vibe-sec
Vibe Sec is a tier-aware security audit and orchestration layer for vibe-coded apps that scans for security gaps (secrets, CVEs, auth flows, input validation), prioritizes findings by app type and deployment context, and generates fixes proportional to actual needs. It defers to gitleaks, OSV-Scanner, and Semgrep when available, falls back to an in-house baseline, and provides nine commands for scanning, auditing, fixing, CI gating, posture assessment, threat modeling, and security research.
Install
Source: https://github.com/estevanhernandez-stack-ed/vibe-sec/tree/HEAD/packages/vibe-sec
What it's made of
9 commands ยท 10 skills
- Commands
- 9
- Agents
- 0
- Skills
- 10
- MCP servers
- 0
- Hooks
- 0
What it needs & plugs into
- API keys
- none
- Paid services
- none detected
- External tools
- none
- Talks to
- nothing external detected
Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.
Is this your plugin?
Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (estevanhernandez-stack-ed).