Help us improve
Share bugs, ideas, or general feedback.
Scans current codebase for security vulnerabilities via SAST, dependency CVEs (npm/pip/composer), and config issues. Outputs structured report with severity ratings, findings, and remediation steps.
npx claudepluginhub jeremylongshore/claude-code-plugins-plus-skills --plugin vulnerability-scannerHow this command is triggered — by the user, by Claude, or both
Slash command
/vulnerability-scanner:scanThe summary Claude sees in its command listing — used to decide when to auto-load this command
# Vulnerability Scanner Perform comprehensive vulnerability scanning on the current codebase to identify security issues, CVEs, and potential attack vectors. ## Scan Process 1. **Code Analysis (SAST)** - Scan for common vulnerability patterns - Identify insecure code practices - Check for hardcoded secrets - Analyze authentication/authorization flaws 2. **Dependency Scanning** - Check npm/pip/composer dependencies for known CVEs - Identify outdated packages with security patches - Report transitive dependency vulnerabilities 3. **Configuration Review** - Analyze...
/security-scanScans codebase for exposed secrets, dependency CVEs, and SAST issues like SQLi/XSS. Produces report with findings table, severities, and upgrade recommendations.
/security-scanScans codebase for hardcoded secrets, vulnerable dependencies, common vulnerabilities like injections and XSS, and config issues, producing a structured security report with remediation steps.
/security-checkPerforms security assessment of codebase: scans vulnerability patterns, auth/authz, data handling, deps, config; reports findings with CVSS severity counts.
/scanScans codebase for security vulnerabilities, hardcoded secrets, insecure patterns, and web security headers. Generates Markdown report with issues, code snippets, and remediation examples.
/security-scanScans codebase for OWASP Top 10 vulnerabilities and common security patterns. Defaults to entire project or limits to specified path.
/auditPerforms security audit of codebase for dependency vulnerabilities, secrets, OWASP Top 10, input validation, auth issues, and misconfigs. Outputs findings report by severity with fixes and references.
Share bugs, ideas, or general feedback.
Perform comprehensive vulnerability scanning on the current codebase to identify security issues, CVEs, and potential attack vectors.
Code Analysis (SAST)
Dependency Scanning
Configuration Review
Report Generation
Generate a structured vulnerability report with: