shep — security grade SAFE, quality 65/100

Security audit verdict: SAFE · quality 65/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by shep-ai · Agent Tool · ★ 250

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is shep safe to install? View the security audit →

About shep

Run a fleet of coding agents. Merge real PRs. Shep is the open-source orchestrator for the autonomous development cycle. It runs parallel AI agents — Claude Code, Cursor CLI, Gemini CLI, or any agent CLI — each in its own isolated git worktree, and drives every feature from a one-line description through optional spec gates, implementation, commit, push, CI watching with auto-fix, and a draft pull request. Agent-agnostic, local-first, MIT-licensed. Quickstart bash npx @shepai/cli # try it instantly — open

agent-orchestrationagentic-aiaiai-agentsai-code-generationai-codingai-nativeautomationclaudeclaude-code

Quick Facts

Stars250
Forks54
LanguageTypeScript
CategoryAgent Tool
LicenseMIT
Quality Score64.650666258248/100
Open Issues6
Last Updated2026-09-08
Created2026-02-01
Platformsclaude-code, cli, gemini, node
Est. Tokens~16k

Compatible Skills

These tools work well together with shep for enhanced workflows:

  • grace-marketplace — semantic(0.21)+complementary+rare_topics+same_lang+similar_pop+shared_platform (62%)
  • Multi-AI-Workflow — semantic(0.18)+complementary+rare_topics+same_lang+similar_pop+shared_platform (61%)
  • ai-maestro — semantic(0.26)+complementary+rare_topics+same_lang+similar_pop+shared_platform (58%)
  • swarm-orchestrator — semantic(0.21)+complementary+rare_topics+same_lang+similar_pop+shared_platform (57%)
  • sub-agents-mcp — semantic(0.18)+complementary+same_lang+similar_pop+shared_platform (56%)

shep alternative? Top 6 similar tools

Looking for a shep alternative? If you're comparing shep with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • vsync by nicepkg · ⭐ 55

    Sync MCP servers, Skills, Agents & Commands across Claude Code, Cursor, OpenCode, Codex. One config, all tools

  • vnx-orchestration by Vinix24 · ⭐ 61

    Governance-first orchestration for Claude Code, Codex, and Gemini CLI — parallel workers, receipts, quality ga

  • Overture by SixHq · ⭐ 630

    Overture is an open-source, locally running web interface delivered as an MCP (Model Context Protocol) server

  • genie by automagik-dev · ⭐ 334

    Wishes in, PRs out. CLI agent that interviews you, plans the work, dispatches parallel agents in isolated work

  • forge-orchestrator by nxtg-ai · ⭐ 135

    Forge Orchestrator: Multi-AI task orchestration. File locking, knowledge capture, drift detection. Rust.

  • groundcrew by ClipboardHealth · ⭐ 63

    Dispatch your task backlog to local, interactive AI coding agents. One git worktree per task, sandboxed by def

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is shep?

shep is Ship features 10x faster. Built In Auto: Memory, K8S Agent & Security (SDD+SDLC) . 😇. It is categorized as a Agent Tool with 250 GitHub stars.

What programming language is shep written in?

shep is primarily written in TypeScript. It covers topics such as agent-orchestration, agentic-ai, ai.

How do I install or use shep?

You can find installation instructions and usage details in the shep GitHub repository at github.com/shep-ai/shep. The project has 250 stars and 54 forks, indicating an active community.

What license does shep use?

shep is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to shep?

The top alternatives to shep on Agent Skills Hub include vsync, vnx-orchestration, Overture. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools