Plugins listed here are tagged for this technology stack and auto-indexed from public GitHub repositories.
Plugins listed here are tagged for this technology stack and auto-indexed from public GitHub repositories.
Claude Code plugins tagged for Oauth development. Browse commands, agents, skills, and more.
Write and review secure code across the full stack: implement authentication (OAuth2/JWT/RBAC/SSO), secure REST/GraphQL/WebSocket APIs, prevent XSS and DOM-based vulnerabilities, enforce PCI DSS compliance, and audit code for security best practices.
Run comprehensive compliance audits against GDPR, HIPAA, SOC2, and PCI-DSS frameworks, with actionable implementation guidance and DevSecOps pipeline integration for security vulnerability assessment and threat modeling. Includes OWASP standards, OAuth2/OIDC authentication review, and cloud security checks for Docker, Kubernetes, and AWS environments. Designed for proactive security auditing and regulatory compliance implementation.
Automate RevOps and CRM workflows across Zendesk, HubSpot, Stripe, Shopify, SendGrid, and Google/Outlook Calendars — manage contacts, deals, tickets, payments, inventory, and email campaigns without manual UI interaction.
Automate finance and accounting workflows including journal entries, account reconciliation, financial statement generation, variance analysis, month-end close management, and SOX 404 compliance testing.
Apply security best practices across the full application stack, from secure backend coding and API authentication to frontend XSS prevention and CI/CD secrets management, with support for threat modeling and compliance standards like PCI DSS.
Secure full-stack applications by implementing authentication, authorization, input validation, API security patterns, dependency vulnerability auditing, XSS prevention, and PCI DSS compliance across REST, GraphQL, and WebSocket APIs.
Automate creation, editing, and conversion of documents, spreadsheets, and presentations using Google Workspace, LibreOffice, Microsoft Office, and command-line tools for DOCX, XLSX, PPTX, and PDF workflows.
Create, edit, and analyze office documents, spreadsheets, and presentations (DOCX, XLSX, PPTX, Google Docs/Sheets/Slides, PDF) via CLI scripts and Python libraries, with support for format conversion and financial model standards.
Automate end-to-end Revenue Operations and CRM workflows across calendars, CRM, email marketing, e-commerce, payments, and support using Composio and Rube MCP integration.
Integrate Model Context Protocol servers into Claude Code plugins by configuring .mcp.json, setting up stdio/SSE/HTTP server types, and handling OAuth authentication.
Implement authentication and authorization using JWT, OAuth2, session management, and RBAC patterns. Secure APIs, debug access control issues, and build scalable auth systems.
Accelerate early-stage life sciences R&D by searching biomedical literature and preprints, querying drug targets and clinical trials, analyzing single-cell RNA-seq data, running nf-core bioinformatics pipelines, and converting lab instrument files to standardized formats for LIMS and data lakes.
Run local development servers on named .localhost URLs (e.g. https://myapp.localhost) and configure OAuth providers to accept those URLs, eliminating redirect_uri_mismatch errors during local auth flows.
Orchestrate full-spectrum bug bounty hunting and external red-team engagements across web, mobile, cloud, and infrastructure targets with 80+ specialized skills for vulnerability detection, recon, exploit chaining, and report generation.
Develop and operate Canva Connect API integrations from authentication to production deployment, including debugging, performance tuning, security hardening, and CI/CD.
Build, debug, and deploy production-grade Notion API integrations with 30 skills covering authentication, CRUD operations, rate-limit handling, CI/CD automation, security compliance, and incident response.
Orchestrate authorized penetration tests and red team engagements with 50 specialist subagents covering recon, web/API, Active Directory, cloud, mobile, wireless, exploitation, post-exploitation, detection, forensics, and reporting.
Integrate and manage ClickUp workspaces, tasks, and projects via API v2, with tools for authentication, error handling, rate limiting, monitoring, deployment, migration, and security—all from Claude Code.
Generate complete API authentication and authorization systems with JWT, OAuth2, API keys, sessions, MFA, RBAC, rate limiting, and audit logging. Produces user models, middleware, and brute-force protection.
Develop, deploy, and maintain Intercom integrations with skills for API development, CI/CD, monitoring, security, compliance, and migration from other platforms.
Integrate with the Procore construction management API to automate RFI and submittal workflows, manage OAuth2 authentication, handle rate limits and errors, and process webhook events for project data.
Audit web app and API authentication against OWASP/NIST standards, covering password hashing, JWT handling, sessions, OAuth flows, MFA, and account controls. Also validates authentication configuration, tokens, and credentials for correctness.
Automate Guidewire InsuranceSuite development and operations: CI/CD pipeline design, PolicyCenter/ClaimCenter lifecycle automation via Cloud API, OAuth2 authentication hardening, Gosu hot-reload and TDD workflows, cloud migration, production-grade API client with retry/pagination, SOC 2 security hardening, and event-driven integrations with AWS/Kafka/webhooks.
Manage Microsoft Azure infrastructure end-to-end: provision resources with Bicep/Terraform, deploy apps via Azure Developer CLI, monitor with Application Insights, debug production issues, audit compliance, optimize costs, and interact with AI services including OpenAI, Search, and Speech.
Production-harden Podium SaaS integrations with skills for OAuth2 token management, webhook security, rate-limit survival, multi-tenant routing, data export to vector stores, and Shopify-to-review automation. Includes PII-redacted transcript ingestion and RAG context retrieval for LLM augmentation. Designed for multi-location operators and compliance teams.
Integrate with the Fathom meeting intelligence API to fetch transcripts, summaries, and action items; build analytics pipelines; sync data to CRMs; handle webhooks, rate limits, authentication, and error diagnostics; and deploy containerized services with CI/CD.
Develop, deploy, and maintain Evernote API integrations, covering OAuth setup, note CRUD, search, webhooks, CI/CD pipelines, multi-environment deployment, monitoring, rate-limit handling, security hardening, and data migration.
Debug, deploy, and optimize Adobe API integrations (Firefly, PDF Services, I/O Events) with authentication setup, CI/CD pipelines, error handling, cost monitoring, and security best practices.
Manage Linear issue tracking and project management workflows: create and update issues, manage projects and cycles, handle webhooks, authenticate via OAuth, migrate from Jira/GitHub Issues, deploy integrations, and monitor API usage with rate limiting and debugging tools.
Integrate with the SalesLoft REST API v2 to manage people, cadences, enrollments, and activity tracking; handle OAuth authentication, rate limiting, and webhook verification; run CI tests and deploy integrations with production-ready architecture.
Integrate, automate, and maintain Navan travel and expense management platform—from OAuth setup and API calls to data extraction, deployment, monitoring, and incident response.
Integrate and manage Hootsuite social media workflows: configure OAuth, schedule posts, upload media, retrieve analytics, handle errors/rate limits, set up CI/CD, and deploy integrations to cloud platforms.
Integrate with the Ramp API for corporate card management, expense tracking, and accounting sync. Provides OAuth2 authentication patterns, error handling, rate limiting, webhooks, and production readiness checklists.
Integrate, troubleshoot, and optimize Workhuman Social Recognition API for employee recognition, rewards, nominations, and HRIS sync (Workday/SuccessFactors), including OAuth 2.0 auth, REST endpoints, webhooks, and security best practices.
Run a multi-agent security and quality assurance team that audits REST APIs for OWASP vulnerabilities, reviews git diffs for code quality and security, debugs production incidents, generates automated tests, and optimizes performance — all delegated as autonomous sub-agents.
Scan project dependencies for known vulnerabilities, audit authentication systems, and harden application security with automated checks covering input validation, data protection, secrets, and infrastructure controls.
Manage Keycloak identity and access management, including realm configuration, client setup, authentication flows, and authorization policies, and integrate .NET applications using Keycloak.AuthServices for JWT and OIDC authentication with RBAC.
Executes full-spectrum marketing campaigns across LinkedIn, Google, Meta, Reddit, Twitter, TikTok, Telegram, Discord, Slack, and Feishu: SEO audits, keyword research, content creation, ad management, competitor analysis, conversion optimization, and team messaging via webhooks and bot APIs.
Build and deploy full-stack apps on Butterbase BaaS: design schemas, configure auth and RLS, develop serverless functions and AI agents, deploy frontends, manage storage, and submit to hackathons.
Master advanced TypeScript patterns and type transformations, build Fastify backends with OAuth 2.0, debug Node.js internals, enforce code quality with ESLint, manage git/GitHub workflows, and create polished documentation and code snippets.
Automate healthcare workflows including clinical data extraction, medical coding (ICD-10-CM, CPT/HCPCS), prior authorization review, FHIR data access, and clinical trial protocol generation, with built-in connectors to CMS, NPI, PubMed, and other healthcare APIs.
Configure SAP BTP connectivity: manage destinations (HTTP, RFC, LDAP, TCP), set up Cloud Connector for on-premise access, deploy connectivity proxies in Kubernetes/Kyma, implement OAuth and principal propagation, handle multitenancy, and resolve errors (405, 407, 503).
Integrate Better Auth authentication into your project: set up auth config, database schema, and route handlers via interactive wizard; add plugins like 2FA, passkeys, and organizations; diagnose and fix authentication issues including OAuth callbacks and database bindings; explain error codes with solutions.
Build and manage AI applications using OpenRouter's API — scaffold agent projects (TUI or headless), query analytics and benchmarks, browse 300+ models by pricing and performance, generate images/audio/video, and implement OAuth sign-in — all from within Claude Code.
Manage Azure cloud resources, deploy applications, and monitor services directly from Claude Code. Covers infrastructure provisioning with Bicep/Terraform, cost analysis, security audits, AI model deployment, and production troubleshooting across compute, storage, networking, and AI services.
Debug and triage OpenShift CI failures by analyzing Prow job results, payload regressions, and test flakes. Automates revert workflows, creates JIRA bugs, triggers validation jobs, and generates root-cause reports from CI artifacts.
Turn Claude into a local SEO specialist with skills for Google Business Profile optimization, map pack ranking, citation audits, review management, geogrid analysis, keyword research, competitor benchmarking, AI visibility, multi-location SEO, and client reporting.
Adds and fixes Auth0 authentication across apps — login, MFA, SSO, RBAC, Organizations, custom domains, and migration from Clerk, NextAuth.js, Firebase Auth, etc.
Design, validate, and evolve APIs with expertise in OpenAPI, GraphQL, and REST architecture, including contract testing, code generation, breaking change detection, and API gateway configuration for rate limiting, authentication, and routing.
Extract reusable skills from Claude Code sessions and curate step-by-step plans with installable skills before writing code, using a self-evolving pipeline that enhances skills through A/B evaluation and human feedback.
Develop and extend Salesforce B2C Commerce Cloud with custom cartridges, SCAPI/OCAPI endpoints, storefront controllers, ISML templates, hooks, jobs, and SLAS authentication for headless or SFRA-based storefronts.
Manage NinjaOne RMM infrastructure: query devices, monitor alerts, handle tickets, generate patch compliance reports, and audit device health across organizations.
Integrate Zoom platform capabilities into apps: embed meetings, video, and phone; build chatbots and contact center flows; authenticate via OAuth; consume real-time events via webhooks and WebSockets; and use MCP servers for AI-agent access to meetings, chat, whiteboards, tasks, and revenue analytics.
Generate and publish UGC videos from a script with AI actors, lip-sync, captions, and b-roll overlays. Supports single clips, multi-take monologues, and two-character podcasts. Optionally publish to social networks via OAuth.
Generates and manages GDPR Records of Processing Activities (RoPA) from IT inventories, with automated field population, multi-entity support, DPIA linkage, completeness auditing against supervisory templates, executive dashboards, and integration with privacy platforms like OneTrust and TrustArc.
Manage Datto RMM infrastructure directly from Claude: resolve alerts, execute scripts, audit device health and backup compliance, and configure sites and variables across managed clients.
Review code and infrastructure for security vulnerabilities across the SDLC: injection flaws, hardcoded secrets, container misconfigurations, Kubernetes RBAC, dependency CVEs, authentication gaps, audit logging, and AI-specific risks like prompt injection and hallucinated APIs.
Manage Pipefy workflow automation, AI agents, database tables, portals, and reports directly from Claude Code. Create, read, update, and delete pipes, cards, automations, and more via MCP tools and CLI commands.
Investigate and manage Mimecast email security: trace message delivery with SPF/DKIM/DMARC results, search and hold messages, analyze TTP logs for threats, monitor queue health for stuck mail, and verify archiving continuity in MSP environments.
Manage Alternative Payments operations: create and archive customers and invoices, generate hosted payment links, list and filter transactions and payouts, and reconcile payout batches by verifying totals and tracing transactions to invoices.
Vendor-agnostic MSP toolkit for interpreting terminology, triaging tickets, correlating incidents across PSA/RMM/documentation tools, and reconciling Pax8 billing against Xero or QuickBooks Online invoices.
Manage SecondMe AI avatars, profiles, notes, and key memories while building third-party apps with OAuth login, MCP integration, Agent Memory API, Act stream API, app scaffolding, and release management.
Guides AI agents and developers through Looker onboarding and LookML development: authenticating, connecting BigQuery, creating projects, modeling views/explores/models/dashboards, writing tests, optimizing query performance, and managing access grants.
Manage QuickBooks Online customers, invoices, expenses, payments, and reports from Claude Code. Includes MSP-focused agents for billing reconciliation and profitability analysis by client and service line.
Manage Xero accounting operations for MSPs — automate invoice creation, payment tracking, billing reconciliation, and cash flow analysis via natural language commands.
Manage Clio legal practice operations directly from Claude Code: create and update matters, manage contacts, log time and expense entries, and view consolidated matter overviews with bill status.
Manage Microsoft 365 tenants from Claude: audit security posture (MFA gaps, conditional access, risky sign-ins), manage users, mailboxes, calendars, Teams, OneDrive, and licenses, and automate offboarding workflows via the Microsoft Graph API.
Implement authentication and security features including JWT, OAuth2, password hashing (bcrypt, Argon2), 2FA/MFA, SSO, RBAC, and token management by delegating all auth-related tasks to a specialized agent that follows security best practices.
Design and implement internal API architecture for B2B applications, specializing in REST and GraphQL API design, webhooks, event-driven messaging (Kafka, RabbitMQ), authentication flows, data transformation, error handling, and API gateway design for microservices connectivity and third-party integration.
Design and implement secure backends with REST/GraphQL APIs, authentication systems, and LLM integrations, while performing security reviews and hardening against OWASP Top 10 vulnerabilities.
Provides curated, production-ready skills for Rails development — adding StimulusJS best practices, rich text editing with Tiptap, activity timelines with Turbo Streams, and OAuth MCP server authentication.
Orchestrates authorized penetration tests and bug bounty hunts with phase-chained reconnaissance, exploitation, and reporting — from subdomain enumeration and cloud misconfiguration audits to OAuth/AD attacks and Scalpel-certified report generation.
Develop, test, and deploy cybersecurity applications on the CrowdStrike Falcon Foundry platform using OpenAPI specs, React/Vue UI, Go/Python serverless functions, OAuth security, and Playwright end-to-end testing, with support for SOAR workflows and CLI debugging.
Enforce coding conventions and review code across Ruby, Rails, Rust, Terraform, and general projects. Write git commits and pull requests with structured messages. Audit code changes for security vulnerabilities.
Manage Spotify ad campaigns entirely through natural language conversation — create and edit campaign hierarchies, pull performance reports and audience insights, clone structures, apply batch operations, and monitor campaign health via the Spotify Ads API.
Automate and enforce LFX monorepo workflows: scaffold Snowflake connectors, build dbt models, resolve PR comments across repos, audit commits against repo convention and historical patterns, create Jira tickets, manage Snowflake access via Terraform, and merge feature branches into testable worktrees.
Build, deploy, and migrate Prismatic custom components and Code Native Integrations, embed the marketplace and workflow builder into web apps, and manage the Prismatic platform via CLI, agents, and MCP tools
Run battle-tested TDD workflows, systematic debugging, code review, and parallel task execution using reusable skill packs, agents, and commands.
Configure, deploy, and troubleshoot Duende IdentityServer and OAuth 2.0/OIDC authentication in ASP.NET Core — covering client/scope setup, signing keys, token flows, BFF security patterns, API protection, and production hardening.
Implement agentic commerce flows using the Universal Commerce Protocol across REST, MCP, A2A, and Embedded bindings, including checkout, orders, payments, fulfillment, discounts, identity linking, and autonomous agent payments.
Design and implement fintech systems with financial data modeling, double-entry ledgers, transaction processing, fraud detection, trading systems, and regulatory compliance (SOX, PSD2, KYC/AML) using financial-grade security patterns.
Automate workflows across Google Workspace and over 1,000 third-party apps by executing actions via OAuth and Composio as a fallback when no dedicated skill covers the service.
Design and document system architecture end-to-end: RESTful API contracts, database schemas, event-driven systems, infrastructure cost estimates, third-party integrations, zero-downtime migrations, and scalability reviews. Produces complete system design documents from product requirements.
Validate authentication implementations (JWT, OAuth, sessions, API keys) against security best practices, generating vulnerability reports and recommendations for password policies, MFA, and session management.
Generate a complete authentication and authorization system for REST APIs — supporting JWT, OAuth2, API keys, session auth, MFA, RBAC, and tenant isolation — with middleware, user management, and audit logging.
Build and manage BigCommerce stores: develop Stencil themes, integrate REST/GraphQL APIs, create OAuth apps, customize checkout, and build headless storefronts with Next.js.
Build and orchestrate multi-agent systems using Google's A2A protocol: create Agent Cards, manage task lifecycles, handle streaming and push notifications, implement authentication, and integrate with frameworks like LangGraph and CrewAI.
Run comprehensive multi-phase code reviews analyzing architecture, security, performance, testing, and best practices. Generates structured reports, automated PR descriptions with change statistics, and leverages specialized agents for software architecture evaluation and DevSecOps auditing.
Assists with Dutch tax workflows for individuals, freelancers, and corporations, including intake, return preparation, compliance checks, and objection drafting with official source verification.
Adds YCom frontend user authentication to REDAXO CMS: login/registration/password forms, group and media permissions, SAML/OAuth2/CAS SSO, TOTP/email OTP 2FA, magic-link tokens, and brute-force protection via extension points and PHP API
Build and validate Dutch government-compliant APIs and services using NL GOV profiles for REST APIs, OAuth, Digikoppeling, FSC, CloudEvents, and data processing logging. Also manage open standards with BOMOS and publish Logius documents.
Optimize monorepo workflows with Bazel, Turborepo, and Nx, debug effectively using scientific methods, write E2E tests with Playwright, and secure APIs with JWT/OAuth2 authentication patterns.
Design REST and GraphQL APIs with guided endpoint modeling, generate OpenAPI 3.0 specifications from code or designs, and leverage an API architect agent for strategic decisions on versioning, authentication, and architecture.
Enforce multi-layer security for MCP servers and multi-agent pipelines, implement OAuth 2.0/OpenID Connect with PKCE, and ensure compliance with GDPR, CCPA, LGPD, and PIPEDA regulations.
Play streaming radio, Spotify playlists, Apple Music library, and podcasts directly from the terminal during coding sessions. Control playback, adjust volume, and auto-stop music when your Claude session ends.
Run pre-deployment smoke tests across APIs, databases, auth, external services, and critical user journeys, with Playwright-based E2E test generation, execution, and debugging for release validation.