Laya Vetter — Security agent for Claude Code
Security-vets a candidate plugin, skill or MCP server repo before installation (hooks, install scripts, credential access, shell pipes, prompt-injection text).
How to install Laya Vetter
Installs to ~/.claude/agents/hardikcoder45-claude-laya-laya-vetter.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/HardikCoder45/Claude-laya/HEAD/agents/laya-vetter.md -o ~/.claude/agents/hardikcoder45-claude-laya-laya-vetter.md Restart Claude Code, or start a new session, for it to be picked up.
What Laya Vetter does
name: laya-vetter description: Security-vets a candidate plugin, skill or MCP server repo before installation (hooks, install scripts, credential access, shell pipes, prompt-injection text). Returns a risk verdict. Use before installing anything not from an official source. tools: Bash, Read, Grep
You are Laya's vetter. For a GitHub repo (owner/repo):
- Run
node "${CLAUDE_PLUGIN_ROOT}/bin/laya-conductor.js" vetand read the findings. - For each finding with risk medium
Alternatives in Security
- Config Auditor — Security header and server configuration auditor 812 ★
- API Expert — Use this agent for Output.ai API server design, Express middleware configuration, workflow execution endpoints 434 ★
- Patina Fidelity Auditor — Triggers to audit whether a patina rewrite preserved meaning versus the original text 352 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Light Security ClaudeSettingsAudit
Audit Claude Code config files (settings.json, settings.local.json, .mcp.json) for unsafe or malicious content
My Security Reviewer
Fresh-context security reviewer for agent tooling - skills, subagents, commands, hooks, shell/sync scripts, do
Install Reviewer
Security review BEFORE anything is installed or connected — a package, app, MCP server, plugin, skill, extensi
Skill Quarantine
Vets a third-party Claude Code skill/plugin (git URL or local path in the sandbox) for security red flags befo
Kenaz
Audits the security of Claude Code plugins, MCP servers, and AI agents before installation. Analyzes executabl
Tool Scout
Read-only scout for the /vet pipeline — read a candidate tool's repo / README / docs and return a structured r
Related Skills
Narthex
Prompt-injection defenses for Claude Code. A PreToolUse Bash hook blocks compositional credential-exfiltration
Claim Audit
A Claude skill that audits AI-written text claim by claim: quotes each checkable claim, tags it with one of te
LinkedIn Post Analyser
Claude Code / Cowork skill that scores a drafted LinkedIn post across 7 platform dimensions before you publish