site-security-assessment
Run authorized, ownership-gated security tests on your website
Run authorized, ownership-gated security tests on your website
site-security-assessment tests websites only after an ownership gate: a matching session email domain unlocks passive reconnaissance, while a token file placed under the target domain unlocks deeper levels. The four levels cover passive checks, limited active probes, authenticated DAST, and webhook threat modeling, with per-test approval, evidence-based findings, and false-positive checks. It refuses third-party targets, denial-of-service or load tests, brute force, active automated scanners, and production-data access, and does not bypass harness denials.
Resource types
Use cases
Platforms
Audit suspension risks in a Claude Code working environment.
Check whether a specific CVE actually applies to your environment.
Runtime
Protocols & integrations
Capabilities
Audience
Public GitHub facts last synced Jul 10, 2026.
Store and inject development secrets through 1Password from Claude Code.
Audit a deployed public app for production gaps missed during coding.