Skip to content
appsgit

Agentlas Security Scan

Agentlas Security Scan is an agent skill (a SKILL.md file) from agentlas-ai/Agentlas-OS. Agents load it when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment)… It works with Claude Code, Codex, Cursor, Gemini CLI, GitHub Copilot and OpenCode and has 1,568 GitHub stars across a repository of 2 listed skills.

github.com/agentlas-ai/Agentlas-OS/skills/agentlas-security-scan (opens in a new tab)

  • Multi-skill repo
  • Plugin marketplace
  • Security
  • Actively maintained

Add this skill

Claude

This repository is a Claude Code plugin marketplace. In Claude Code:

/plugin marketplace add agentlas-ai/Agentlas-OS
/plugin install hephaestus@agentlas-core-engine

In the Claude apps, zip the agentlas-security-scan folder and upload it under Customize > Skills > + > Upload a skill (code execution must be on).

ChatGPT / Codex

Codex reads skills from .agents/skills/ in a repo or ~/.agents/skills/ for every project:

git clone --depth 1 https://github.com/agentlas-ai/Agentlas-OS.git
cp -r Agentlas-OS/skills/agentlas-security-scan .agents/skills/agentlas-security-scan   # repo; ~/.agents/skills for all projects

Standalone skills also load in the ChatGPT desktop app.

Cursor

Cursor loads skills from .cursor/skills/ (or ~/.cursor/skills/) and also reads .claude/skills/:

git clone --depth 1 https://github.com/agentlas-ai/Agentlas-OS.git
cp -r Agentlas-OS/skills/agentlas-security-scan .cursor/skills/agentlas-security-scan   # project; ~/.cursor/skills for all projects

Source (checked Oct 7, 2026): code.claude.com/docs/en/skills (opens in a new tab), code.claude.com/docs/en/plugin-marketplaces (opens in a new tab), support.claude.com/en/articles/12512180-using-skills-in-claude (opens in a new tab), learn.chatgpt.com/docs/build-skills (opens in a new tab), cursor.com/docs/context/skills (opens in a new tab)

What this skill does

Use when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment) before private sync or public publish, or when asked to run/interpret hephaestus security scan. Plan §6.2: stage 1 is static rule screening, stage 2 is a judgment made by the user's own LLM session (BYOK). The Cloud server never calls an LLM (v1 Non-Goal: no server-side model execution). You — the agent running this skill — are the stage-2 judge.

When it triggers

  • Use when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment) before private sync or public publish, or when asked to run/interpret hephaestus security scan.

More skills in agentlas-ai/Agentlas-OS

2 skills are listed from this repository.

FAQ

Agentlas Security Scan FAQ

Still curious? Email info@appsgit.com.

What is the Agentlas Security Scan skill?

Agentlas Security Scan is an agent skill (a SKILL.md file) from agentlas-ai/Agentlas-OS. Agents load it when an agent folder must pass the Agentlas Cloud 2-stage security scan (static rules + BYOK LLM judgment)… It works with Claude Code, Codex, Cursor, Gemini CLI, GitHub Copilot and OpenCode and has 1,568 GitHub stars across a repository of 2 listed skills. Its SKILL.md lives at github.com/agentlas-ai/Agentlas-OS/skills/agentlas-security-scan.

How do I install the Agentlas Security Scan skill?

In Claude Code, run /plugin marketplace add agentlas-ai/Agentlas-OS and then /plugin install hephaestus@agentlas-core-engine. For Codex or Cursor, copy the agentlas-security-scan folder into .agents/skills/ or .cursor/skills/.

Is the Agentlas Security Scan skill free?

Yes. The repository is open source under the Apache-2.0 license.

Is Agentlas Security Scan maintained?

The repository's most recent commit was on Oct 6, 2026. Its latest release is v1.2.57. appsgit only lists skills from repositories with a commit in the last six months.