Security Codex plugins
Codex Plugin Stats: discover plugins, explore their skills and track catalog growth and observed changes.
Explore 5,319 plugins across 14 categories.
Security plugins 22
1–22 of 22All query words must match. Use quotes for an exact phrase. Matches include publisher text, keywords and attributed research.
| Plugin / developer | Category | Follow |
|---|---|---|
Above SecurityAbove SecurityAbove brings your identity-security data into ChatGPT. Ask in plain language to list open incidents and high-risk identities; inspect inc... Plugin name Above Security Show in context →1 more matching sourcesPublisher description Above brings your identity-security data into ChatGPT. Ask in plain language to list open incidents and high-risk identities; inspect incident timelines, evidence, and insights; look up devices, monitored applications, and audi… Show in context → |
SecurityVersion 1.0.0 | View details → |
Aivana Security InvestigatorAivanaGuided, governed Microsoft security investigations for SOC analysts using a direct OAuth-protected KQL API. Plugin name Aivana Security Investigator Show in context →2 more matching sourcesPublisher keywords · listing defender-xdr soc security-investigation kql microsoft-graph sentinel Show in context →Publisher description Guided, governed Microsoft security investigations for SOC analysts using a direct OAuth-protected KQL API. Show in context → |
SecurityVersion 1.1.1 | View details → |
Authorized Security ReviewIssam ChaabanEvidence-based security reviews and HackerOne report drafts for explicitly authorized programs, using existing connected tools. Plugin name Authorized Security Review Show in context →5 more matching sourcesPublisher description Evidence-based security reviews and HackerOne report drafts for explicitly authorized programs, using existing connected tools. Show in context →Publisher full description An independent skills-only workflow for authorized security research. Uses tools already connected to the active chat. Supports source review, scoped web/API investigation, validation, and HackerOne report drafting. Does not bundle testing tools or th… Show in context → |
SecurityVersion 1.0.1 | View details → |
Cloudflare SecurityThe Doers FirmAudit and harden Cloudflare-hosted applications, data, accounts, and infrastructure with evidence-based security guidance. Plugin name Cloudflare Security Show in context →3 more matching sourcesPublisher description …t and harden Cloudflare-hosted applications, data, accounts, and infrastructure with evidence-based security guidance. Show in context →Publisher full description Cloudflare Security reviews Cloudflare account configuration, Workers, Pages, D1, storage, APIs, DNS, TLS, origins, WAF, and deployment workflows. It uses authorized read-only account data and supplied code to p… Show in context → |
SecurityVersion 0.1.0 | View details → |
Codex SecurityOpenAICodex Security workflows for security scans, analysis, and investigation. Plugin name Codex Security Show in context →5 more matching sourcesPublisher keywords · listing security code-review diff-review appsec threat-modeling Show in context →Publisher description Codex Security workflows for security scans, analysis, and investigation. Show in context →Publisher full description Codex Security packages reusable workflows for security scans, analysis, validation, and investigation across code, diffs, and related artifacts. Show in context → |
SecurityVersion 0.1.31 | View details → |
Codex Security CloudOpenAICloud security scans, findings, and continuous repository monitoring. Plugin name Codex Security Cloud Show in context →3 more matching sourcesPublisher description Cloud security scans, findings, and continuous repository monitoring. Show in context →Publisher full description Codex Security Cloud brings cloud security scans, findings, and continuous repository monitoring into your workspace. Show in context → |
SecurityVersion 0.1.1 | View details → |
Orca SecurityOrca SecurityExtend Orca Security's reasoning into ChatGPT. That means every asset, alert, identity, and dependency is already stitched together in Or... Plugin name Orca Security Show in context →1 more matching sourcesPublisher description Extend Orca Security's reasoning into ChatGPT. That means every asset, alert, identity, and dependency is already stitched together in Orca’s Unified Data Model before users ask a question. Every answer factors i… Show in context → |
SecurityVersion 1.0.0 | View details → |
Prompt Injection SecurityThe Doers FirmAssess prompt injection exposure in prompts, AI workflows, retrieved content, and tool designs with evidence-based findings and mitigations.
|
SecurityVersion 0.1.0 | View details → |
Tahr SecurityTahr Security IncEvidence-backed application security workflows for finding, validating, and fixing vulnerabilities. Plugin name Tahr Security Show in context →5 more matching sourcesPublisher description Evidence-backed application security workflows for finding, validating, and fixing vulnerabilities. Show in context →Publisher full description Review applications with an evidence-first security workflow that maps attack surfaces, tests authentication and access controls, traces dangerous inputs, models threats, and verifies fixes. Show in context → |
SecurityVersion 0.3.3 | View details → |
Vibe Code Security ReviewerThe Doers FirmAdvanced security review for AI-generated applications, Supabase RLS, APIs, secrets, databases, and production deployments. Plugin name Vibe Code Security Reviewer Show in context →4 more matching sourcesPublisher description Advanced security review for AI-generated applications, Supabase RLS, APIs, secrets, databases, and production deployments. Show in context →Publisher full description Vibe Code Security Reviewer performs advanced evidence-based security reviews of AI-generated and rapidly built applications. It checks Supabase RLS, authentication, authorization, tenant isolation, API leaks a… Show in context → |
SecurityVersion 0.1.0 | View details → |
Ansvar GatewayAnsvar AIAnsvar Systems AB is a Swedish cybersecurity company that gives AI agents verifiable access to law, regulation and security standards.
C... Publisher subtitle Laws, Security and Compliance Show in context →1 more matching sourcesPublisher description Ansvar Systems AB is a Swedish cybersecurity company that gives AI agents verifiable access to law, regulation and security standards. Customers connect the AI assistant they already use (Claude, Microsoft Copilot, ChatGPT or any MCP-co… Show in context → |
SecurityVersion 1.0.0 | View details → |
BastionBastion TechnologiesConnect Bastion to ChatGPT to manage your security and compliance posture through natural conversation. Review framework compliance statu... Publisher subtitle Manage security and compliance Show in context →1 more matching sourcesPublisher description Connect Bastion to ChatGPT to manage your security and compliance posture through natural conversation. Review framework compliance status across SOC 2, ISO 27001, HIPAA, and GDPR. Drill into failing tests, upload evidence, and submit control… Show in context → |
SecurityVersion 1.0.0 | View details → |
BitdefenderBitdefenderBitdefender Plugin has a collection of free tools which help users avoid malware, phishing attempts, and counterfeit websites which inclu...
|
SecurityVersion 1.0.0 | View details → |
BreezeBreeze SecurityBreeze helps authenticated users explore their organization's security posture, connected integrations, scan status, tenants, and entity ... Publisher subtitle Explore security posture Show in context →2 more matching sourcesPublisher description Breeze helps authenticated users explore their organization's security posture, connected integrations, scan status, tenants, and entity risk data through ChatGPT and Codex. Show in context → |
SecurityVersion 1.0.0 | View details → |
Radar LiteRed SiftAnalyze any domain’s email authentication, DNS, and web security configuration. Radar Lite scans your domain, visualizes security scores ... Publisher subtitle Domain security with Red Sift Show in context →1 more matching sourcesPublisher description Analyze any domain’s email authentication, DNS, and web security configuration. Radar Lite scans your domain, visualizes security scores on a radar chart, and generates a summary with prioritized findings and remediation guidance. Try prompts like: - Radar… Show in context → |
SecurityVersion 2.0.0 | View details → |
SkarnSkarn Software OÜAudit AI coding sessions and assistant configs with the locally installed skarn CLI: leaked credentials and risky hooks or MCP servers, r... Publisher subtitle AI session security scanner Show in context →2 more matching sourcesPublisher keywords · listing security secrets credential-leak ai-coding-sessions audit codex Show in context →Publisher full description Skarn is a command-line security scanner for AI coding sessions. The audit skill, skarn-audit, teaches the model to run the skarn CLI on this machine and act on what it reports. The skill runs two passes. skarn assess reads… Show in context → |
SecurityVersion 0.27.0 | View details → |
Authorised OSINT ToolkitRobert LaneNine skills for authorised organisational OSINT, exposure analysis, monitoring and security risk reporting. Publisher capabilities · listing …SINT reviews Assess organisational attack surfaces Review email and cloud exposure Analyse identity security architecture Design exposure monitoring processes Quantify and prioritise security risk Produce evidence-led security reports Show in context →3 more matching sourcesPublisher keywords · listing defensive-osint attack-surface exposure-analysis security risk Show in context →Publisher description Nine skills for authorised organisational OSINT, exposure analysis, monitoring and security risk reporting. Show in context →Publisher full description …authorised organisational OSINT, attack-surface analysis, email and cloud exposure review, identity-security assurance, monitoring design, risk quantification and evidence-led reporting. The replacement planning, identity and exposure-analysis skills exclude credentials, account enumeration, authent… Show in context → |
SecurityVersion 1.1.0 | View details → |
Endor Labs Agent KitEndor LabsEndor Labs security workflows and setup for Codex. Publisher capabilities · listing Security Remediation Investigation Application Security Agentic Workflows Agentic Remediation Agentic AppSec Show in context →2 more matching sources |
SecurityVersion 2.2.2 | View details → |
GuardioGuardioCheck suspicious links, review known data leaks, and understand your Guardio protection. Publisher capabilities · listing …messages Look up known email and phone breaches Review account protection and scan activity Review security recommendations Set up browser protection Send requested product feedback Show in context →1 more matching sourcesPublisher full description …io account to review protection setup, scan activity, recent data leaks, linked-service counts, and security recommendations. You can also check whether an email address or phone number appears in known data breaches. Results describe known exposure; they do not reveal leaked passwords. When you ask… Show in context → |
SecurityVersion 0.2.2 | View details → |
NightVisionNightVision Security, Inc.NightVision application security workflows for local development and CI/CD. Publisher capabilities · listing API discovery DAST scan configuration CI/CD security guidance Finding triage Show in context →4 more matching sourcesPublisher keywords · listing application-security dast api-security openapi nightvision Show in context →Publisher description NightVision application security workflows for local development and CI/CD. Show in context →Publisher full description Guide NightVision API discovery, DAST scan configuration, CI/CD integration, and security-finding triage using the local NightVision CLI. Show in context → |
SecurityVersion 0.2.0 | View details → |
Awesome Maintainer DefenseDUC THANG LUURead-only repository governance and GitHub Actions risk audits with reviewable patches. Publisher keywords · listing github-actions repository-security governance maintainers audit Show in context → |
SecurityVersion 1.1.1 | View details → |
Skill Risk CheckOrbralScan agent skills and plugins locally for reviewable risk patterns before installation. Publisher keywords · listing plugin-security agent-skills pre-install-scan prompt-injection supply-chain sarif codex claude-code Show in context → |
SecurityVersion 0.1.5 | View details → |