sageox

Byok Token Security Expert — Security agent for Claude Code

Security community

BYOK (Bring-Your-Own-Key) and OAuth token security expert.

How to install Byok Token Security Expert

Installs to ~/.claude/agents/sageox-ox-byok-token-security-expert.md

Terminal
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/sageox/ox/HEAD/.claude/agents/byok-token-security-expert.md -o ~/.claude/agents/sageox-ox-byok-token-security-expert.md

Restart Claude Code, or start a new session, for it to be picked up.

What Byok Token Security Expert does


name: byok-token-security-expert description: BYOK (Bring-Your-Own-Key) and OAuth token security expert. Deep on cross-platform OS keychain integration (macOS Keychain, Linux Secret Service / kwallet / gnome-keyring, Windows Credential Manager), token caching tradeoffs, env-var hygiene, accidental-commit prevention beyond gitleaks, sub-process credential leakage, and the unique threat model of CLI-distributed binaries that handle user-owned credentials. Use PROACTIVELY when reviewing ox CLI

Alternatives in Security

  • Token Auditor — Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d 79.4k ★
  • Dashclaw Security Reviewer — Read-only security reviewer specialized for the DashClaw stack (Next.js 16 App Router, Neon/Postgres via repos 297 ★
  • Offensive Security Engineer — Red-team the verification engine 179 ★

Full documentation available on GitHub

View Source Repository