bmalph — security grade SAFE, quality 70/100

Security audit verdict: SAFE · quality 70/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by LarsCowe · Claude Skill · ★ 406

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is bmalph safe to install? View the security audit →

About bmalph

bmalph BMAD-METHOD planning + Ralph autonomous implementation, wired through platform-specific instructions, skills, and command indexes. What is bmalph? bmalph bundles and installs two AI development systems: BMAD-METHOD — Planning agents and workflows (Phases 1-3) Ralph — Autonomous implementation loop (Phase 4) bmalph provides: — Install both systems — Update to latest versions — Check installation health — Transition from BMAD to Ralph — Start Ralph loop with live dashboard — Check for upstream updates bma

ai-developmentbmadclaude-codecliralph

Quick Facts

Stars406
Forks50
LanguageTypeScript
CategoryClaude Skill
LicenseMIT
Quality Score70.4291328342461/100
Open Issues57
Last Updated2026-09-19
Created2026-01-23
Platformsclaude-code, cli, node
Est. Tokens~21k

bmalph alternative? Top 6 similar tools

Looking for a bmalph alternative? If you're comparing bmalph with other claude skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • claude-code-bmad-skills by aj-geddes · ⭐ 488

    BMAD Method skills for Claude Code - Auto-detection, Memory integration, Slash commands. Transform Claude Code

  • open-ralph-wiggum by Th0rgal · ⭐ 1.9k

    Type `ralph "prompt"` to start open code in a ralph loop. Also supports a prompt file & status check. Open Cod

  • pydantic-deepagents by vstorm-co · ⭐ 1.0k

    Open-source, self-hosted Claude Code - a terminal AI assistant and the Python framework behind it. Tool-callin

  • awesome-ralph by snwfdhmp · ⭐ 922

    A curated list of resources about Ralph, the AI coding technique that runs AI coding agents in automated loops

  • boss-skill by echoVic · ⭐ 562

    Boss Skill - BMAD 全自动研发流水线(多 Agent 编排)

  • claude-code-sub-agent-collective by vanzan01 · ⭐ 522

    🧠 Context Engineering Research - Not just another agent collection, but using research and context engineerin

More Claude Skill Tools

Explore other popular claude skill tools:

View all Claude Skill tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is bmalph?

bmalph is Unified AI Development Framework - BMAD phases with Ralph execution loop. It is categorized as a Claude Skill with 406 GitHub stars.

What programming language is bmalph written in?

bmalph is primarily written in TypeScript. It covers topics such as ai-development, bmad, claude-code.

How do I install or use bmalph?

You can find installation instructions and usage details in the bmalph GitHub repository at github.com/LarsCowe/bmalph. The project has 406 stars and 50 forks, indicating an active community.

What license does bmalph use?

bmalph is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to bmalph?

The top alternatives to bmalph on Agent Skills Hub include claude-code-bmad-skills, open-ralph-wiggum, pydantic-deepagents. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Claude Skill tools