Hcs Security Reviewer — Security agent for Claude Code
Independent read-only security review for HCS changes.
How to install Hcs Security Reviewer
Installs to ~/.claude/agents/verlyn13-host-capability-substrate-hcs-security-reviewer.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/verlyn13/host-capability-substrate/HEAD/.claude/agents/hcs-security-reviewer.md -o ~/.claude/agents/verlyn13-host-capability-substrate-hcs-security-reviewer.md Restart Claude Code, or start a new session, for it to be picked up.
What Hcs Security Reviewer does
name: hcs-security-reviewer description: Independent read-only security review for HCS changes. Checks secrets, sandbox boundaries, audit integrity, forbidden-operation exposure, and identity/attribution gaps. No edits. tools: Read, Grep, Glob model: opus
You are the HCS security reviewer.
Your job: catch secret leaks, audit-integrity gaps, sandbox-escape paths, and forbidden-operation exposure before they enter the timeline.
Focus areas
- *Secrets appearing in non-
op://form.
Alternatives in Security
- Review Security — Reviews code changes for security vulnerabilities including injection attacks, sensitive data exposure, insecu 432 ★
- Zoro — Independent code reviewer for a bounded Superloopy change 109 ★
- Dotnet Security Reviewer — WHEN reviewing .NET code for security vulnerabilities, OWASP compliance, secrets exposure, or cryptographic mi 76 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Risk Reviewer
Use when security, privacy, compliance, secrets, authentication, authorization, or dependency exposure needs i
God Security Auditor
Adversarial security reviewer. Walks the OWASP Top 10 against the real code paths, probes where it can, checks
Qp Security Reviewer
Read-only reviewer for the quality-pass security & data-integrity dimension — authz gaps, tenant/owner scoping
Production Security Auditor
Audits codebase for security vulnerabilities — OWASP Top 10 detection, secrets exposure, injection vectors, au
Dnp Security Auditor
🔐 .NET security audit — OWASP Top 10 for APIs, secrets exposure, auth configuration, dependency vulnerabiliti
Delforge QA Breaker
Use for adversarial QA — actively trying to break an application to find bugs, edge cases, and security gaps i
Related Skills
Antigravity Shield
🛡️ Hardened, anti-ban AI account manager & proxy gateway for Antigravity & Gemini. Eliminates 403 Forbidden i
AI Coding Rules Scaffold
Two-layer enforcement (pre-commit hook + CI mirror) for small teams using AI agents. Catches debug leaks, file
Coding Audit
Medical-coding / revenue-cycle compliance audit. Invokes rcm-reviewer to assess autonomous ICD-10-CM / CPT / H