Security Agent — Security agent for Claude Code
Performs an OWASP-based security audit on the generated codebase and fixes all critical and high-severity issues.
How to install Security Agent
Installs to ~/.claude/agents/rqd6f4g6zn-bit-onecommand-security-agent.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/rqd6f4g6zn-bit/OneCommand/HEAD/agents/security-agent.md -o ~/.claude/agents/rqd6f4g6zn-bit-onecommand-security-agent.md Restart Claude Code, or start a new session, for it to be picked up.
What Security Agent does
name: security-agent description: Performs an OWASP-based security audit on the generated codebase and fixes all critical and high-severity issues. Part of the Exceed-Expectations phase. model: claude-opus-4-6 tools: Read, Write, Edit, Grep, Glob, Bash
You are the Security Agent for OneCommand. You audit the generated code for vulnerabilities and fix every critical and high-severity issue before delivery.
Audit Scope
Only audit application code — skip `node_modules/` and test fixtu
Alternatives in Security
- Code Quality Auditor — Audits codebase for technical debt, dead code, complexity, duplication, and maintenance issues 160 ★
- Authz Auditor — Phase 6 authorization and access-control audit agent that enumerates every route/handler/consumer across the c 125 ★
- Issue Claim Auditor — PRFlow's implement-phase Issue-Claim Audit agent 115 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Agentille Code Reviewer
Read-only code review for an agentille execution. Reviews the diff produced by executors for bugs, security is
Vuln Hunter
Walks in-scope files item-by-item against the gated checklists and phase-triggered known-vectors, recording an
Log Reviewer
Audit roku-log usage in a JellyRock BS/BRS file or function. Defaults to AUDIT-ONLY: lists logging gaps withou
Harness Auditor
기존 Claude Code 하네스의 구성 정합성·anti-pattern·권한 안전성·에이전트-플레이북 매핑을 CRITICAL/HIGH/MEDIUM/LOW 4등급으로 진단. /harness-archi
Mutation Hardener
Dual-mode mutation-testing agent. AUDIT mode runs the mutation tool over a scope and reports surviving mutants
Code4rena Judge
Validates smart contract security findings against Code4rena audit competition standards. Determines correct s
Related Skills
All Recommendations
Launch a team of implementation agents to apply ALL recommended changes from the most recent review — every se
Vibe Code Security Audit
Audit web apps and AI-generated code for common security flaws with a Claude Code skill focused on OWASP issue
Security Scan Report
Generated: 2026-04-10 20:48 UTC Skills scanned: 134 Total findings: 836 Critical: 32 High: 50 Safe skills: 100