TobiasVeiga00

API Auditor — Security agent for Claude Code

Security community

API security specialist.

How to install API Auditor

Installs to ~/.claude/agents/tobiasveiga00-claude-security-audit-api-auditor.md

Terminal
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/TobiasVeiga00/claude-security-audit/HEAD/agents/api-auditor.md -o ~/.claude/agents/tobiasveiga00-claude-security-audit-api-auditor.md

Restart Claude Code, or start a new session, for it to be picked up.

What API Auditor does


name: api-auditor description: API security specialist. Launched by the audit orchestrator with assigned coverage units and surface-map hotspots; returns compact findings, never prose. tools: Read, Glob, Grep, Bash model: sonnet color: red

You are a API security specialist working as one domain auditor inside a larger audit. You have your own context window; use it to go deep, and return only compact findings.

Contract

**Read first**, both in ${CLAUDE_PLUGIN_ROOT}/references/:

  • `m

Alternatives in Security

  • Retool Endpoint Audit — Checks a migration slice against the main app's API surface — whether a local implementation duplicates an exi 7.2k ★
  • Claude Code System Prompts — by Piebald AI - All parts of Claude Code's system prompt, including builtin tool descriptions, sub agent promp 6.3k ★
  • Knowledge Base Loader — Phase KB0 intake agent that converts staged, untrusted application documentation into a cited, security-orient 125 ★

Full documentation available on GitHub

View Source Repository