alxayo/sec-check
Probably the most SKILLed security agent. Scan untrusted code for red flags before you run it—exfiltration, reverse shells, backdoors, and supply‑chain traps.
It operates as an agentic security scanning system, discovering and executing local deterministic security tools like Bandit, Trivy, and Checkov against relevant files. The project then feeds these raw findings into an LLM for semantic analysis, reasoning about intent and context to generate structured Markdown reports with remediation advice. Sec-Check integrates with GitHub Copilot, providing custom agents, skills, and prompts for enhanced analysis within the VS Code environment or via its standalone CLI for CI/CD pipelines.
Stars
8
Forks
4
Language
Python
License
—
Category
Last pushed
Mar 10, 2026
Commits (30d)
0
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/agents/alxayo/sec-check"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
Higher-rated alternatives
PlamenTSV/plamen
Autonomous Web3 security audit agent for Claude Code
miunasu/IDA-Skill
使用skill让 AI Agent 像安全分析师一样分析恶意样本 | AI Agent skill for automated malware analysis using IDA Pro
koatora20/guard-scanner
🛡️ Agent Security Scanner — 364 patterns, 35 threat categories, 27 runtime checks. Zero-Trust...
aidongise-cell/prism-scanner
Security scanner for AI Agent skills, plugins, and MCP servers
Zandereins/schliff
Deterministic quality scorer for AI agent instruction files — 8-dimension scoring with security,...