SecOpsAgentKit — security grade SAFE, quality 68/100

Security audit verdict: SAFE · quality 68/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by AgentSecOps · Agent Tool · ★ 184

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is SecOpsAgentKit safe to install? View the security audit →

About SecOpsAgentKit

SecOpsAgentKit An assortment of security operations skills for AI coding agents. A collaborative approach to shift-left security using Claude Code skills. Overview SecOpsAgentKit provides specialized Claude Code skills for security operations, covering: Application Security (AppSec): SAST/DAST, vulnerability analysis, secure code review DevSecOps: CI/CD security, infrastructure as code security, container scanning Secure SDLC: Threat modeling, security requirements, secure design patterns Compliance: Security auditing, policy enforcement, compliance frameworks Incident Response: Security event analysis, forensics, remediation workflows Quick Start Available Skills Application Security (appsec/) api-mitmproxy - Interactive HTTPS proxy for API security testing with mitmproxy traffic interception and modification api-spectral - API specification linting and security validation using Spectral for OpenAPI and AsyncAPI dast-ffuf - Fast web fuzzer using ffuf for directory enumeration and parameter fuzzing dast-nuclei - Fast, template-based vulnerability scanning using ProjectDi

agentsai-agentsanthropicappsecclaude-codedastdevsecopsllm-toolssastsecurity

Quick Facts

Stars184
Forks35
LanguagePython
CategoryAgent Tool
Quality Score68.0027071450538/100
Open Issues18
Last Updated2026-04-15
Created2025-11-19
Platformsclaude-code, python
Est. Tokens~37k

SecOpsAgentKit alternative? Top 6 similar tools

Looking for a SecOpsAgentKit alternative? If you're comparing SecOpsAgentKit with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • fuzzforge_ai by FuzzingLabs · ⭐ 769

    AI-powered workflow automation and AI Agents platform for AppSec, Fuzzing & Offensive Security. Automate vulne

  • orchestkit by yonatangross · ⭐ 283

    The Complete AI Development Toolkit for Claude Code. 106 skills, 36 agents, 171 hooks. Install `ork` for stabl

  • node9-proxy by node9-ai · ⭐ 216

    IAM for your AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, revi

  • code-on-incus by mensfeld · ⭐ 728

    Give each AI agent its own isolated machine with root, Docker, and systemd. Active defense detects and stops t

  • numasec by FrancescoStabile · ⭐ 466

    The AI Agent for Cyber Security.

  • runtm by runtm-ai · ⭐ 297

    Open-source sandboxes where coding agents build and deploy. Spin up isolated environments where Claude Code, C

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular Python Agent Tools

Frequently Asked Questions

What is SecOpsAgentKit?

SecOpsAgentKit is Security operations toolkit for AI coding agents. Give Claude Code 25+ skills to catch vulnerabilities, scan containers, detect secrets, and enforce policies automatically.. It is categorized as a Agent Tool with 184 GitHub stars.

What programming language is SecOpsAgentKit written in?

SecOpsAgentKit is primarily written in Python. It covers topics such as agents, ai-agents, anthropic.

How do I install or use SecOpsAgentKit?

You can find installation instructions and usage details in the SecOpsAgentKit GitHub repository at github.com/AgentSecOps/SecOpsAgentKit. The project has 184 stars and 35 forks, indicating an active community.

What are the best alternatives to SecOpsAgentKit?

The top alternatives to SecOpsAgentKit on Agent Skills Hub include fuzzforge_ai, orchestkit, node9-proxy. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools