Plan Challenger — Security agent for Claude Code
Adversarial plan review before implementation.
How to install Plan Challenger
Installs to ~/.claude/agents/y-abs-claude-code-brain-bootstrap-plan-challenger.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/y-abs/claude-code-brain-bootstrap/HEAD/.claude/agents/plan-challenger.md -o ~/.claude/agents/y-abs-claude-code-brain-bootstrap-plan-challenger.md Restart Claude Code, or start a new session, for it to be picked up.
What Plan Challenger does
name: plan-challenger description: Adversarial plan review before implementation. Attacks plans across 5 dimensions (Assumptions, Missing Cases, Security, Architecture Fit, Complexity Creep), then self-refutes to eliminate false positives. allowed-tools:
- Read
- Grep
- Glob
- Bash(grep *)
- Bash(find *)
- Bash(cat *)
- Bash(head *)
- Bash(tail *)
- Bash(wc *)
- Bash(ls *)
- Bash(git *)
model: declares intent — falls back to session model if unavailable (model-agnosti
Alternatives in Security
- GraphQL Audit — GraphQL API security specialist 812 ★
- Audit Verifier — Adversarially verifies one candidate finding from /bug-audit — tries to REFUTE it by reading the code and, whe 335 ★
- After Confirming A Vulnerability — findings.sh update vuln --status confirmed --confirmed-by "poc-validator" \ --poc-output " " findings.sh updat 213 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Adversarial Panel Reviewer
Adversarial reviewer that runs ONE assigned lens (scope correctness security repro fit framework) over the ses
Spec Readiness Reviewer
Read-only audit of specs under a target topic for downstream readiness along three dimensions: contradictions
Architecture Red Team
adversarial reviewer for plans and architecture changes. challenge assumptions, expose hidden coupling, scalin
Critic Logic
Review code for logic bugs, unhandled edge cases, happy-path assumptions, input-validation gaps, and error-han
Adversary
Pre-implementation red-team analysis. Challenges plans BEFORE code is written — edge cases, security holes, sc
Red Team
Security red team specialist. Attacks the developer's stated security assumptions. Use proactively when code t
Related Skills
Agent Context Framework
Production-ready Markdown (.md) context templates for AI coding agents (Cursor, Claude Code, Aider, Windsurf).
Overscope
Catch AI coding-agent scope creep before you commit. Overscope compares Claude Code and Codex sessions with yo
Assess Task
Profile a coding task along stable dimensions — complexity, creativity, scope, autonomy, speed/cost sensitivit