Home / Claude Code skill packs
agent-security-skills
Claude Code security plugin and agent skills for securing LLM agents: threat modelling, configuration audits, prompt injection review, MCP server review, incident lookup.
What it is
Claude Code security plugin and agent skills for securing LLM agents: threat modelling, configuration audits, prompt injection review, MCP server review and incident lookup.
agent-security-skills is a Claude Code plugin marketplace and an agentskills.io-compatible skill pack for people who build or run LLM agents against real APIs, MCP servers and codebases: security engineers reviewing an agent before it ships, and developers who want that review inside the tool they already use. Each skill is a procedure with a tested script or a fixed checklist, so two reviewers reach the same verdict and the evidence is a file, a line or a command output.
Eight skills (each with a tested script or a checklist), three slash commands, a subagent, two guard hooks for Bash, and an optional MCP server over the ai-agent-incidents dataset (80 documented events mapped to OWASP Agentic, OWASP LLM and MITRE ATLAS). No telemetry, no network calls except the documented, opt-in dataset refresh.
Install
/plugin marketplace add basitalisandhu/agent-security-skills
/plugin install agent-security@agent-security-skills
From the README; see the full README for every option.
Links
Releases
Topics: agent-security, agent-skills, agentic-ai, ai-agents, ai-security, claude-code, claude-code-hooks, claude-code-plugin, devsecops, hacktoberfest, llm-security, mcp, mcp-server, owasp, prompt-injection, security-automation, security-tools, semgrep, threat-modeling