Containment for AI agents - user isolation, sandboxed execution, network controls, backup/rollback. TLA+ verified.
All-in-One Desktop Agent Skills Utility. Welcome to the Skill Zoo, where all your skills live!
Catch dangerous AI agent skills before they catch you. Zero-dependency security scanner for Agent Skills, SKILL.md and MCP configs.
✨ A customizable copilot-instructions.md ruleset & prompts to guide GitHub Copilot toward secure coding defaults in Java, Node.js, C# and Python. Blocks risky patterns, teaches safe habits.
Agent Skill for PHP security audits - OWASP patterns, vulnerability detection | Claude Code compatible
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.
AI-powered bug bounty hunting toolkit that works with or without subscription.
A Model Context Protocol (MCP) server that enables LLMs to run ANY code safely in isolated Docker containers.
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
Active Directory pentest methodology for Claude Code: skills, agents and slash commands for internal AD red-team work (Kerberoasting, ADCS ESC1-17, DCSync, ACL abuse, NTLM relay, delegation), with per-technique OPSEC/telemetry notes. Drives netexec, impacket, certipy, bloodyAD, BloodHound CE.
AI agent security scanner. Detect vulnerabilities in agent configurations, MCP servers, and tool permissions. Available as CLI, GitHub Action, ECC plugin, and GitHub App integration. 🛡️
Multi-language agent runtime and library for execution scope management, lifecycle events, and middleware on tool and LLM calls.
OpenGhost is an Agent Skill for authorized web app penetration testing: Enter lab url paste credential your agent and wait everything does with help of openghost
MCP server for AI agents that need a phone number: order a private number in 200+ countries, read the SMS verification code, hand it back. The widest country coverage in the category, and you can check it with one API call.
Local-first MCP password and credential manager for AI agents. Use passwords, API keys, SSH identities, and TOTP without exposing hidden plaintext to the model.
Build tested agent skills and govern their lifecycle through a user-defined marketplace: evidence, discovery, updates, rollback, quarantine, and 17-platform distribution.
An agentic skills framework & bundle-plugin engineering toolkit that works.
Vetix — Automated scanning, identification, and assessment of SKILL security risks.
List MCP Server configurations in your system used by AI applications like Cursor, Claude Desktop, VS Code and others
When Claude says “tests pass”, makoto checks the record — every claim held against the agent's own logged deeds; fakes blocked, not warned. Each check ships at measured zero false positives. 誠
AI API identity gateway — reverse proxy that normalizes device fingerprints and telemetry for privacy-preserving API proxying
Agent-assisted maintainership and development framework for Apache projects — Triage, Mentoring, Drafting (agent-authored fixes with human review), and Pairing (developer-side dev-cycle) skills shipping; Agentic Autonomous (auto-merge) on the roadmap.
Offline security scanner for AI-agent repos, skills, plugins, and MCP servers.
A curated corpus of incidents, attack vectors, failure modes, and defensive tools for autonomous AI agents.