patronus-protect

Patronus Security CLI — Security skill for Claude Code

Security community

Security scanner and runtime protection for AI coding agents.

How to install Patronus Security CLI

This entry records only its repository, not the path inside it, so there is no exact command to give. Open patronus-protect/patronus-security-cli and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

What Patronus Security CLI does

Security scanner and runtime protection for AI coding agents. Detects prompt injection, secrets, PII, and unsafe tool activity across Codex, Claude Code, and DeepSeek Harness.

Alternatives in Security

  • Security Guidance — Hook that warns about command injection, XSS, and unsafe patterns 14k ★
  • Security Guardian — Comprehensive security analysis for RTK CLI tool, focusing on command injection, shell escaping, hook security 11.9k ★
  • Promptmap — Security scanner for custom LLM apps 1.2k ★

README

Patronus shield

Patronus Security

Local-first runtime protection and security scans for AI agents.

Patronus Security combines the Patronus Security CLI (the `patronus-security-scanner` executable) with optional Runtime Protection integrations for Codex, Claude Code and DeepSeek Harness. Patronus Ark powers detection. The integrations inspect external text before it reaches the model; completed findings keep dangerous content behind a verifiable receipt.

Plugins

Codex app
Codex
Claude
Claude Code
DeepSeek
DeepSeek Harness
Native prompt, tool-result and MCP-result hooks. Native lifecycle, prompt and result hooks. Native Cordis request and response gates.

Choose the hosts you use during onboarding. Each plugin page explains its hooks, protected flow and degraded behavior.

Patronus Security is an independent project and is not endorsed by OpenAI, Anthropic or DeepSeek. Third-party names and logos identify compatibility only; see [Third-party notices](THIRD_PARTY_NOTICES.md).

Install

Install the latest release on macOS or Linux:

curl -fsSL https://github.com/patronus-protect/patronus-security-cli/releases/latest/download/install.sh | sh

The installer detects the platform, verifies the matching CLI artifact, installs `pat