π Lagune is your security copilot as you build, your Blue Team when you audit, whether you're a developer or not (no API key needed).
Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows
Security layer for AI coding agents. Works with Claude Code, Cursor, Windsurf, Gemini CLI, OpenCode, Pi Agent and more.
Self-hosted runtime control plane for AI agents. Observe or HITL approve or Block rogue tool calls before it executes: secret leaks, prompt injection, supply chain etc in a local dashboard. Agent agnostic (Claude, codex, langchain etc.)
Catch dangerous AI agent skills before they catch you. Zero-dependency security scanner for Agent Skills, SKILL.md and MCP configs.
MCP server that enables AI agents to perform comprehensive web audits using Google Lighthouse with 13+ tools for performance, accessibility, SEO, and security analysis.
A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24 core vulnerability classes, plus enterprise identity + infrastructure attack matrices.
Agent Beacon is the world's first open-source telemetry layer for AI agents wherever they run: locally, in CI, in the browser, or in the cloud.
The community-driven Claude Code plugin marketplace for MSPs β 70+ plugins across PSA, RMM, security, documentation, and accounting, plus cross-vendor industry workflow packs (ops, security, finance, compliance, sales, DevOps, cloud infra) that compose whatever tools you have connected.
Apple's official Agent Skills exported from Xcode 27 β SwiftUI, UIKit modernization, Swift Testing, C bounds-safety, and security hardening for AI coding agents.
Secure multi-platform AI skill installer β scan before you install. 49 agents, 12 plugins, 41 expert skills.
Security-audited skills for Claude, Codex & Claude Code. One-click install, quality verified.
Cross-Code Organizer (formerly Claude Code Organizer): cross-harness config dashboard for Claude Code, Codex CLI, MCP servers, skills, memories, agents, sessions, security scanning, context budget, and backups.
Wassette: A security-oriented runtime that runs WebAssembly Components via MCP
AI agent security scanner. Detect vulnerabilities in agent configurations, MCP servers, and tool permissions. Available as CLI, GitHub Action, ECC plugin, and GitHub App integration. π‘οΈ
MCP server for VirusTotal API β analyze URLs, files, IPs, and domains with comprehensive security reports, relationship analysis, and pagination support.
Customer-run client for Secure MCP Tunnel: connect private or localhost MCP servers to ChatGPT, Codex, the Responses API, and AgentKit without exposing them to the public internet.
Agent Verifier is a coding agent skill that verifies code against organizational policies, code quality patterns, security requirements, and framework best practices β before code ships. Works with Claude Code, Cursor, Windsurf, and 30+ agents.
A local MCP runtime that attacks what you own and only reports what it proved. 17 CVEs across 9 projects came out of this repo. Install: npx -y hacker-bob@latest install /path/to/project, then run /bob-evaluate target.com
The secure, validated skill registry for professional AI coding agents. Extend Antigravity, Claude Code, Cursor, Copilot and more with absolute confidence.
A curated corpus of incidents, attack vectors, failure modes, and defensive tools for autonomous AI agents.
Multi-registry skill discovery and installation for AI coding agents β search 9 sources, score, paginate, and install agent skills with security labels
Skills for AI coding agents β Laravel, PHP, React, TypeScript, testing, security, and code quality.
A simple, secure MCP-to-OpenAPI proxy server