claude-security-linter
Publisher not specified · Claude Code
What this plugin does
A pre-tool-use hook plugin that automatically scans code for security vulnerabilities before Claude writes it to disk. Detects eval() usage, Function constructor abuse, hardcoded API keys and secrets, Bearer tokens, AWS credentials, innerHTML/outerHTML XSS vectors, inline private keys, and GitHub personal access tokens. Uses a two-tier severity system: errors block the write with detailed remediation guidance, while warnings allow the write but inject advisory context. Runs as pure Node.js wi...
Catalog observations
- Sources
- Community
- Works with
- Claude Code
- Reported installs
- Not provided
- First observed
- 2026-10-03 22:13 UTC
- Last observed
- 2026-10-07 18:02 UTC
Installation counts are reported by Claude Marketplace, not independently verified active users. Observation dates are not release dates. Pricing and account requirements must be checked with the publisher.
Install in Claude Code
Choose a source and review what the plugin adds before installing.
Community
/plugin marketplace add anthropics/claude-plugins-community
/plugin install claude-security-linter@claude-community
Source evidence
Descriptions and compatibility labels come from the linked sources. Where both sources match, the GitHub description is used because web summaries may be shortened. We have not independently tested the declared capabilities.