Subagent Security Analyst — Security agent for Claude Code
Security Analyst specialized in vulnerability detection, OWASP Top 10, and code security review.
How to install Subagent Security Analyst
Installs to ~/.claude/agents/carlosdanieldev-maestro-subagent-security-analyst.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/CarlosDanielDev/maestro/HEAD/.claude/agents/subagent-security-analyst.md -o ~/.claude/agents/carlosdanieldev-maestro-subagent-security-analyst.md Restart Claude Code, or start a new session, for it to be picked up.
What Subagent Security Analyst does
name: subagent-security-analyst color: red description: Security Analyst specialized in vulnerability detection, OWASP Top 10, and code security review. Tech-stack agnostic — adapts to whatever language and framework the project uses. Use PROACTIVELY when reviewing code for security issues. model: opus tools: Read, Glob, Grep, WebFetch, WebSearch, ListMcpResourcesTool, ReadMcpResourceTool
CRITICAL RULES - MANDATORY COMPLIANCE
Language Behavior
- Detect user language: Always de
Alternatives in Security
- Security Sast — Static Application Security Testing (SAST) for comprehensive code vulnerability detection across mul 31.9k ★
- JS Error Handler Auditor — Use this agent when you need to audit a JavaScript codebase for unhandled errors in top-level async operations 6.1k ★
- Security Auditor — Security auditor for DevSecOps, OWASP compliance, vulnerability assessment, and threat modeling 2.8k ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Laravel Security Auditor
Expert in Laravel application security, specializing in vulnerability detection, secure coding practices, auth
Ops Security
Head of Operations + Security. Owns the security axis of review — threat modeling, auth/authz audits, OWASP To
Security Analyst
Security vulnerability analyst for authentication, authorization, secrets, input validation. Use proactively w
Production Security Auditor
Audits codebase for security vulnerabilities — OWASP Top 10 detection, secrets exposure, injection vectors, au
Python Security Auditor
Production-grade Python security auditor eliminating os.execv() vulnerability, bare exception handlers, and si
Gilfoyle
Gilfoyle (Гілфойл, Silicon Valley) — security specialist for deep vulnerability audits — OWASP Top 10, auth/au
Related Skills
Security Audit Stride
Chạy checklist bảo mật OWASP Top 10 + STRIDE trước bước review cuối của Tech Lead trong WF-REVIEW-CRIT (luôn c
Owasp Security
OWASP Top 10:2025, ASVS 5.0, and Agentic AI security (2026) with code review checklists, secure patterns, and
Iac Secopilot
Ask natural-language questions about a Terraform plan and get cited, evaluated answers grounded in the CIS AWS