Industry-standard reviewTestingv0.5.3

security Agent Plugin

Project-agnostic security skills for repository audits, diff review, deterministic scanning, supply chain, threat modeling, smart contracts, and AI systems. This catalog entry is pinned to reviewed commit 81f5c36645ae and records a qualification score of 94/100.

0 repository stars NOASSERTION Updated Aug 8, 2026

Independent catalog review

Qualification snapshot

Qualified

Format

100/100

Quality

88/100

Qualified

94/100

Scores reflect package format and editorial quality checks at the fixed reviewed commit. They are not popularity ratings or security guarantees.

Installation

Install Security

Install the plugin from akoita/agent-toolkit at plugins/portable/security. The generated command uses sparse checkout and keeps the reviewed repository path visible.

Terminal · Git sparse checkout
git clone --filter=blob:none --sparse https://github.com/akoita/agent-toolkit.git
cd agent-toolkit
git sparse-checkout set plugins/portable/security
Review the fixed manifest and documentation before enabling the plugin.
Confirm your agent client supports the declared Agent Plugins specification.
Inspect required credentials, commands, network access, and side effects in the upstream source.

Explainable standards check

Latest official standard could not be confirmed

Official latest version: 1.0.0 (Working Draft). The value is read from the official specification and cached for one day.

Read the official specification

This is a static package-format check, not a security audit, quality score, malware scan, or guarantee of client compatibility.

Source package available for inspection

The package could not be checked: skills/security-threat-model/SKILL.md returned 403.

Static source inspection

Independent catalog review

Why this plugin qualified

This is the original assessment excerpt captured during manual catalog selection. It describes review evidence, not a security guarantee or user rating.

A strong, clearly packaged security agent plugin with Claude and Codex adapters and a coherent suite of specialized skills for repository audits, diff review, deterministic scanning, AI systems, supply chain, threat modeling, and smart contracts. The supplied excerpts show unusually actionable guidance: explicit scope and budget setting, tool preflight, two-pass audit methodology, diff handling, evidence and confidence requirements, false-positive triage, coverage-gap reporting, and concrete val

Capabilities

What can you do with security?

Project-agnostic security skills for repository audits, diff review, deterministic scanning, supply chain, threat modeling, smart contracts, and AI systems.

The reviewed package declares 7 skill(s), 0 MCP configuration(s), and 0 additional resource(s).

  • Use the security-ai skill from the reviewed package
  • Use the security-audit skill from the reviewed package
  • Use the security-review skill from the reviewed package
  • Review the fixed plugin manifest at commit 81f5c36645ae
  • Install the package from akoita/agent-toolkit/plugins/portable/security
  • Verify the declared 7 skill, 0 MCP, and 0 resource entries

Reviewed package scope

Project-agnostic security skills for repository audits, diff review, deterministic scanning, supply chain, threat modeling, smart contracts, and AI systems.

Fixed-source qualification

Inspect the package at commit 81f5c36645ae with recorded format, quality, and qualification evidence.

Practical workflow

A source-backed Security workflow

Pass 01 / Inspect

Review the fixed source

Inspect plugin.json, the linked documentation, package inventory, license, and qualification excerpt at the reviewed commit.

Pass 02 / Verify

Install and validate locally

Install from the pinned repository path, confirm the client discovers the declared components, and review permissions before real use.

Package contents

What is included in security?

security declares 7 Skills, 0 MCP configurations, and 0 additional resources. The included-file links below point to the reviewed source repository.

Agent Skills

7

security-ai, security-audit, security-review, security-scan, security-smart-contracts, security-supply-chain, security-threat-model

MCP servers

0

No runtime service

Package format

Agent Plugins

Official latest 1.0.0

Synced source content

Repository README

View original README

This README snapshot is stored by Agent Plugins Hub and refreshed by the daily GitHub synchronization pipeline. Remote images and embedded content are not loaded.

Source
https://github.com/akoita/agent-toolkit#readme

This repository does not currently provide a README snapshot. The plugin instructions below remain available.

Source documentation

Security source documentation

Rendered from the linked GitHub source. Raw HTML is disabled, scripts cannot execute, remote images are omitted, and external links open separately.

Catalog scope

This page describes the fixed source snapshot selected for the Agent Plugins Hub catalog. It does not extend the upstream package's claims.

Package summary

Project-agnostic security skills for repository audits, diff review, deterministic scanning, supply chain, threat modeling, smart contracts, and AI systems.

Reviewed package inventory

  • Skills: security-ai, security-audit, security-review, security-scan, security-smart-contracts, security-supply-chain, security-threat-model
  • MCP configurations: None declared
  • Additional resources: None declared
  • Plugin directory: plugins/portable/security
  • Reviewed commit: 81f5c36645aea70483d1c76a7e22010c780c7db0

Qualification snapshot

  • Industry-standard format score: 100/100
  • Plugin quality score: 88/100
  • Qualification score: 94/100
  • Classification: agent-plugin

Editorial assessment excerpt

A strong, clearly packaged security agent plugin with Claude and Codex adapters and a coherent suite of specialized skills for repository audits, diff review, deterministic scanning, AI systems, supply chain, threat modeling, and smart contracts. The supplied excerpts show unusually actionable guidance: explicit scope and budget setting, tool preflight, two-pass audit methodology, diff handling, evidence and confidence requirements, false-positive triage, coverage-gap reporting, and concrete val…

The source CSV stores a 500-character assessment excerpt, so the paragraph above may end mid-sentence. It is review evidence, not a security guarantee or user rating.

Installation and verification

  1. Inspect the linked manifest and source documentation at the reviewed commit.
  2. Install from akoita/agent-toolkit using the plugin directory plugins/portable/security.
  3. Confirm your client discovers the declared components.
  4. Review credentials, commands, network access, permissions, and consequential side effects before use.

Provenance

Manifest: https://github.com/akoita/agent-toolkit/blob/81f5c36645aea70483d1c76a7e22010c780c7db0/plugins/portable/security/plugin.json

The catalog entry is pinned to the exact commit used during qualification. Upstream content may change after that snapshot.