← Endor Labs Agent KitCONTENT HISTORY

Update to Endor Labs Agent Kit

Snapshot Oct 9, 2026 · 00:00 UTC · version 2.2.2

WHAT CHANGED · RULE-BASED ANALYSIS

Package or technical metadata updated

Discoverability changed from “UNLISTED” to “LISTED”.

Observed in package metadata. These changes alone do not establish a new customer-facing feature.

Discoverability

Before

UNLISTED

After

LISTED

Compare saved observations

Download comparison JSON
Full technical diff · 1 changed fields

changed /discoverability

BEFORE
"UNLISTED"
AFTER
"LISTED"
Full snapshot data
{
  "canonical_app_id": null,
  "connector_id": null,
  "created_at": "2026-07-31T19:01:13.413501Z",
  "discoverability": "LISTED",
  "id": "plugins_6a6ceacd1df481918fc5f6abe65e439c",
  "is_template": false,
  "name": "endor-labs-agent-kit",
  "release": {
    "app_ids": [],
    "app_manifest": null,
    "app_templates": [],
    "description": "Endor Labs security workflows and setup for Codex.",
    "display_name": "Endor Labs Agent Kit",
    "id": "pluginrel_4ac3014ca56c8191b286e5a0a154e6a9",
    "interface": {
      "brand_color": "#26D07C",
      "capabilities": [
        "Security",
        "Remediation",
        "Investigation",
        "Application Security",
        "Agentic Workflows",
        "Agentic Remediation",
        "Agentic AppSec"
      ],
      "category": "Security",
      "composer_icon_dark_url": null,
      "composer_icon_url": "https://files.openai.com/content?id=file_0000000073ec81fd903d64b560118531",
      "default_prompt": "Use the SCA remediation agent to fix the P0 findings in this repo for my tenant.",
      "default_prompts": [
        "Use the SCA remediation agent to fix the P0 findings in this repo for my tenant.",
        "Triage the top AI SAST findings for my repo and propose a PR to fix them.",
        "Plan a safe dependency remediation using Endor Labs evidence."
      ],
      "developer_name": "Endor Labs",
      "logo_url": "https://files.openai.com/content?id=file_00000000d3bc81fd89006d3d0b73b716",
      "logo_url_dark": null,
      "long_description": "Packaged AppSec workflows for SCA remediation, AI SAST triage, CI/CD posture, malware response, findings review, Endor Labs setup, and more.",
      "plugin_category_id": "security",
      "privacy_policy_url": "https://www.endorlabs.com/legal/privacy-policy",
      "screenshot_urls": [],
      "short_description": "Endor Labs Agentic AppSec",
      "terms_of_service_url": "https://www.endorlabs.com/legal/terms-of-use",
      "website_url": "https://www.endorlabs.com/"
    },
    "keywords": [
      "endor-labs",
      "security",
      "sca",
      "sast",
      "codex"
    ],
    "onboarding_skill_name": null,
    "requires_local_executor": false,
    "skills": [
      {
        "description": "Triages Endor AI SAST findings using exploit-reproduction evidence, data-flow context, and remediation guidance to distinguish actionable vulnerabilities from noise. It can prepare targeted code fixes and, after explicit approval, edit files and open change requests. For exception workflows, it can create or update scoped Endor exception policies only after verified AppSec approval and explicit user confirmation.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $ai-sast-remediation for this Endor Labs workflow.",
          "display_name": "AI SAST Remediation",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "bolt",
          "short_description": "Triages and remediates Endor AI SAST findings with exploit evidence and approval-gated fixes."
        },
        "name": "ai-sast-remediation",
        "plugin_release_skill_id": "pluginrsk_6a90712d604881919646813d22e30c93"
      },
      {
        "description": "Assesses CI/CD and software supply-chain security across an Endor namespace, GitHub organization, selected repositories, or the current repository. It combines existing Endor SCPM, CI/CD, GitHub Actions, and supply-chain findings with read-only repository configuration evidence and optional local CI inspection to produce deterministic scores, critical overrides, prioritized improvements, and explicit data gaps. It does not modify Endor, GitHub, or repository state.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $cicd-posture for this Endor Labs workflow.",
          "display_name": "CI/CD And Supply Chain Posture",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "radar",
          "short_description": "Scores CI/CD and supply-chain posture from read-only Endor and repository evidence."
        },
        "name": "cicd-posture",
        "plugin_release_skill_id": "pluginrsk_6a906fd3ca2881918efbb508fe6bf250"
      },
      {
        "description": "Compares GitHub repository inventory with Endor projects, GitHub App coverage, monitored branches, scan profiles, package-manager integrations, dependency resolution, and reachability evidence. It identifies onboarding and configuration gaps and provides targeted setup instructions without changing GitHub, Endor, or source repositories.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $configuration-automation for this Endor Labs workflow.",
          "display_name": "Configuration Automation",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "chart",
          "short_description": "Finds GitHub-to-Endor onboarding and monitored-branch coverage gaps without making changes."
        },
        "name": "configuration-automation",
        "plugin_release_skill_id": "pluginrsk_6a9071352bc081919be81e76c3c0fb84"
      },
      {
        "description": "Evaluates an exact package version, summarizes package risk, or reviews dependencies declared by a repository through one focused workflow. It uses available vulnerability, malware, package-health, license, policy, and Endor evidence to provide a read-only recommendation and clearly identify missing information.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $dependency-reviewer for this Endor Labs workflow.",
          "display_name": "Dependency Reviewer",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "radar",
          "short_description": "Reviews package versions, package risk, or repository dependencies using bounded evidence."
        },
        "name": "dependency-reviewer",
        "plugin_release_skill_id": "pluginrsk_6a906fd28b84819187d6d0531be87a08"
      },
      {
        "description": "Use when checking Endor Agent Kit readiness in Codex, verifying the local Endor CLI, authentication, namespace, GitHub, or toolchain prerequisites.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $endor-agent-kit-setup to check Endor Agent Kit readiness.",
          "display_name": "Endor Agent Kit Setup",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "radar",
          "short_description": "Check local Endor Agent Kit readiness"
        },
        "name": "endor-agent-kit-setup",
        "plugin_release_skill_id": "pluginrsk_6a906fd539a081919a5579409ff787e5"
      },
      {
        "description": "Browses, filters, and summarizes existing Endor findings without starting new scans or performing remediation. It shows the applied scope and filters, relevant severity and reachability context, pagination or truncation limits, and any evidence gaps affecting the results.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $findings-browser for this Endor Labs workflow.",
          "display_name": "Findings Browser",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "search",
          "short_description": "Browses and filters existing Endor findings with clear scope, pagination, and evidence gaps."
        },
        "name": "findings-browser",
        "plugin_release_skill_id": "pluginrsk_6a906fd4babc81919bdf82e54142ee91"
      },
      {
        "description": "Correlates current software supply-chain malware intelligence for affected packages and versions with Endor inventory across a namespace and its child namespaces. It distinguishes confirmed exposure, possible exposure, not-observed exposure, and insufficient data using exact package, version, and inventory evidence. It reports affected projects, indicators of compromise, containment guidance, and recommended follow-up actions without modifying Endor or source systems.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $malware-responder for this Endor Labs workflow.",
          "display_name": "Malware Responder",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "radar",
          "short_description": "Correlates current malware intelligence with Endor inventory to assess tenant exposure."
        },
        "name": "malware-responder",
        "plugin_release_skill_id": "pluginrsk_6a906fd2b64881918dc8e4efb9732ae4"
      },
      {
        "description": "Evaluates candidate dependency upgrades using Endor VersionUpgrade data, Code Impact Analysis, findings, breaking-change information, and Endor-provided manifest targets. It compares findings fixed or introduced and explains the safest available upgrade path, including whether to upgrade now, proceed cautiously, defer, or gather more evidence.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $oss-upgrade-investigator for this Endor Labs workflow.",
          "display_name": "OSS Upgrade Investigator",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "hierarchy",
          "short_description": "Compares Endor upgrade candidates, risk, breaking changes, and code impact."
        },
        "name": "oss-upgrade-investigator",
        "plugin_release_skill_id": "pluginrsk_6a906fd3a390819192f4141114ba9254"
      },
      {
        "description": "Previews safe remediation options for existing Endor findings without changing code or opening a pull request. It compares VersionUpgrade and Upgrade Impact Analysis candidates using findings fixed, upgrade risk, compatibility evidence, and available data, then recommends the safest evidence-backed next step.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $remediation-planning for this Endor Labs workflow.",
          "display_name": "Remediation Planning",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "radar",
          "short_description": "Compares read-only remediation options and recommends the safest evidence-backed next step."
        },
        "name": "remediation-planning",
        "plugin_release_skill_id": "pluginrsk_6a906fd3ba7481919b12762df56f8f74"
      },
      {
        "description": "Plans and applies dependency-vulnerability fixes using Endor SCA findings, VersionUpgrade and Upgrade Impact Analysis evidence, deterministic risk decisions, and local validation. It separates low-risk changes from upgrades requiring deeper compatibility review and requires explicit approval before editing files, pushing branches, opening change requests, or creating tickets.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $sca-remediation for this Endor Labs workflow.",
          "display_name": "SCA Remediation",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "hierarchy",
          "short_description": "Plans and applies approval-gated SCA fixes with upgrade-risk evidence and local validation."
        },
        "name": "sca-remediation",
        "plugin_release_skill_id": "pluginrsk_6a906fd4d93481918f87f23f1e7e07a8"
      },
      {
        "description": "Diagnoses Endor setup, authentication, integration, scanning, dependency-resolution, container, reachability, policy, and workflow problems. It gathers the smallest useful set of read-only evidence needed to identify the likely root cause and recommend the lowest-friction repair without modifying Endor, source-provider, or repository state.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $troubleshooting for this Endor Labs workflow.",
          "display_name": "Troubleshooting",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "radar",
          "short_description": "Diagnoses Endor setup and workflow problems using focused read-only evidence."
        },
        "name": "troubleshooting",
        "plugin_release_skill_id": "pluginrsk_6a906fd2b0548191bb66d5e6982aeb7f"
      },
      {
        "description": "Explains a CVE, GHSA, or Endor vulnerability, optionally in the context of a supplied package and version. It summarizes severity, exploitability signals, affected and fixed versions, recommended remediation, and relevant reachability or repository context when supported by exact Endor evidence. It clearly identifies missing information rather than inferring package or project applicability.",
        "interface": {
          "brand_color": null,
          "default_prompt": "Use $vulnerability-explainer for this Endor Labs workflow.",
          "display_name": "Vulnerability Explainer",
          "icon_large_url": null,
          "icon_small_url": null,
          "iconography": "search",
          "short_description": "Explains vulnerability severity, exploitability, affected versions, and recommended remediation."
        },
        "name": "vulnerability-explainer",
        "plugin_release_skill_id": "pluginrsk_6a906fd3cbe4819193b7520d1064cdec"
      }
    ],
    "version": "2.2.2"
  },
  "scope": "GLOBAL",
  "status": "ENABLED"
}

SHA-256 of public snapshot: b768d845588d17b2d4c7095135548a8878a6b271ee6a547882ba7be97786f496