Skills — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Skills (Plugin) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Plugin marketplace repository for Ghost Security's AI-native application security skills for Claude Code.
With Claude Code:
claude plugin marketplace add ghostsecurity/skills
claude plugin install ghost@ghost-security
claude<div align="center"> <img src="https://media.ghostsecurity.ai/skills/installation.gif" alt="Installing the Ghost Security Agent Plugin with Skills" width="800"> </div>
Alternatively, install the skills plugin within Claude Code:
/plugin marketplace add ghostsecurity/skills
/plugin install ghost@ghost-securityCurrently, you will need to restart Claude Code for the plugin to load.
Full documentation, tutorials, and video guides at ghostsecurity.ai.
| Skill | Description |
|---|---|
ghost-repo-context | Build shared repository context (business criticality, sensitive data, component map) |
ghost-scan-deps | Exploitability analysis of dependency vulnerabilities (SCA) |
ghost-scan-secrets | Context assessment of detected secrets and credentials |
ghost-scan-code | AI-powered detection of code security issues (SAST) |
ghost-report | Combined security report across all scan results |
ghost-validate | Dynamic validation of findings against a live application (DAST) |
ghost-proxy | HTTP proxy for the ghost-validate skill |
<div align="center"> <img src="https://raw.githubusercontent.com/ghostsecurity/skills/1fe7998/docs/repo-context.gif" alt="Running the Ghost Security Agent repository context skill" width="800"> </div>
<div align="center"> <img src="https://raw.githubusercontent.com/ghostsecurity/skills/1fe7998/docs/scan-code.gif" alt="Running the Ghost Security Agent scan code skill" width="800"> </div>
<div align="center"> <img src="https://raw.githubusercontent.com/ghostsecurity/skills/1fe7998/docs/scan-deps.gif" alt="Running the Ghost Security Agent scan depdendencies skill" width="800"> </div>
<div align="center"> <img src="https://raw.githubusercontent.com/ghostsecurity/skills/1fe7998/docs/scan-secrets.gif" alt="Running the Ghost Security Agent scan secrets skill" width="800"> </div>
<div align="center"> <a href="https://www.youtube.com/watch?v=8Nzcs7bX1I4"><img src="https://media.ghostsecurity.ai/skills/validate.png" alt="Running the Ghost Security Agent scan secrets skill" width="800"></a> </div>
<div align="center"> <img src="https://raw.githubusercontent.com/ghostsecurity/skills/1fe7998/docs/report.gif" alt="Running the Ghost Security Agent report skill" width="800"> </div>
Open an Issue per the Contributing guidelines and Code of Conduct
This repository is licensed under the Apache License 2.0. See LICENSE for details.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.