Thinking Red Team
Thinking Red Team is an agent skill (a SKILL.md file) from tjboudreaux/cc-thinking-skills. For authorized security review of code, auth, or APIs you control, model the attacker, map the attack surface, and report only findings with a… It works with Claude Code, Codex, Cursor and GitHub Copilot and has 1,605 GitHub stars across a repository of 2 listed skills.
github.com/tjboudreaux/cc-thinking-skills/skills/thinking-red-team (opens in a new tab)
- Multi-skill repo
- Plugin marketplace
- Security
- Actively maintained
Add this skill
Claude
This repository is a Claude Code plugin marketplace. In Claude Code:
/plugin marketplace add tjboudreaux/cc-thinking-skills
/plugin install thinking-skills@thinking-skills-marketplaceIn the Claude apps, zip the thinking-red-team folder and upload it under Customize > Skills > + > Upload a skill (code execution must be on).
ChatGPT / Codex
Codex reads skills from .agents/skills/ in a repo or ~/.agents/skills/ for every project:
git clone --depth 1 https://github.com/tjboudreaux/cc-thinking-skills.git
cp -r cc-thinking-skills/skills/thinking-red-team .agents/skills/thinking-red-team # repo; ~/.agents/skills for all projectsStandalone skills also load in the ChatGPT desktop app.
Cursor
Cursor loads skills from .cursor/skills/ (or ~/.cursor/skills/) and also reads .claude/skills/:
git clone --depth 1 https://github.com/tjboudreaux/cc-thinking-skills.git
cp -r cc-thinking-skills/skills/thinking-red-team .cursor/skills/thinking-red-team # project; ~/.cursor/skills for all projectsSource (checked Oct 7, 2026): code.claude.com/docs/en/skills (opens in a new tab), code.claude.com/docs/en/plugin-marketplaces (opens in a new tab), support.claude.com/en/articles/12512180-using-skills-in-claude (opens in a new tab), learn.chatgpt.com/docs/build-skills (opens in a new tab), cursor.com/docs/context/skills (opens in a new tab)
What this skill does
For authorized security review of code, auth, or APIs you control, model the attacker, map the attack surface, and report only findings with a reproducible exploit path and verified mitigation. Adversarial security review of systems you are authorized to assess. Attack before an outsider does, but report only what you can actually break: every finding needs a concrete exploit path and a check that the proposed fix closes it.
More skills in tjboudreaux/cc-thinking-skills
2 skills are listed from this repository.
Similar skills
More security skills
Wizard
mattpocock/skills
Generate an interactive bash wizard that walks a human through steps only they can perform.
SecurityShellPostgres Patterns
affaan-m/ECC
PostgreSQL database patterns for query optimization, schema design, indexing, and security.
SecurityJavaScriptPonytail Audit
DietrichGebert/ponytail
Whole-repo audit for over-engineering. Like ponytail-review, but scans the entire codebase instead of a diff: a ranked list of what to delete, simplify, or replace with stdlib/native equivalents.
SecurityJavaScriptNext Bundle Optimizer
vercel/next.js
Audit and reduce Next.js browser initial-load work.
OfficialSecurityJavaScriptCloud
browser-use/browser-use
Documentation reference for using Browser Use Cloud — the hosted API and SDK for browser automation.
OfficialSecurityPythonSecurity And Hardening
addyosmani/agent-skills
Hardens code against vulnerabilities. Use when auditing an input handler for vulnerabilities, when handling user input, authentication, data storage, or external integrations, or when checking a…
SecurityJavaScript
What is the Thinking Red Team skill?
Thinking Red Team is an agent skill (a SKILL.md file) from tjboudreaux/cc-thinking-skills. For authorized security review of code, auth, or APIs you control, model the attacker, map the attack surface, and report only findings with a… It works with Claude Code, Codex, Cursor and GitHub Copilot and has 1,605 GitHub stars across a repository of 2 listed skills. Its SKILL.md lives at github.com/tjboudreaux/cc-thinking-skills/skills/thinking-red-team.
How do I install the Thinking Red Team skill?
In Claude Code, run /plugin marketplace add tjboudreaux/cc-thinking-skills and then /plugin install thinking-skills@thinking-skills-marketplace. For Codex or Cursor, copy the thinking-red-team folder into .agents/skills/ or .cursor/skills/.
Is the Thinking Red Team skill free?
Yes. The repository is open source under the MIT license.
Is Thinking Red Team maintained?
The repository's most recent commit was on Aug 7, 2026. Its latest release is v1.0.0. appsgit only lists skills from repositories with a commit in the last six months.