Plugin Directory
Discover and install extensions for Claude Code
Discover and install extensions for Claude Code
Discover and install extensions for Claude Code
Complete collection of battle-tested Claude Code configs from an Anthropic hackathon winner - agents, skills, hooks, and rules evolved over 10+ months of intensive daily use
Binary reverse engineering, malware analysis, firmware security, and software protection research for authorized security research, CTF competitions, and defensive security
Testing, security, and code quality experts - code review, penetration testing, QA automation
Repomix MCP server for AI-powered codebase analysis. Pack local/remote repositories, search outputs, and read files with built-in security scanning. Foundation plugin that enables all Repomix features in Claude Code.
Interactive YAML config and Bloblang authoring for Redpanda Connect
Skills for designing and building MCP servers that work seamlessly with Claude — guides you through deployment models (remote HTTP, MCPB, local), tool design patterns, auth, and interactive MCP apps.
Comprehensive skill pack with 66 specialized skills for full-stack developers: 12 language experts (Python, TypeScript, Go, Rust, C++, Swift, Kotlin, C#, PHP, Java, SQL, JavaScript), 10 backend frameworks, 6 frontend/mobile, plus infrastructure, DevOps, security, and testing. Features progressive disclosure architecture for 50% faster loading.
Build custom ChatGPT apps and GPTs with actions, function calling, and best practices. Includes GPT configuration, OpenAPI schemas, authentication, and deployment guidance.
Create custom Semgrep rules for detecting bug patterns and security vulnerabilities
Security reminder hook that warns about potential security issues when editing files, including command injection, XSS, and unsafe code patterns
Search and extract data from Burp Suite project files (.burp) for security analysis
Analyzes smart contract codebases to identify state-changing entry points for security auditing. Detects externally callable functions that modify state, categorizes them by access level, and generates structured audit reports.
Static analysis toolkit with CodeQL, Semgrep, and SARIF parsing for security vulnerability detection
Skills from the Trail of Bits Application Security Testing Handbook (appsec.guide)
Scan Android APKs for Firebase security misconfigurations including open databases, storage buckets, authentication issues, and exposed cloud functions. For authorized security research only.
Google Firebase MCP integration. Manage Firestore databases, authentication, cloud functions, hosting, and storage. Build and manage your Firebase backend directly from your development workflow.
Supabase MCP integration for database operations, authentication, storage, and real-time subscriptions. Manage your Supabase projects, run SQL queries, and interact with your backend directly.
Stripe development plugin for Claude
YARA-X detection rule authoring with linting and quality analysis
Security-focused differential review of code changes with git history analysis and blast radius estimation
Detects insecure default configurations including hardcoded credentials, fallback secrets, weak authentication defaults, and dangerous values in production
Comprehensive smart contract security toolkit based on Trail of Bits' Building Secure Contracts framework. Includes vulnerability scanners for 6 blockchains and 5 development guideline assistants.
Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations (Claude Code Action, Gemini CLI, OpenAI Codex, GitHub AI Inference)
Identify error-prone APIs, dangerous configurations, and footgun designs that enable security mistakes
Detect SQL injection vulnerabilities
Create secure webhook endpoints with signature verification and retry logic
Database plugin for database-security-scanner
Build API gateway with routing, authentication, and rate limiting
Firebase platform expert for Firestore, Auth, Functions, and Vertex AI integration
Terraform infrastructure as code for ADK and Vertex AI Agent Engine deployments
Scan APIs for security vulnerabilities and OWASP API Top 10
Encrypt and decrypt data with various algorithms
Professional security tools for Claude Code: vulnerability scanning, compliance, cryptography audit, container & API security
Scan input validation practices
Assist with SOC2 audit preparation
Assist with security incident response