MARKET RESEARCH

Security Codex plugins

Codex Plugin Stats: discover plugins, explore their skills and track catalog growth and observed changes.

Explore 5,323 plugins across 14 categories.

Security plugins 8

1–8 of 8

All query words must match. Use quotes for an exact phrase. Matches include publisher text, keywords and attributed research.

Discover Codex plugins by task and category
Plugin / developerCategoryFollow
Endor Labs Agent KitEndor LabsEndor Labs security workflows and setup for Codex.

Plugin name

Endor Labs Agent Kit

Show in context →
3 more matching sources

Package name

endor-labs-agent-kit

Show in context →

Publisher subtitle

Endor Labs Agentic AppSec

Show in context →

Publisher capabilities · listing

Security Remediation Investigation Application Security Agentic Workflows Agentic Remediation Agentic AppSec

Show in context →
SecurityVersion 2.2.2
View details →
Skill Risk CheckOrbralScan agent skills and plugins locally for reviewable risk patterns before installation.

Package name

agent-skillguard

Show in context →
3 more matching sources

Publisher keywords · listing

plugin-security agent-skills pre-install-scan prompt-injection supply-chain sarif codex claude-code

Show in context →

Publisher description

Scan agent skills and plugins locally for reviewable risk patterns before installation.

Show in context →

Publisher full description

Use this before installing an agent skill or plugin. Skill Risk Check scans local files for hidden instructions, broad permissions, suspicious downloads, prompt-injection patterns, and possible secret exposure, then returns ranked…

Show in context →
SecurityVersion 0.1.5
View details →
Neura Relay MCPRoman PelevinNeura Relay MCP helps ChatGPT-connected workflows review proposed agent actions before execution. It returns Decision Receipts, trace ref...

Publisher subtitle

Govern agent actions

Show in context →
1 more matching sources

Publisher description

Neura Relay MCP helps ChatGPT-connected workflows review proposed agent actions before execution. It returns Decision Receipts, trace refs, and Registry context without executing downstream actions or exposing private payloads.

Show in context →
SecurityVersion 1.0.0
View details →
Ansvar GatewayAnsvar AI

Publisher description

Ansvar Systems AB is a Swedish cybersecurity company that gives AI agents verifiable access to law, regulation and security standards. Customers connect the AI assistant they already use (Claude, Microsoft Copilot, ChatGPT or any MCP-compatible client) to the Ansvar…

Show in context →
SecurityVersion 1.0.0
View details →
Atbash SafetyAtbash AI

Publisher full description

Atbash Safety checks supported Codex tool calls against your Atbash agent's safety policy before execution. The package includes a local PreToolUse hook, the bundled production Atbash SDK, and a setup and troubleshooting skill; it does not use an MCP server. Requires…

Show in context →
SecurityVersion 0.3.3
View details →
DecionisBinaries

Publisher description

Decionis is an execution-authority layer for AI agents. Before an agent takes a consequential action, Decionis evaluates the proposed action against organization policy and determines whether it may proceed, must be held, or requires additional aut…

Show in context →
SecurityVersion 1.0.1
View details →
Orca SecurityOrca Security

Publisher description

…soning without writing the prompts, Orca maintains the AI Skills Hub, an open-source GitHub repo of agent skills. Type "triage alert orca-9012345" and the orca-alert-triage skill handles retrieval, analysis, and formatting. Teams can fork it, modify it, and extend it to their own use cases. The resu…

Show in context →
SecurityVersion 1.0.0
View details →
SkarnSkarn Software OÜ

Publisher full description

…ngs that apply to it, drawn from MITRE ATLAS, the OWASP Top 10 for LLM Applications 2025, the OWASP Agentic Top 10, and CWE. skarn vet reads the assistant configuration files on the same machine and reports risky declarations: hooks, MCP servers, and permission grants that could run remote code or s…

Show in context →
SecurityVersion 0.27.0
View details →