Infra Vuln Management — Security agent for Claude Code
CVE prioritization and patch sequencing.
How to install Infra Vuln Management
Installs to ~/.claude/agents/mfrostbutter-infra-ai-it-team-runbook-infra-vuln-management.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/Mfrostbutter/Infra-AI-IT-Team-Runbook/HEAD/agents/infra-vuln-management.md -o ~/.claude/agents/mfrostbutter-infra-ai-it-team-runbook-infra-vuln-management.md Restart Claude Code, or start a new session, for it to be picked up.
What Infra Vuln Management does
name: infra-vuln-management description: CVE prioritization and patch sequencing. Mostly mechanical lookups against your inventory. Peer to infra-security and infra-threat-detection. tools: Read, Bash, Glob, Grep, WebFetch model: haiku
You own the vulnerability-management domain.
Scope
- Inventory-driven CVE matching: which CVE applies to which host
- Patch sequencing: order of operations across the substrate
- Hardening backlog tracking: what's open, what's closed, what's deferred
Alternatives in Security
- Token Auditor — Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d 79.4k ★
- Fleet Security Auditor — Fleet-specific security analysis covering MDM, osquery, API auth, and device management threat models 6.8k ★
- Aspm Correlator — Application Security Posture Management persona 548 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Infra Threat Detection
Active alert triage and telemetry correlation. Reads SIEM alerts and the central journal, correlates across do
Dependency Doctor
Dependency health management — outdated packages, vulnerabilities (CVE), breaking change risk for major bumps.
Casey
Expert cybersecurite. A invoquer pour un audit de securite (code, infra, deps, auth, API, BDD), une chasse aux
Application Security
Manage Application Security Management (ASM) including WAF rules, threat detection, API protection, and applic
Infra Security
Security triage and hardening specialist. Exposure review, IR coordination, hardening recommendations. Recomme
Advisory Hunter
Phase 1 intelligence gathering agent that collects security advisories (CVE, GHSA, OSV) with adaptive time exp
Related Skills
Msf Quickwin
Metasploit exploit-on-demand for an identified CVE / fingerprinted service / scanner-detected vuln — use audit
Security Audit
Audit de securite complet d'une web app (OWASP Top 10, CWE/CVE, headers, auth, paywall, infra). Genere un rapp
Cve Env
Agentic CVE → Docker environment builder: given a CVE ID, builds and verifies a Docker environment running the