MARKET RESEARCH

Security Codex plugins

Codex Plugin Stats: discover plugins, explore their skills and track catalog growth and observed changes.

Explore 5,323 plugins across 14 categories.

Security plugins 27

1–27 of 27

All query words must match. Use quotes for an exact phrase. Matches include publisher text, keywords and attributed research.

Discover Codex plugins by task and category
Plugin / developerCategoryFollow
CertScore.ai Privacy ScannerCertScore.ai, LLCScan public websites for fast preliminary cookie/tracker evidence, then continue to persisted privacy findings, typed GPC response compar...

Plugin name

CertScore.ai Privacy Scanner

Show in context →
2 more matching sources

Publisher subtitle

GDPR, cookies & trackers

Show in context →

Publisher description

Scan public websites for fast preliminary cookie/tracker evidence, then continue to persisted privacy findings, typed GPC response comparisons, bounded Accept and Reject observations, policy signals, and HTTPS/TLS. Results preserv…

Show in context →
SecurityVersion 2.0.0
View details →
MCP PrecheckPolicyLayerCheck MCP servers against the PolicyLayer registry before connecting to them.

Plugin name

MCP Precheck

Show in context →
2 more matching sources

Package name

mcp-precheck

Show in context →

Publisher full description

Check configured or proposed MCP servers against PolicyLayer registry records for identity, authentication posture, tool capabilities, risk grade and recent changes.

Show in context →
SecurityVersion 1.0.0
View details →
PrivacyHawkPrivacyHawk, IncUse PrivacyHawk with ChatGPT to Take Control of Your Personal Data -- Manage, control, and delete your data from thousands of businesses ...

Plugin name

PrivacyHawk

Show in context →
3 more matching sources

Publisher subtitle

Protect your personal data

Show in context →

Publisher

PrivacyHawk, Inc

Show in context →

Publisher description

Use PrivacyHawk with ChatGPT to Take Control of Your Personal Data -- Manage, control, and delete your data from thousands of businesses exploiting your personal information. PrivacyHawk helps you reduce…

Show in context →
SecurityVersion 1.0.0
View details →
Prompt Injection SecurityThe Doers FirmAssess prompt injection exposure in prompts, AI workflows, retrieved content, and tool designs with evidence-based findings and mitigations.

Plugin name

Prompt Injection Security

Show in context →
3 more matching sources

Publisher subtitle

Assess prompt injection risks

Show in context →

Publisher description

Assess prompt injection exposure in prompts, AI workflows, retrieved content, and tool designs with evidence-based findings and mitigations.

Show in context →

Publisher full description

Review prompts, AI application designs, retrieved documents, web content, and tool workflows for prompt-injection risks. Get evidence-linked attack-path analysis, calibrated severity and confidence, layered…

Show in context →
SecurityVersion 0.1.0
View details →
ProofXCyberSec AI LtdProofX protects your digital content with cryptographic signatures. What you can do: - Protect your articles, poems, scripts, code, and ...

Plugin name

ProofX

Show in context →
2 more matching sources

Publisher subtitle

Protect and verify content

Show in context →

Publisher description

ProofX protects your digital content with cryptographic signatures. What you can do: - Protect your articles, poems, scripts, code, and text with tamper-proof cryptographic proof - Verify if content i…

Show in context →
SecurityVersion 1.0.0
View details →
Cloudflare SecurityThe Doers FirmAudit and harden Cloudflare-hosted applications, data, accounts, and infrastructure with evidence-based security guidance.

Publisher subtitle

Harden Cloudflare projects

Show in context →
1 more matching sources

Publisher full description

…gins, WAF, and deployment workflows. It uses authorized read-only account data and supplied code to produce evidence-backed findings, prioritized fixes, side-effect warnings, and verification steps. Customer support: https://thedoersfirm.com/support. It cannot guarantee complete security.

Show in context →
SecurityVersion 0.1.0
View details →
CookieYesCookieYes LimitedManage cookie consent and compliance without leaving ChatGPT. Privacy laws like GDPR and CCPA require websites to get visitor consent bef...

Publisher subtitle

Web privacy & cookie consent

Show in context →
1 more matching sources

Publisher description

Manage cookie consent and compliance without leaving ChatGPT. Privacy laws like GDPR and CCPA require websites to get visitor consent before using cookies. CookieYes is the consent management platform (CMP) that handles this for 1.5M+ websites. This connector pu…

Show in context →
SecurityVersion 1.0.0
View details →
Authorised OSINT ToolkitRobert LaneNine skills for authorised organisational OSINT, exposure analysis, monitoring and security risk reporting.

Publisher capabilities · listing

…s Review email and cloud exposure Analyse identity security architecture Design exposure monitoring processes Quantify and prioritise security risk Produce evidence-led security reports

Show in context →
SecurityVersion 1.1.0
View details →
GuardioGuardioCheck suspicious links, review known data leaks, and understand your Guardio protection.

Publisher capabilities · listing

…heck suspicious links Check links in messages Look up known email and phone breaches Review account protection and scan activity Review security recommendations Set up browser protection Send requested product feedback

Show in context →
2 more matching sources

Publisher description

Check suspicious links, review known data leaks, and understand your Guardio protection.

Show in context →

Publisher full description

Guardio helps you check suspicious links and understand your online protection from ChatGPT and Codex. Check a website before opening it, or check links extracted from a suspicious message without sending the message body to Guardio. Connect your Guardio account to re…

Show in context →
SecurityVersion 0.2.2
View details →
Skill Risk CheckOrbralScan agent skills and plugins locally for reviewable risk patterns before installation.

Publisher keywords · listing

plugin-security agent-skills pre-install-scan prompt-injection supply-chain sarif codex claude-code

Show in context →
1 more matching sources

Publisher full description

…kill Risk Check scans local files for hidden instructions, broad permissions, suspicious downloads, prompt-injection patterns, and possible secret exposure, then returns ranked findings with file-and-line evidence and remediation. Do not use it as a safety certification; it never runs, installs, ena…

Show in context →
SecurityVersion 0.1.5
View details →
Aivana Security InvestigatorAivana

Publisher description

Guided, governed Microsoft security investigations for SOC analysts using a direct OAuth-protected KQL API.

Show in context →
1 more matching sources

Publisher full description

…arent KQL and executes bounded, read-only Defender XDR queries through a direct OAuth/OBO API, then produces reproducible evidence packages and analyst review without response execution.

Show in context →
SecurityVersion 1.1.1
View details →
AJAXX Data ScrubberFORTRESS APPS LLC

Publisher description

AJAXX Data Scrubber in ChatGPT provides read-only information about digital privacy risks and data broker exposure. It explains how personal data appears online, how removal services work, and answers common questions about scans,…

Show in context →
SecurityVersion 1.0.0
View details →
Ansvar GatewayAnsvar AI

Publisher description

…y in that assistant: regulatory gap analyses, threat models (STRIDE/LINDDUN, TARA), DPIAs and audit preparation, grounded in more than 300 curated corpora of EU and international legislation, case law, preparatory works, regulator guidance and security standards. Every answer carries paragraph-level…

Show in context →
SecurityVersion 1.0.0
View details →
Atbash SafetyAtbash AI

Publisher description

Automatically guards supported Codex tool calls with Atbash safety judgments and provides secure local setup guidance.

Show in context →
1 more matching sources

Publisher full description

…tool calls against your Atbash agent's safety policy before execution. The package includes a local PreToolUse hook, the bundled production Atbash SDK, and a setup and troubleshooting skill; it does not use an MCP server. Requires a supported local Codex environment, Node.js 22.13 or newer, an Atbas…

Show in context →
SecurityVersion 0.3.3
View details →
Authorized Security ReviewIssam Chaaban

Publisher description

Evidence-based security reviews and HackerOne report drafts for explicitly authorized programs, using existing connected tools.

Show in context →
SecurityVersion 1.0.1
View details →
BastionBastion Technologies

Publisher description

…ough natural conversation. Review framework compliance status across SOC 2, ISO 27001, HIPAA, and GDPR. Drill into failing tests, upload evidence, and submit controls for review. Ask your knowledge base security and compliance questions grounded in your own policies and documentation. Monitor code s…

Show in context →
SecurityVersion 1.0.0
View details →
BitdefenderBitdefender

Publisher description

…unterfeit websites which includes: - Link Checker - Phone Number - Password Generator - Digital Footprint Checker - Product Recommendations

Show in context →
SecurityVersion 1.0.0
View details →
DecionisBinaries

Publisher description

…authority layer for AI agents. Before an agent takes a consequential action, Decionis evaluates the proposed action against organization policy and determines whether it may proceed, must be held, or requires additional authority. When human approval is required, Decionis can request verified approv…

Show in context →
SecurityVersion 1.0.1
View details →
Keybookailuntz

Publisher description

…ths in a user-maintained local YAML file; inject only the selected value into an authorized trusted process without printing secrets.

Show in context →
SecurityVersion 0.6.1
View details →
MalwarebytesMalwarebytes Inc.

Publisher description

Protect yourself from phishing and scams by verifying links, domains, emails, and phone numbers before you click, call, or reply. Get instant reputation insights, ownership details, and risk levels fo…

Show in context →
SecurityVersion 1.0.0
View details →
Neura Relay MCPRoman Pelevin

Publisher description

Neura Relay MCP helps ChatGPT-connected workflows review proposed agent actions before execution. It returns Decision Receipts, trace refs, and Registry context without executing downstream actions or exposing private payloads.

Show in context →
SecurityVersion 1.0.0
View details →
Orca SecurityOrca Security

Publisher description

…and business impact from the first response. For teams that want the reasoning without writing the prompts, Orca maintains the AI Skills Hub, an open-source GitHub repo of agent skills. Type "triage alert orca-9012345" and the orca-alert-triage skill handles retrieval, analysis, and formatting. Tea…

Show in context →
SecurityVersion 1.0.0
View details →
PalisadeSamuel Chenard

Publisher description

…ct DNS and SPF records, and retrieve remediation tasks with supporting evidence. Use the results to prioritize fixes and prepare DNS change plans. This plugin provides read-only access to your Palisade account: it does not publish DNS records, modify domains, send email, or manage billing. A Palisad…

Show in context →
SecurityVersion 1.0.0
View details →
Radar LiteRed Sift

Publisher description

…r Lite scans your domain, visualizes security scores on a radar chart, and generates a summary with prioritized findings and remediation guidance. Try prompts like: - Radar Lite Evaluate the DNS security of example.com - Radar Lite Compare the DMARC configuration of domain1.com to domain2.com - Rada…

Show in context →
SecurityVersion 2.0.0
View details →
SafeguardSafeguard

Publisher description

…users inspect software supply chain risk from ChatGPT, including vulnerabilities, SBOMs, findings, projects, components, policies, guardrails, compliance reports, remediation plans, SCM integrations, notifications, and organization workflows.

Show in context →
SecurityVersion 1.0.0
View details →
SkarnSkarn Software OÜ

Publisher full description

…transcripts that AI coding assistants have already written to disk and reports leaked credentials, prompt injection, exfiltration attempts, and the chains that connect them; each finding carries the standards mappings that apply to it, drawn from MITRE ATLAS, the OWASP Top 10 for LLM Applications 2…

Show in context →
SecurityVersion 0.27.0
View details →
Vibe Code Security ReviewerThe Doers Firm

Publisher description

Advanced security review for AI-generated applications, Supabase RLS, APIs, secrets, databases, and production deployments.

Show in context →
1 more matching sources

Publisher full description

…ts, uploads, dependencies, data exposure, AI tools, deployment configuration, and abuse paths, then prioritizes findings with practical remediation and verification steps.

Show in context →
SecurityVersion 0.1.0
View details →