PlugMyPlugin
โ† Browse

security-guidance

alirezarezvani โ˜… 26959

This Claude Code plugin hooks into PreToolUse events to detect and warn about 12 common security anti-patterns (command injection, XSS, SQL injection, unsafe deserialization, code injection, and GitHub Actions workflow injection) before code execution happens. It caches session state and auto-cleans stale files after 30 days, and can be disabled per-session via environment variable.

Security Code Review free runs shell

Install

> /plugin marketplace add alirezarezvani/claude-skills/tree/HEAD/engineering/security-guidance
> /plugin install security-guidance

Source: https://github.com/alirezarezvani/claude-skills/tree/HEAD/engineering/security-guidance

What it's made of

1 skill ยท 1 hook

Commands
0
Agents
0
Skills
1
MCP servers
0
Hooks
1 ยท PreToolUse

What it needs & plugs into

API keys
none
Paid services
none detected
External tools
python3
Talks to
nothing external detected

Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.

Is this your plugin?

Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (alirezarezvani).