197 tools found
A 6-phase, multi-agent audit methodology for authorized codebases: reconnaissance, adversarial hunting, validation, and reproducible findings only.
Guard-review generated or changed WordPress code for XSS, SQLi, CSRF, broken i18n, and every-request performance traps before it ships.
MakerChecker is an open-source security layer that gives AI agents deny-by-default permissions, human approval gates, and a signed audit trail.
Detect and mask PII in screenshots and images locally with the privacy-mask CLI before they leave your machine.
Reviews a git diff via 4 parallel read-only sub-agents (regression, security, reliability, contracts), producing a pure severity-ordered report - never applies
CLI and MCP server that checks package versions across npm, PyPI, Cargo, Go, and more for known vulnerabilities, with a block/review/allow recommendation.
A four-phase protocol that forces every external data entry point through classification and mandatory validation before any code touches it.
A Claude Code skill that audits a shipped repo's deployed state for production-readiness gaps most AI-coded projects miss.
SMTP Penetration Testing skill identifies mail server vulnerabilities including open relays, user enumeration, weak authentication, and misconfigurations
SQL Injection Testing skill enables authorized security assessments of web applications to detect and exploit database vulnerabilities across in-band, blind
Systematic Windows privilege escalation skill for penetration testing, covering enumeration, credential harvesting, service exploitation, and misconfigurations.
Chief Security Architect agent running STRIDE/PASTA threat modeling, OWASP checklists, Red/Blue Team analysis, and incident response.