MARKET RESEARCH

Security Codex plugins

Codex Plugin Stats: discover plugins, explore their skills and track catalog growth and observed changes.

Explore 5,323 plugins across 14 categories.

Security plugins 14

1–14 of 14

All query words must match. Use quotes for an exact phrase. Matches include publisher text, keywords and attributed research.

Discover Codex plugins by task and category
Plugin / developerCategoryFollow
Tahr SecurityTahr Security IncEvidence-backed application security workflows for finding, validating, and fixing vulnerabilities.

Publisher subtitle

Evidence-backed app security

Show in context →
2 more matching sources

Publisher description

Evidence-backed application security workflows for finding, validating, and fixing vulnerabilities.

Show in context →

Publisher full description

Review applications with an evidence-first security workflow that maps attack surfaces, tests authentication and access controls, traces dangerous inputs, models threats, and verifies fixes.

Show in context →
SecurityVersion 0.3.3
View details →
Aivana Security InvestigatorAivanaGuided, governed Microsoft security investigations for SOC analysts using a direct OAuth-protected KQL API.

Publisher capabilities · listing

Direct OAuth/OBO Defender XDR KQL API Read-only cross-domain investigations Evidence packages and analyst review

Show in context →
1 more matching sources

Publisher full description

…bounded, read-only Defender XDR queries through a direct OAuth/OBO API, then produces reproducible evidence packages and analyst review without response execution.

Show in context →
SecurityVersion 1.1.1
View details →
Authorised OSINT ToolkitRobert LaneNine skills for authorised organisational OSINT, exposure analysis, monitoring and security risk reporting.

Publisher capabilities · listing

…ity architecture Design exposure monitoring processes Quantify and prioritise security risk Produce evidence-led security reports

Show in context →
1 more matching sources

Publisher full description

…and cloud exposure review, identity-security assurance, monitoring design, risk quantification and evidence-led reporting. The replacement planning, identity and exposure-analysis skills exclude credentials, account enumeration, authentication testing, exploitation, access-control bypass and survei…

Show in context →
SecurityVersion 1.1.0
View details →
Skill Risk CheckOrbralScan agent skills and plugins locally for reviewable risk patterns before installation.

Publisher capabilities · listing

…s and plugins before install Find risky instructions, permissions, and downloads Show file-and-line evidence and remediation Export JSON, Markdown, and SARIF Never run or upload the target

Show in context →
1 more matching sources

Publisher full description

…t-injection patterns, and possible secret exposure, then returns ranked findings with file-and-line evidence and remediation. Do not use it as a safety certification; it never runs, installs, enables, or uploads the target.

Show in context →
SecurityVersion 0.1.5
View details →
Above SecurityAbove Security

Publisher description

…Ask in plain language to list open incidents and high-risk identities; inspect incident timelines, evidence, and insights; look up devices, monitored applications, and audit logs; and run investigative searches across your tenant. You can also triage from chat — set incident status, verdict, and re…

Show in context →
SecurityVersion 1.0.0
View details →
Authorized Security ReviewIssam Chaaban

Publisher description

Evidence-based security reviews and HackerOne report drafts for explicitly authorized programs, using existing connected tools.

Show in context →
SecurityVersion 1.0.1
View details →
BastionBastion Technologies

Publisher description

…mework compliance status across SOC 2, ISO 27001, HIPAA, and GDPR. Drill into failing tests, upload evidence, and submit controls for review. Ask your knowledge base security and compliance questions grounded in your own policies and documentation. Monitor code security findings and GitHub configura…

Show in context →
SecurityVersion 1.0.0
View details →
CertScore.ai Privacy ScannerCertScore.ai, LLC

Publisher description

Scan public websites for fast preliminary cookie/tracker evidence, then continue to persisted privacy findings, typed GPC response comparisons, bounded Accept and Reject observations, policy signals, and HTTPS/TLS. Results preserve provenance and explicit c…

Show in context →
SecurityVersion 2.0.0
View details →
Cloudflare SecurityThe Doers Firm

Publisher description

Audit and harden Cloudflare-hosted applications, data, accounts, and infrastructure with evidence-based security guidance.

Show in context →
1 more matching sources

Publisher full description

…F, and deployment workflows. It uses authorized read-only account data and supplied code to produce evidence-backed findings, prioritized fixes, side-effect warnings, and verification steps. Customer support: https://thedoersfirm.com/support. It cannot guarantee complete security.

Show in context →
SecurityVersion 0.1.0
View details →
DecionisBinaries

Publisher description

…an request verified approval through Presence and re-evaluate the action using the resulting signed evidence. Every evaluation produces a verifiable Decision Dossier and cryptographic evidence for audit and accountability. Use Decionis to govern agent-initiated payments, refunds, commerce operations…

Show in context →
SecurityVersion 1.0.1
View details →
PalisadeSamuel Chenard

Publisher description

…es and sending sources, inspect DNS and SPF records, and retrieve remediation tasks with supporting evidence. Use the results to prioritize fixes and prepare DNS change plans. This plugin provides read-only access to your Palisade account: it does not publish DNS records, modify domains, send email,…

Show in context →
SecurityVersion 1.0.0
View details →
Prompt Injection SecurityThe Doers Firm

Publisher description

Assess prompt injection exposure in prompts, AI workflows, retrieved content, and tool designs with evidence-based findings and mitigations.

Show in context →
1 more matching sources

Publisher full description

…ation designs, retrieved documents, web content, and tool workflows for prompt-injection risks. Get evidence-linked attack-path analysis, calibrated severity and confidence, layered mitigations, and safe regression tests. Results are advisory and cannot guarantee prevention. Customer support: https:…

Show in context →
SecurityVersion 0.1.0
View details →
RelayShield Scam ChecksRelayShield

Publisher description

…key. Verdicts are FLAGGED or unknown — the tools never report anything as safe, because absence of evidence is not evidence of absence.

Show in context →
SecurityVersion 1.0.0
View details →
Vibe Code Security ReviewerThe Doers Firm

Publisher full description

Vibe Code Security Reviewer performs advanced evidence-based security reviews of AI-generated and rapidly built applications. It checks Supabase RLS, authentication, authorization, tenant isolation, API leaks and misuse, inputs, secrets, uploads,…

Show in context →
SecurityVersion 0.1.0
View details →