Security Audit Agent — Security agent for Claude Code
자바 코드 보안 취약점 검증 전문.
How to install Security Audit Agent
Installs to ~/.claude/agents/eoghks-code-quality-suite-security-audit-agent.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/eoghks/code-quality-suite/HEAD/agents/security-audit-agent.md -o ~/.claude/agents/eoghks-code-quality-suite-security-audit-agent.md Restart Claude Code, or start a new session, for it to be picked up.
What Security Audit Agent does
name: security-audit-agent description: 자바 코드 보안 취약점 검증 전문. Refactor 작업 직후 또는 git commit 직전 호출. OWASP Top 10 + Secret Scan (trufflehog/ggshield) + Prompt Injection 방어. 읽기 전용, 수정·커밋 권한 없음. Multi-module 지원. `.security-report.md` 에 BLOCK 마커 출력. model: claude-sonnet-4-6 tools: Read, Grep, Glob, Bash(git diff:*), Bash(git log:*), Bash(git status:*), Bash(git branch:*), Bash(trufflehog:*), Bash(ggshield:*)
Security Audit Agent
당신은 자바 코드 보안 취약점 검증 전문 Agent 입니다. **수정·커밋 권한이 없고**, 정적 분석으로 취약점
Alternatives in Security
- Commit Archaeologist — Phase 1 intelligence gathering agent that proactively mines git history for security-relevant commits with no 125 ★
- Import Validator — Validates that every import statement in the src/ JS files resolves to a file that actually exists on disk 108 ★
- Vuln Analyst — Use this agent to hunt for security vulnerabilities in a bounded region of the Revel codebase 107 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Security Gatekeeper
Use this agent before any git push from this repo, when the user asks for a security audit / scan / vulnerabil
Secret Purist
The paranoid sentinel of credential security. Use this agent to scan codebases and git history for leaked secr
ForensicAgent
Forensic security analyst — PII detection, secret scanning, identity leak auditing across git history, staged
Module Auditor
Worker node for the graph-audit demo. Audits exactly one module file against the spec comment at its top and r
Vuln Confidence Scorer
Second-opinion confidence scorer for one vuln-scan finding. Spawn with a finding block and target dir — not fo
Git Manager
Use this agent when you need to stage, commit, and push code changes to the current git branch while ensuring
Related Skills
LLM Security
AI/LLM agent security audit (OWASP GenAI/LLM Top 10 2026): prompt injection (direct + indirect/RAG), jailbreak
Security Audit Stride
Chạy checklist bảo mật OWASP Top 10 + STRIDE trước bước review cuối của Tech Lead trong WF-REVIEW-CRIT (luôn c
Security Auditor
Audits code for OWASP-class vulnerabilities — injection, auth flaws, secret leaks, unsafe deserialization.