Security

29,964 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

berabuddies/Semia

Skill Claude CodeCodex

Download YouTube videos in various formats and qualities. Use when you need to save videos for offline viewing, extract audio, download playlists, or get specific video formats.

not rated 595 3d ago B 38 tokens original Apache-2.0

emersonfelipesp/netbox-proxbox

Instructions file

Claude Code instructions for emersonfelipesp/netbox-proxbox, covering netbox-proxbox codebase guide, repository destination policy (hard rule), pre-commit checklist, framework stack preference and security and permissions.

not rated 593 +1 changed today A 30,475 tokens original Apache-2.0

chainloop-dev/chainloop

Skill Claude CodeCodex

Reviews vulnerability policy violations for the chainloop project recorded in Chainloop and performs fixes in Dockerfiles or go.mod. Use when asked to fix vulnerabilities, review CVEs, or remediate security issues in chainloop.

not rated 583 3d ago A 48 tokens original Apache-2.0

js-reverse-automation

148

Fausto-404/js-reverse-automation--skill

Skill Claude CodeCodex

A workflow for examining JavaScript in a real browser to find where login data, API requests, form fields, or responses are encrypted or signed. It then produces code and connection documentation for using that logic elsewhere.

not rated 579 +5 1mo ago A 48 tokens original Apache-2.0

elastic-elasticsearch

149

elastic/agent-skills

Plugin Claude Code ✓ vendor

Bundles 1 skill · 75 tokens together

Elasticsearch skills - ES|QL queries, data ingestion, security (authn, authz, audit), and troubleshooting.

not rated 568 +5 changed today A tokens not measured original Apache-2.0

cryptography

151

yhy0/CHYing-agent

Skill Claude CodeCodex

Use when facing cryptography challenges involving cipher analysis, key recovery, mathematical attacks, or protocol weaknesses.

not rated 554 +27 4mo ago A 22 tokens original MIT

security-audit

152

TheDecipherist/claude-code-mastery

Skill Claude CodeCodex

Audit code and dependencies for security vulnerabilities. Use when reviewing PRs, checking dependencies, preparing for deployment, or when user mentions security, vulnerabilities, or audit.

not rated 545 4mo ago A 36 tokens original MIT

hol-guard

153

hashgraph-online/hol-guard

Skill Claude CodeCodex

Run HOL Guard scanner and guard operations via uv run hol-guard. Use when the user asks to scan plugins/MCP/skills for security, quality, or ecosystem compliance, or when they ask to run guard detect/install/protect workflows for local AI harnesses.

not rated 551 +30 today A 58 tokens original Apache-2.0

mcp

154

decionis/agent-safe-pipeline

MCP server Claude CodeCodexCursor +2

Authorize consequential AI agent actions before execution. Runs locally from the @decionis/mcp npm package. Needs 1 environment variable to run.

not rated 533 +3 today A tokens not measured original Apache-2.0

google/mcp-security

Skill Claude CodeCodex ✓ vendor

Helps the user configure the Google SecOps Remote MCP Server for Antigravity. Use this when the user asks to "set up" or "configure" the security tools for Antigravity.

not rated 522 +1 yesterday A 48 tokens original Apache-2.0

reviewer

157

duckbugio/flock

Agent

Read-only adversarial reviewer. Pre-PR it returns a verdict for the arbiter; on an open PR it posts true line-anchored INLINE comments via the git-host API, written in the PR's own language. Scores risk and checks cross-service compatibility. Never edits code.

not rated 505 +1 4d ago A 60 tokens original MIT

slowmist/slowmist-agent-security

Skill Claude CodeCodex

Comprehensive security review framework for AI agents. Covers skill/MCP installation, GitHub repos, URLs/documents, on-chain addresses, products/services, and social shares. Built from real-world attack patterns and incident response experience.

not rated 504 4mo ago A 50 tokens original MIT

solana-foundation/solana-com

Skill Claude CodeCodex

Discover, verify, security-screen, and maintain Solana wallet products using the canonical local registry in packages/ecosystem-data and current web research. Use when asked to refresh wallet data, find new Solana wallets, add or remove wallets, check wallets for scam or security concerns, audit wallet features or…

not rated 502 +1 today A 96 tokens GPL-3.0

bug-hunter

160

codexstar69/bug-hunter

Skill Claude CodeCodex

Precision-first adversarial bug hunting for runtime, logic, data, concurrency, and security defects. Uses deterministic risk triage, evidence-bounded retrieval, Hunter/Skeptic/Referee review, optional hybrid verification, and explicit immutable Fixer scope. Scan-only and single-pass by default; complete-coverage…

not rated 502 +4 18d ago A 105 tokens original MIT

turnstile-testing

161

jumodada/Drissionpage-MCP-Server

Skill Claude CodeCodex

Use when testing an authorized Cloudflare Turnstile integration or operating an authorized production challenge with drissionpage-mcp. Covers official visible, invisible, pass, fail, and forced-interactive test keys; fresh iframe geometry; bounded coordinate interaction; refresh recovery; parent-page postconditions…

not rated 489 4d ago A 69 tokens

MHaggis/Security-Detections-MCP

Skill Claude CodeCodex

Optimize detection queries for performance across Splunk (SPL), Microsoft Sentinel (KQL), and Elastic Security (EQL/ES|QL). Covers search pipeline internals, common anti-patterns, and optimization techniques for detection rules on each platform.

not rated 483 +3 2mo ago A 55 tokens

cursorrules

163

OWASP/DockSec

Cursor rule Cursor

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

not rated 477 +1 15d ago A 112 tokens original MIT

evm-bytecode-analysis

164

cdump/evmole

Skill Claude CodeCodex

Analyze supplied deployed EVM runtime bytecode with EVMole or guide a separate application in integrating a published EVMole Rust, Go, Python, or JavaScript binding. Use for unverified-contract inspection, ABI reconstruction from runtime code, selector discovery, storage-access analysis, EVM control-flow inspection…

not rated 462 +1 20d ago A 135 tokens original MIT

agentguard CLAUDE.md

165

GoPlusSecurity/agentguard

Instructions file

Claude Code instructions for GoPlusSecurity/agentguard, covering goplus agentguard, skill, project structure and setup for trust & action cli.

not rated 459 today A 319 tokens original MIT

SHAdd0WTAka/Zen-Ai-Pentest

Agent

Expert FedRAMP and NIST Risk Management Framework compliance engineer specializing in both FedRAMP authorization pathways — the traditional Rev5 path (NIST 800-53 Rev 5 control implementation, System Security Plans, 3PAO assessment, agency authorization) and the modernized FedRAMP 20x path (Key Security Indicators…

not rated 449 +4 yesterday A 130 tokens original MIT

deep-security-scan

167

CoWork-OS/CoWork-OS

Skill Claude CodeCodex

Use when the user asks for a deep, exhaustive, multi-pass, or variance-reducing repository-wide Codex Security scan. Run repeated independent repository-wide discovery passes with worker-specific threat models, semantically merge candidates, synthesize one canonical validation threat model, then run validation…

not rated 447 +4 today A 97 tokens original MIT

sponsio

168

SponsioLabs/Sponsio

Skill Claude CodeCodex

Install, observe, tune, and enforce Sponsio: a runtime contract layer for LLM agents that blocks unsafe tool calls and scores output quality against declared rules. Use when the user wants to set up / add / install Sponsio, add guardrails or runtime safety to an LLM agent, generate or refine a sponsio.yaml, audit tool…

not rated 438 today A 0 tokens original Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: