Project overview
security-audit guides Claude Code through a defensive review of a codebase, an authorized black-box target, or both. It selects the appropriate checklist for authentication, injection, SSRF, file handling, infrastructure exposure, and rate-limit posture, then emphasizes verification and coordinated disclosure. The runbook assumes explicit permission for external probing and is not a substitute for a funded penetration test or a guide for unauthorized targeting.
Repository facts
- Primary language
- Not detected
- License
- MIT
- Repository updated
- Jun 2, 2026
- Default branch
- main
Resource types
Plugin
Use cases
Security and privacy
Platforms
Claude Code
Capabilities
Verification and evals
Audience
Security engineers