Agentlas Security Scan
Agentlas Security Scan is an agent skill (a SKILL.md file) from agentlas-ai/Agentlas-OS. Agents load it when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment)… It works with Claude Code, Codex, Cursor, Gemini CLI, GitHub Copilot and OpenCode and has 1,568 GitHub stars across a repository of 2 listed skills.
github.com/agentlas-ai/Agentlas-OS/skills/agentlas-security-scan (opens in a new tab)
- Multi-skill repo
- Plugin marketplace
- Security
- Actively maintained
Add this skill
Claude
This repository is a Claude Code plugin marketplace. In Claude Code:
/plugin marketplace add agentlas-ai/Agentlas-OS
/plugin install hephaestus@agentlas-core-engineIn the Claude apps, zip the agentlas-security-scan folder and upload it under Customize > Skills > + > Upload a skill (code execution must be on).
ChatGPT / Codex
Codex reads skills from .agents/skills/ in a repo or ~/.agents/skills/ for every project:
git clone --depth 1 https://github.com/agentlas-ai/Agentlas-OS.git
cp -r Agentlas-OS/skills/agentlas-security-scan .agents/skills/agentlas-security-scan # repo; ~/.agents/skills for all projectsStandalone skills also load in the ChatGPT desktop app.
Cursor
Cursor loads skills from .cursor/skills/ (or ~/.cursor/skills/) and also reads .claude/skills/:
git clone --depth 1 https://github.com/agentlas-ai/Agentlas-OS.git
cp -r Agentlas-OS/skills/agentlas-security-scan .cursor/skills/agentlas-security-scan # project; ~/.cursor/skills for all projectsSource (checked Oct 7, 2026): code.claude.com/docs/en/skills (opens in a new tab), code.claude.com/docs/en/plugin-marketplaces (opens in a new tab), support.claude.com/en/articles/12512180-using-skills-in-claude (opens in a new tab), learn.chatgpt.com/docs/build-skills (opens in a new tab), cursor.com/docs/context/skills (opens in a new tab)
What this skill does
Use when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment) before private sync or public publish, or when asked to run/interpret hephaestus security scan. Plan §6.2: stage 1 is static rule screening, stage 2 is a judgment made by the user's own LLM session (BYOK). The Cloud server never calls an LLM (v1 Non-Goal: no server-side model execution). You — the agent running this skill — are the stage-2 judge.
When it triggers
- Use when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment) before private sync or public publish, or when asked to run/interpret hephaestus security scan.
More skills in agentlas-ai/Agentlas-OS
2 skills are listed from this repository.
Similar skills
More security skills
Wizard
mattpocock/skills
Generate an interactive bash wizard that walks a human through steps only they can perform.
SecurityShellPostgres Patterns
affaan-m/ECC
PostgreSQL database patterns for query optimization, schema design, indexing, and security.
SecurityJavaScriptPonytail Audit
DietrichGebert/ponytail
Whole-repo audit for over-engineering. Like ponytail-review, but scans the entire codebase instead of a diff: a ranked list of what to delete, simplify, or replace with stdlib/native equivalents.
SecurityJavaScriptNext Bundle Optimizer
vercel/next.js
Audit and reduce Next.js browser initial-load work.
OfficialSecurityJavaScriptCloud
browser-use/browser-use
Documentation reference for using Browser Use Cloud — the hosted API and SDK for browser automation.
OfficialSecurityPythonSecurity And Hardening
addyosmani/agent-skills
Hardens code against vulnerabilities. Use when auditing an input handler for vulnerabilities, when handling user input, authentication, data storage, or external integrations, or when checking a…
SecurityJavaScript
What is the Agentlas Security Scan skill?
Agentlas Security Scan is an agent skill (a SKILL.md file) from agentlas-ai/Agentlas-OS. Agents load it when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment)… It works with Claude Code, Codex, Cursor, Gemini CLI, GitHub Copilot and OpenCode and has 1,568 GitHub stars across a repository of 2 listed skills. Its SKILL.md lives at github.com/agentlas-ai/Agentlas-OS/skills/agentlas-security-scan.
How do I install the Agentlas Security Scan skill?
In Claude Code, run /plugin marketplace add agentlas-ai/Agentlas-OS and then /plugin install hephaestus@agentlas-core-engine. For Codex or Cursor, copy the agentlas-security-scan folder into .agents/skills/ or .cursor/skills/.
Is the Agentlas Security Scan skill free?
Yes. The repository is open source under the Apache-2.0 license.
Is Agentlas Security Scan maintained?
The repository's most recent commit was on Oct 6, 2026. Its latest release is v1.2.57. appsgit only lists skills from repositories with a commit in the last six months.