Flagged: sudo usage. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by HarmonicSecurity · MCP Server · ★ 292
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is claudit-sec safe to install? View the security audit →
🛡️ CLAUDIT-SEC Security audit tool for Claude Desktop on macOS and Windows — including CoWork, extensions, plugins, MCP servers, connectors, and scheduled tasks. One command. Full visibility. Read-only. ⚠️ Windows support is a work in progress. We're aware of a few kinks and bugs and wanted to get something out sooner rather than later. Community feedback and contributions are welcome. 🤔 Why Claude Desktop introduces a new class of endpoint risk: AI agents with autonomous execution, persistent scheduled tasks, MCP server integrations, browser-control extensions, and OAuth-authenticated connectors to external services. Most of this configuration lives in JSON files scattered across multiple directories with no centralised visibility. CLAUDIT gives you that visibility in a single command. 📝 A note on "Code": Claude Desktop includes a built-in agent coding feature called Code (visible in the app's sidebar). This is not the same as Claude Code, the standalone terminal CLI. CLAUDIT primarily audits Claude Desktop and its CoWork features. It does include a basic check of the Claude Code settings file ( on macOS, on Windows), but the focus is squarely on the Desktop app.
| Stars | 292 |
| Forks | 48 |
| Language | PowerShell |
| Category | MCP Server |
| License | Apache-2.0 |
| Quality Score | 72.0659455003305/100 |
| Open Issues | 2 |
| Last Updated | 2026-05-12 |
| Created | 2026-03-16 |
| Platforms | claude-code, mcp |
| Est. Tokens | ~55k |
Looking for a claudit-sec alternative? If you're comparing claudit-sec with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
비개발자를 위한 한국 실무 AI 코워커 패밀리 — Claude Cowork·ChatGPT Work에서 /project 한 번으로 시작
Run Claude Desktop’s Cowork mode natively on Linux — no macOS or VM required
Discover and compare open-source Agent Skills, tools & MCP servers — with quality scoring, trending analysis,
ToolHive is an application that allows you to install, manage and run MCP servers and connect them to AI agent
AI-powered security assessment SKILLS for your codebase. Multi-language (JS, Go, Python, Rust, Java, PHP, Ruby
An IOS Simulator Skill for ClaudeCode. Use it to optimise Claude's ability to build, run and interact with you
Explore other popular mcp server tools:
claudit-sec is Security audit tool for Claude Desktop and Claude Code on macOS — single-command visibility into MCP servers, extensions, plugins, connectors, scheduled tasks, and permissions.. It is categorized as a MCP Server with 292 GitHub stars.
claudit-sec is primarily written in PowerShell. It covers topics such as ai-security, audit-tool, claude.
You can find installation instructions and usage details in the claudit-sec GitHub repository at github.com/HarmonicSecurity/claudit-sec. The project has 292 stars and 48 forks, indicating an active community.
claudit-sec is released under the Apache-2.0 license, making it free to use and modify according to the license terms.
The top alternatives to claudit-sec on Agent Skills Hub include moai-cowork, claude-cowork-linux, agent-skills-hub. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: