basitalisandhu

Claude Dev Skills — Security skill for Claude Code

Security community

Claude Code skills for everyday development: a plugin marketplace with six plugins and forty skills for code review, refactoring, debugging, CI and containers, data and APIs, docs and security basics.

How to install Claude Dev Skills

This entry records only its repository, not the path inside it, so there is no exact command to give. Open basitalisandhu/claude-dev-skills and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

What Claude Dev Skills does

Claude Code skills for everyday development: a plugin marketplace with six plugins and forty skills for code review, refactoring, debugging, CI and containers, data and APIs, docs and security basics, 23 with tested standard-library scripts. No network, no telemetry.

Alternatives in Security

  • Pal — Multi-model AI integration — chat, debugging, code review, planning, security audit 11.3k ★
  • Cve MCP Server — Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS sco 1.2k ★
  • Dotclaude — A comprehensive development environment with specialized AI agents for code review, security analysis, and tec 435 ★

README

claude-dev-skills

**Claude Code skills for everyday development: code review, refactoring, debugging, CI and containers, data and APIs, documentation, and security basics. Forty skills in six plugins, each with a procedure, an output format and, where it helps, a tested standard-library script.**

claude-dev-skills is a Claude Code plugin marketplace for the work developers do every day: reviewing a pull request, finding why a test is flaky, hardening a Dockerfile, planning a schema migration, writing release notes, checking a token. Each skill is a fixed procedure with a concrete output, so two people (or two sessions) reach the same result and the evidence is a file, a line or a command output. Twenty-three skills bundle a Python script (standard library only, `--json` output, tested) that does the mechanical part; the rest bundle checklists and templates.

No network access, no telemetry: scripts read the files you point them at and write only where you ask.

When to use this

  • Review this PR against a fixed checklist before merging: review-checklist
  • Which tests are flaky, and why: flaky-test-hunter
  • Is this Dockerfile, workflow or Kubernetes manifest safe to ship: dockerfile-hardening, github-actions-author, k8s-manifest-review
  • Change a column on a live table without downtime: schema-migration-plan
  • Turn a commit range into release notes and keep the changelog consistent: release-notes, changelog-keeper, semver-advisor
  • Did a secret get committed, what is in this JWT, are the headers right: secrets-hygiene, jwt-inspector, http-security-headers

Install

In a Claude Code session:

/plugin marketplace add basitalisandhu/claude-dev-skills
/plugin install code-quality@claude-dev-skills

Install any of the six plugins the same way: `/plugin install debugging@claude-dev-skills`, `/plugin install devops@claude-dev-skills`, `/plugin install data@claude-dev-skills`, `/plugin install docs@claude-dev-skills`, `/plugin in