Security

24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

ivuorinen-skills

1489

ivuorinen/skills

Plugin Claude Code

Bundles 7 skills, 50 commands, 2 agents, 3 hooks, 1 MCP server · 650 tokens together

Nitpicker — hostile audit toolkit: /nitpicker dispatches specialist audit commands (adversarial review, security, tests, docs, types, architecture, perf, reliability, caching, concurrency, error handling, leaks, deps, licensing, CI, commits, migrations, observability, API contracts, a11y, i18n, privacy, confi.

not rated 3 changed 10d ago A tokens not measured

skill

1490

toni7891/DeployGuard

Skill Claude CodeCodex

Validates Kubernetes manifests and Terraform configs against the DeployGuard policy ruleset. Acts as a senior reviewer: every violation explains why it matters and what to fix, not just what's wrong.

not rated 3 2mo ago A 0 tokens

tutor-buddy

1491

acm-rgb/tutor-buddy

Skill Claude CodeCodex

A pragmatic workflow taking a software project from idea to a secured, GitHub-ready repository, for beginners and vibecoders who want to ship without the usual mistakes. Runs five phases - ideate (have an idea, or get one suggested from the user's profile and current trends), plan (structure, file names, boilerplate…

not rated 3 2mo ago A 222 tokens original MIT

webcheck

1492

yifanyifan897645/webcheck-mcp

MCP server Claude CodeCodexCursor +2

Website health analysis: SEO, accessibility, performance, security, and broken links. Runs locally from the webcheck-mcp npm package.

not rated 3 5mo ago A tokens not measured original MIT

deep-security-audit

1493

ravindrakele/claude-skills

Plugin Claude Code

Bundles 1 skill · 174 tokens together

Multi-agent security audit that reads and understands code, adversarially verifies every finding, and scores honest CVSS 3.1. Read-only by default.

not rated 3 1mo ago A tokens not measured original MIT

stealth-factory/skills

Skill Claude CodeCodex

A free DIY reimplementation of Vercel's $150/mo Advanced Deployment Protection add-on — all three features (Password Protection, private/prod deployments, Deployment Protection Exceptions) plus named automation bypass tokens — a middleware gate for ANY framework on Vercel (Next.js proxy, or…

not rated 3 17d ago A 225 tokens original MIT

compliance-review

1496

leodisa/compliance-review-skill

Plugin Claude Code

Bundles 1 skill · 238 tokens together

Build or review code for compliance with the EU AI Act, GDPR, the NIS2 Directive (EU 2022/2555), and secure-development (SSDLC) best practice. Three modes: repo gap analysis, compliance-by-design while coding, and data protection — the skill asks whether to pseudonymise (deterministic tokens, joins preserved) or…

not rated 3 1mo ago A tokens not measured original MIT

sync-claude-accounts

1497

soulmachine/skills

Skill Claude CodeCodex

Distribute full OAuth Claude Code credentials (claude-accounts.json) from a single designated refresh-authority Mac to the rest of a fleet, and operate the scheduled automation that does it — the com.claude.fleet-refresh and com.claude.fleet-health LaunchAgents, their logs, and the proactive refresh that keeps…

not rated 3 2d ago A 195 tokens original MIT

anti-bot-scraping

1498

thirdwatch-dev/scraping-skills

Skill Claude CodeCodex

Use when a site blocks your scraper and you need to get past it — 403 Forbidden on the first request, JS challenges, CAPTCHAs, Cloudflare Turnstile, DataDome, Akamai, PerimeterX, "Just a moment...", access denied, IP bans, or an empty/skeleton page where data should be. Covers diagnosing transient failures vs real…

not rated 3 2mo ago A 216 tokens original MIT

cybersorted

1499

cyber-sorted/skills-pro

Plugin Claude Code

Bundles 1 skill · 417 tokens together

Full security and enterprise architecture advisory for CISOs, CTOs, CPOs, Security Architects, Security Engineers, Enterprise Architects, Secure Developers, and Penetration Testers.

not rated 3 6mo ago A tokens not measured

clawheart-security

1500

tjsdyy/clawheartv2

Skill Claude CodeCodex

A skill for using the local ClawHeart command-line tool to audit AI security, evaluate skills, and manage agent credentials.

not rated 4 2mo ago B 58 tokens

contract-auditor

1501

mishoko/solidity-auditor-pulse

Skill Claude CodeCodex

Use when auditing Solidity contracts for security vulnerabilities. Trigger on "audit", "check this contract", "review for security", or "/contract-auditor".

not rated 3 5mo ago A 36 tokens original MIT

secret-sharing

1502

benderterminal/zkettle

Skill Claude Code

Share secrets securely using zKettle — a zero-knowledge, self-destructing secret sharing tool. Create, read, revoke, generate, and audit secrets via MCP tools. Secrets are encrypted client-side with AES-256-GCM; the server never sees plaintext. Use for credential sharing, API key rotation, temporary access grants, and…

not rated 3 6mo ago A 76 tokens AGPL-3.0

skill-audit

1503

ondrej-merkun/skill-audit

Skill Claude Code

Scan installed agent skills, plugins, and cross-agent instruction files for prompt injection, exfiltration, malicious code, and dependency risk. Use when the user asks to audit, check, review, inventory, or verify skills for Claude Code, Codex, Cursor, Copilot, Gemini, or AGENTS.md-style project instructions.

not rated 3 1mo ago A 70 tokens

odoo-code-review

1504

Immoderate-humulin783/odoo-skills

Skill Claude CodeCodex

Review Odoo addon code for correctness, security, performance, migrations, tests, and official Odoo coding guidelines. Use when reviewing Odoo modules, diffs, pull requests, or changed files involving models, fields, XML views, data, controllers, reports, OWL/assets, manifests, access rules, record rules, or OCA…

not rated 3 today A 75 tokens

harden

1505

Calvin-LLC/agentic-hardening-skill

Skill Claude CodeCodex

Evidence-driven codebase hardening. Audits security (OWASP Top 10:2025), supply chain (inventory vs SBOM vs SLSA v1.2), reliability (OTel + operational limits), tests (sandboxed tiers), and accessibility (WCAG 2.2 AA). Every finding is quoted, matrix-scored, and cited. Does not fix. Reports with file:line and a…

not rated 3 16d ago A 117 tokens original MIT

claudeconf

1508

nikolaypaskov/claudeconf-plugin

Plugin Claude Code

Bundles 1 skill, 1 agent · 176 tokens together

Research-driven, technology-agnostic harness generator for Claude Code: pinned, standard-tool quality + security pipelines (git hooks, CI, e2e, gates, supply-chain admission, agent-hardening) plus a read-only harness-doctor agent.

not rated 3 24d ago A tokens not measured original MIT

context-guard

1509

ictechgy/context-guard

Plugin Claude Code

Bundles 3 skills · 126 tokens together

ContextGuard keeps AI coding-agent context lean, safe, and auditable with project-local setup, scans, large-read guards, output trimming/sanitizing, queryable log artifacts, budgeted context packs, tool/MCP schema pruning, statusline visibility, and usage audits.

not rated 3 changed 8d ago A tokens not measured original Apache-2.0 archived

gaia-marketplace

1511

metraton/gaia

Plugin Claude Code

Lists 1 plugin

Security-first multi-agent orchestration for Claude Code. Distributes the Gaia plugin: specialized agents across the development lifecycle with codebase-aware context injection and risk-classified command gating.

not rated 3 changed today A tokens not measured original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: