Muhammad Basit Ali
I am Muhammad Basit Ali, a cloud security and AI agent security engineer. My day-to-day work is cloud governance: multi-account AWS guardrails, identity and endpoint controls in Microsoft 365, access reviews and the engineering teams that run them. Before that I built backend systems in Python and TypeScript, including a regulated lending platform and real-time grid software. The repositories here are the open part of that work: Claude Code skill packs, MCP servers and linters, threat modelling and static analysis for agent code, and a dataset of AI agent incidents. Each one stands alone, says what it does not do, and backs its security claims with tests.
Projects
Claude Code skill packs
| Repository | What it is |
|---|---|
| claude-skills | Every skill I maintain, in one repository: 87 skills in 13 plugins from the packs below, one marketplace, one install script, synced daily. |
| aws-security-skills | AWS security skills for Claude Code: account audit, SCP guardrails, blast-radius landing zones, IAM least privilege, Security Hub triage. |
| repo-engineering-skills | Repository engineering skills for Claude Code: docs checked against the code, audits where every finding cites a line, agent context files that say only what code cannot. |
| m365-governance-skills | Microsoft 365 governance skills for Claude Code: Entra ID posture review, Intune baseline check, Graph permission preflight, Teams and group sprawl, access review pack. |
| compliance-evidence-skills | Compliance evidence skills for Claude Code: integrity-checked evidence packs from GitHub, AWS and Microsoft 365 exports, mapped to ISO 27001 and SOC 2, with narratives that cite evidence or say not assessable. |
| claude-dev-skills | Claude Code skills for everyday development: code review, refactoring, debugging, CI and containers, data and APIs, documentation and security basics. |
| agent-security-skills | Claude Code security plugin and agent skills for securing LLM agents: threat modelling, configuration audits, prompt injection review, MCP server review, incident lookup. |
| github-manager-skills | Claude Code skills for engineering managers that compute from exported GitHub data: stuck-PR and review-queue digest, iteration report, blameless postmortem timeline. |
| mac-maintenance-skills | Claude Code skills for cleaning up and speeding up a Mac: read-only survey first, safe tier removes only what programs recreate, leftovers and duplicate finders. |
MCP tooling
| Repository | What it is |
|---|---|
| dev-mcp-servers | Ten small MCP servers for everyday development and security checks. |
| mcp-server-template | Secure MCP server template in TypeScript and Python, safe by default. |
| mcp-tools-lint | Lint MCP tool schemas and annotations before clients reject them. |
| mcp-auth-doctor | Diagnose OAuth discovery problems on remote MCP servers. |
| mcp-egress | Record every host an MCP server contacts, per tool, and fail CI on new ones. |
| claude-mcp-allow | Least-privilege Claude Code permission rules for MCP tools, generated from their annotations. |
| agentdojo-mcp | Run AgentDojo against MCP servers. |
| mcp-rc-check | MCP specification migration checker for the 2026-07-28 revision. |
Security tooling
| Repository | What it is |
|---|---|
| agent-threat-model | Threat modeling for AI agents: describe the system in YAML, get a STRIDE and OWASP Agentic threat model. |
| agent-config-audit | Audit AI agent configuration files for security risks. |
| agentic-semgrep-rules | Semgrep rules for AI agent code in Python, TypeScript and JavaScript. |
| security-actions | GitHub Actions for AI agent and supply chain security checks. |
| cc-hooks | Typed Python SDK and offline test runner for Claude Code hooks. |
| cc-plugin-lock | Lock file for Claude Code plugins: pins plugins and skills to content hashes and verifies them before load. |
| claude-perm-sim | Claude Code permission rule simulator: shows which rule decides a tool call and where a rule set is permissive. |
| llms-txt-gen | Generate llms.txt for any docs site or repository. |
| scp-guardrails | AWS service control policy builder and linter. |
| skill-scan-gate | CI gate for Claude Code skills and plugins. |
| spotlighting | Spotlighting for prompt injection defence in Python. |
Data and lists
| Repository | What it is |
|---|---|
| ai-agent-incidents | An open dataset of AI agent and LLM security incidents, with a browsable site. |
| awesome-agent-security | Curated list of AI agent security tools, papers and datasets. |
Latest releases
Packages: container images and npm packages are listed on the Packages tab.
Posts
- Four open repositories for securing AI agents, and what each is for
A map of the open tools for AI agent security: an incident dataset, Semgrep rules for agent code, a threat-model CLI and Claude Code skill packs, with where each one stops. - Every Claude Code skill I maintain, in one repository
87 Claude Code skills in 13 plugins from 8 source repositories, now in one repository with one marketplace and one install script.