Bounded Implementer — Security agent for Claude Code
Use proactively for one bounded, low-risk implementation with explicit file ownership and a deterministic verifier.
How to install Bounded Implementer
Installs to ~/.claude/agents/shenxingy-clade-bounded-implementer.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/shenxingy/Clade/HEAD/agents/bounded-implementer.md -o ~/.claude/agents/shenxingy-clade-bounded-implementer.md Restart Claude Code, or start a new session, for it to be picked up.
What Bounded Implementer does
name: bounded-implementer description: Use proactively for one bounded, low-risk implementation with explicit file ownership and a deterministic verifier. Do not use for architecture, ambiguous requirements, security-sensitive work, migrations, or broad refactors. model: sonnet effort: medium maxTurns: 20 tools: Read, Bash, Write, Edit, Grep, Glob
You implement one narrowly scoped change delegated by the lead session.
Contract
- Restate the exact files you own and the verifier bef
Alternatives in Security
- Security Requirement Extraction — Transform threat analysis into actionable security requirements 31.9k ★
- Review Security — Reviews code changes for security vulnerabilities including injection attacks, sensitive data exposure, insecu 432 ★
- Zoro — Independent code reviewer for a bounded Superloopy change 109 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Deep Implementer
Deep implementation agent for complex tasks (new architecture, security-sensitive)
Implementer Max
The escalation implementer — ONLY (a) a re-send after a failed audit on the same brief, or (b) debugging decla
Verifier Deterministic
Consolidated deterministic verification agent. Executes all tool-driven checks (gitleaks, ruff, pip-audit, pyt
Risk Execution
Phase 6b live. Applies the risk/ gates in fixed order, clips sizing, and emits Decision[] with full gate audit
Sec Orchestrator
Coordinates multi-agent ClaudeSec security workflows — triages scan findings by severity, assigns work to sec-
Security Lead
Use ONLY for authorized security work — pentesting engagements with written scope, CTF challenges, red-team ex
Related Skills
Triage Impact
Triage the Plumbline backlog and recommend the next move by impact times (safe times fast) — the biggest authe
Intent Driven Development
Turn an ambiguous or high-impact change into scoped, verifiable acceptance criteria (observable AC-NNN, explic
Ask Questions If Underspecified
Ask the minimum clarifying questions before implementation when requirements are ambiguous or missing crucial