v1.0.0 · no license
Open-source GRC toolkit from the GRC Engineering Club. Claude Code plugins for evidence collection, SCF crosswalks, multi-framework gap reports, OSCAL workflows.
v1.16.0 · MIT
Make any repo AI-first - write sustainable code from the start, or refactor a legacy codebase to prepare it for agent-driven development.Building blocks for Claude Code: subagents, slash commands, hooks, and workflow patterns. Copy what you need. A working developer's stack for Claude Code.
— · MIT
Audit and fix your Mac's security in one command. No agent, no signup, open source.
v0.3.4 · MIT
Automatic provider/model fallback chains for DeepSeek Harness agents when LLM requests keep failing (retry exhausted, auth, quota, rate limit)
v4.9.1 · Elastic-2.0
The most comprehensive ServiceNow AI toolkit, including a full ServiceNow MCP server: 450+ MCP tools plus 26 AI capabilities (scan, review, build, ops, docs) and a direct BYOK mode. Works with Claude, ChatGPT, Gemini, Cursor, GitHub Copilot and any LLM.
v0.3.8 · MIT
Auditable, token-gated DeepSeek Harness remote gateway: mobile QR access, per-device sessions, Host/Origin rewrite, settings/credentials/directory support.
— · no license
SAIL V2 (Secure AI Lifecycle) as an agent skill — the full 91-risk catalog for AI/agent gap assessments, security roadmaps, and compliance checklists. Installs on Claude Code, Codex, ChatGPT, Antigravity, and any SKILL.md-compatible agent.
v1.3.0 · MIT
CLI tool to block --no-verify flag in git commands. Prevents AI agents from bypassing git hooks.
v0.0.1 · Apache-2.0
Security tools for AI agents: scan MCP servers, validate HDP delegation chains, audit releases.
v0.1.0-rc.9 · MIT
Fail-closed LLM-assisted approval reviewer for DeepSeek Harness
v2.0.0 · Apache-2.0
Deterministic Runtime Execution Governance & Security Circuit-Breaker for DSH & Multi-Agent Workstations
v0.2.19 · MIT
General-purpose MCP connector, connection manager, plugin extension, and integration marketplace for DeepSeek Harness, initiated and maintained by Qichacha/QCC.
v0.0.2 · MIT
Probe any ACP-compatible agent for its capabilities (models, modes, configOptions, prompt capabilities, auth methods, MCP transports). No real prompt required; no token cost.
— · MIT
Runtime guardrails for Claude Code. Auto-approve what's safe, gate what's risky, block what's dangerous. Dual enforcement, full audit trail. MIT.
— · MIT
AI-powered whitebox penetration testing plugin for Claude Code. 9 languages, 22 skills, 7 autonomous agents. STRIDE threat modeling, OWASP 2025 coverage, polyglot monorepo support.
v1.25.0 · no license
Official SonarQube MCP Server for code quality and security in AI agents
— · Apache-2.0
The vendor-neutral protocol for AI agent safety & security — and the neutral benchmark that ranks the vendors.
— · Apache-2.0
MCP server for JADX-AI Plugin
v0.1.3 · MIT License
Enables AI agents to perform passive security scans on domains, checking email spoofing (DMARC/SPF/DKIM), TLS weaknesses, security headers, exposed files, and subdomain-takeover risk without needing an API key.
v1.0.0 · MIT
The agent harness for offsec. It's a plugin for Claude Code packed with skills, hooks, memory system that works best for using Claude Code to achieve autonomous pentest/ctf
— · MIT
lunar.dev: Agent native MCP Gateway for governance and security
v1.4.9 · no license
Don't let AI destroy your hard work! HardStop is a rock-solid protection for AI-generated commands. Pre-execution safety validation for Claude Code, Claude Cowork. Catches dangerous commands before they run: whether from AI mistakes, hallucinations, prompt injection, or misunderstood instructions. Seatbelts for the agentic AI era.
— · MIT
MCP configuration to connect AI agent to a Linux machine.
— · MIT
Expose your FastAPI endpoints as Model Context Protocol (MCP) tools, with Auth!