrite secrets before committing. Runs locally from the @leakferret/mcp npm package.
RadOrigin-LLC/RAD-Claude-Skills
Plugin Claude Code
Bundles 1 skill · 172 tokens together
The specialist lanes and memory that the built-in /code-review doesn't have. Invokes the built-in engine for general bug-finding (quick/standard/deep map to its effort levels), then adds what it lacks: a mechanical hallucinated-imports validator (lockfile-verified across Python/JS/TS/Rust/Go, with a vendored denylist…
MCP server Claude CodeCodexCursor +2
Instant SEO, performance, and security audits for any URL — an MCP server for AI agents. Runs locally from the siteaudit-mcp Python package.
Skill Claude CodeCodex
Detects whether a purchased AI API key/endpoint (Claude/Anthropic, OpenAI, etc.) — often bought cheap from a reseller or marketplace like GamsGo — is actually a man-in-the-middle proxy that intercepts, rewrites or degrades traffic. Trigger when the user says things like "I bought a third-party API key", "is this…
Plugin Claude Code
Bundles 4 skills, 8 hooks · 226 tokens together
A plugin for coding agents. They ship secure code. Steers the write and can ask or deny before a file is saved.
pitimon/claude-cybersecurity-skill
Plugin Claude Code
Bundles 1 skill · 158 tokens together
Professional cybersecurity skill: 22 domains covering IR, DFIR, DevSecOps, SOC+SOAR, GitOps, Code Security, Container/Supply Chain, Threat Modeling, Compliance Frameworks, Cloud Security & CSPM, Zero Trust Architecture, AI/ML Security, API Security, Vulnerability Management, Threat Intelligence, Cross-Domain…
Plugin Claude Code
Bundles 1 skill, 2 hooks, 1 MCP server · 118 tokens together
SWAG reverse proxy configuration management via MCP. Create, edit, view, and manage nginx proxy configurations with auth integration.
kcmadden/claude-code-1password-skill
Skill Claude CodeCodex
Integrate 1Password secrets management into Claude Code workflows. Use when the user wants to: store API keys or credentials in 1Password, read secrets from 1Password into scripts or config, set up .env files using 1Password secret references, rotate or update credentials, manage developer secrets across projects, use…
2389-research/fresh-eyes-review
Plugin Claude Code
Bundles 1 skill · 83 tokens together
Mandatory final sanity check before commits/PRs - catches security vulnerabilities, logic errors, and bugs that slip through tests.
Skill Claude Code
Use when scoping allow/ask rules for a command family (kubectl, oc, terraform, aws, gcloud, docker, etc.) to one repository so routine invocations stop prompting only inside that repo. Triggers include "allow kubectl in this repo", "stop asking about X commands", "add longline rules for this project", "allowlist…
Cholulaa/claude-code-hardening-skill
Skill Claude Code
Complete security hardening of a Linux server based on CIS Benchmarks, NIST 800-123, and ANSSI BP-028. Smart service discovery to avoid disruption. 4 hardening levels (minimal/standard/enhanced/paranoid). Installs open-source security tools, hardens SSH/kernel/firewall/systemd/permissions, runs all scans, generates a…
Newmcpe/ida-reverse-engineering-skill
Skill Claude CodeCodex
Drive IDA Pro through the IDA Pro MCP like a senior reverse engineer: don't just narrate decompiler output, transform the database. Use this whenever the user is reverse engineering, analyzing malware, working a crackme or CTF, or doing binary/firmware analysis with IDA Pro over an MCP connection (mrexodia/ida-pro-mcp…
astrogilda/mcp-keyring-injector
Plugin Claude Code
Securely inject MCP API credentials from system keyring into Claude Code configuration at session start.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: