Claude Code Team Commander — Security skill for Claude Code
Blueprint for building a shared Claude Code configuration for your team — personas, commands, plugin catalog, MCP servers, security, and onboarding.
How to install Claude Code Team Commander
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open OITApps/claude-code-team-commander and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Claude Code Team Commander does
Blueprint for building a shared Claude Code configuration for your team — personas, commands, plugin catalog, MCP servers, security, and onboarding.
Alternatives in Security
- Maestro Odyssey — Long-running iterative cycle — one entry, seven modes (debug improve planex review security defensive ui) 530 ★
- Google MCP Security Servers — Security Operations and Threat Intelligence MCP servers 453 ★
- Agentseal — Security toolkit for AI agents 344 ★
README
Claude Code Team Blueprint
**A complete playbook for building a shared Claude Code configuration for your company.**
The Problem
When you give your team Claude Code, everyone sets it up differently. Different plugins, different prompts, no shared standards, API keys scattered everywhere, and no way to control what tools are available. New hires spend hours figuring out the setup instead of doing work.
What We Built
At [OIT, LLC](https://oit.co), we run a VoIP business with a Salesforce org, internal knowledge base, VoIP platform APIs, Microsoft 365, and a growing team. We needed Claude Code to work the same way for everyone — with our SOPs, our quality standards, and our integrations baked in — while keeping secrets secure and giving admins control over what tools the team can use.
We built a single GitHub repo that does all of this:
- 5-minute onboarding — one script installs everything and prompts for API keys
- AI personas that know our workflows — case quality scoring, Salesforce automation, documentation standards, support ticket handling, full-stack development
- 18 slash commands that trigger specific workflows —
/stan-review 222448scores a case against 8 quality dimensions,/flow-review Lead_Assignmentaudits a Salesforce flow for governor limits - Admin-controlled catalog of plugins and MCP servers — nothing enters the toolkit without a PR approval
- Auto-discovery — any team repo can propose a new MCP server by adding a
.claude-catalog-entry.jsonfile; a weekly GitHub Action scans for these and creates a PR for admin review - Announcement system — admins post one-time messages that display the next time a team member syncs
- Security by default — API keys never committed, secret scanning with push protection, branch protection requiring PR approval, TruffleHog CI on every push
How It Works
1. Team member clones the config repo
2. Runs setup.sh in their project directory
3. Script copies personas/c
Related Skills
Aisecscan
Static security scanner for Claude Code configuration — settings, permissions, hooks, MCP servers, agents/suba
Cchub
Desktop hub for managing Claude Code MCP servers, health checks, configuration profiles, skills, plugins, hook
Agent Config Audit
Audit AI agent configuration files for security risks: risky permissions in .claude settings, secrets and unpi
Command Engagement
Shared engagement-lead SOP for the commander agents — research, write a plan, dispatch grow-agents, synthesize
Mcpick
Vendor-neutral MCP configuration manager — one CLI to add, toggle, and audit MCP servers and skills across eve
J Config Audit
Security audit of Claude, Codex, Gemini, and shared agent configuration for secrets, over-broad permissions, a
Related Agents
MCP Bridge Expert
Use this agent when the user needs help with MCP Bridge configuration, debugging connection issues to external
Claude Code MCP Specialist
Expert MCP server configuration specialist for Claude Code. Use when you need to set up, configure, or find MC
Toolchain Installer
Use for requests to install, configure, repair, or validate MCP servers, Claude Code skills, tool integrations