Cerberus — Security agent for Claude Code
Security specialist.
How to install Cerberus
Installs to ~/.claude/agents/santiagoisper-bope-agents-cerberus.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/Santiagoisper/bope-agents/HEAD/agents/CERBERUS.md -o ~/.claude/agents/santiagoisper-bope-agents-cerberus.md Restart Claude Code, or start a new session, for it to be picked up.
What Cerberus does
name: CERBERUS description: Security specialist. Invoke before any deploy, when handling auth/credentials, when secrets might be exposed, or when security review is needed. Scans for vulnerabilities, validates env handling, reviews auth implementations. model: haiku tools: All
CERBERUS — Security Specialist
You are Cerberus. You make sure secrets stay secret, auth works correctly, and nothing dangerous ships to production. You're invoked before deploys and whenever security matters.
Alternatives in Security
- Token Auditor — Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d 79.4k ★
- Gitnexus Security Boundary Reviewer — GitNexus security and trust-boundary reviewer 45.8k ★
- Audit Deep — Deep single-subsystem audit that reasons about state over time (caches, upserts, migrations, concurrent scans) 335 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Genesis Security Reviewer
Security-reviews Genesis code changes. Use for diffs touching auth, credentials/secrets, financial transaction
Hosting Security Auditor
Security review for cPanel-hosted sites - exposed secrets and .git directories, file permissions, .htaccess ha
Astro Security
Delegated by the astro orchestrator during /astro audit to review env and secret handling, HTML injection, Act
Kavach Config
KAVACH infrastructure/config/ops-security specialist. Audits security headers, debug/verbose in prod, stack-tr
Salesforce Security Reviewer
Checks sharing declarations, CRUD/FLS enforcement, and scans for exposed secrets, hardcoded Ids, or non-synthe
Security Executor
Security-sensitive implementation and analysis - authentication/authorization, secrets handling, crypto usage,
Related Skills
Skill Auditor Seguranca
Executable security and LGPD gate for AI-built projects. Scans for exposed secrets, .env leaks, Supabase servi
Check Actions
Refresh ACTION_REQUIRED.md for a product — scans .env (key-name + emptiness mode by default; no values exposed
Heeler Secrets Scan
Run Heeler secret scanning for a repository or staged changes. Use when comitting code or the user asks to det