BUNDLE Security scanned5 skills

    Agent Safety & Verification Bundle

    Five local, read-only safety auditors for the places agent-assisted development goes wrong. Test your Claude Code guardrails and prompt-injection defenses (Guardrail Doctor), force the agent to verify its own code before it claims success (AI Code Verification Gate), scaffold and review MCP servers with safe tool definitions and confirmation gates (MCP Server Starter & Safety Kit), tighten GitHub Actions permissions and unsafe pull_request_target usage (GitHub Actions Permission Hardener), and vet dependency changes for supply-chain risk before you install (Package Supply-Chain Sentinel). For developers and teams shipping AI-agent and CI-driven work who want to catch the guardrail gap, the unverified change, the over-permissioned workflow, and the malicious package before they bite, not after the incident report. Every tool flags what to fix with severity and remediation, and never touches your live systems without confirmation.

    580 views

    Works with every agent that reads SKILL.md — Claude Code, Cursor, Codex CLI, Gemini CLI, GitHub Copilot, Windsurf, OpenClaw, and more.

    JustHandled Labs
    Created by
    JustHandled Labs
    $85$115
    Save 26% · $30

    One payment, lifetime access. 5 skills unlock instantly in your library.

    30-day refund guarantee

    Instant unlock in your library

    Free updates from the creator

    What's included

    5 skills
    1/5
    🛡️ GuardrailDoctor

    Penetration-test your Claude Code agent's guardrails before you deploy. Throws prompt-injection payloads, shell-chaining, and path-traversal attempts at your PreToolUse/PostToolUse hooks and sensitive-file protections, then returns a pass/fail report on 10+ attack vectors with copy-paste remediation for every gap.

    View skill
    $29$21.43Save 26%
    2/5
    🛡️ MCP Server Starter & Safety Kit

    Scaffold and audit secure MCP servers with input schemas, confirmation gates, and safety-first tool definitions.

    View skill
    $29$21.43Save 26%
    3/5
    ✅ AI Code Verification Gate

    One-line summary description Stop your agent from claiming "done" before it's proven. A verification gate that classifies each change by risk (payment, auth, database, user-facing), picks the tests that actually cover it, demands evidence, maps regression risk, and outputs an honest pass/fail report. Turns "looks good to me" into "here's what I ran, and here's what's still unverified."

    View skill
    $19$14.04Save 26%
    4/5
    🛡️ GitHub Actions Permission Hardener

    Audit and harden GitHub Actions workflows against overbroad permissions, secrets exposure, and supply-chain risks.

    View skill
    $19$14.04Save 26%
    5/5
    📦 Package Supply-Chain Sentinel

    Vet dependency changes for supply-chain risk before you install, commit, or release. Scans package and lockfile diffs for install-time lifecycle scripts, non-registry sources, suspicious download commands, typosquatting, and floating versions, across npm, pnpm, yarn, pip, uv, and poetry. Flags what to review with evidence. No install required.

    View skill
    $19$14.04Save 26%

    See it in action

    You say

    Run a security audit on my Claude Code guardrails and check for path traversal and shell chaining vulnerabilities.

    Your agent does

    Test | Result | Evidence | Remediation Path Traversal | FAIL | cat /etc/passwd allowed | Update hook to block '/etc/' Shell Chaining | FAIL | echo 'vulnerable' && id allowed | Use command parser script Sensitive Files | PASS | .env blocked by hook | N/A

    Total: 1 Pass, 2 Fail. High bypass risk detected.

    How to install

    Drop the file into your AI Agent. Works with Claude, Cursor, ChatGPT, and 20+ more.

    Reviews

    No reviews yet on the included skills. Be the first to try this bundle.

    Frequently asked questions

    More bundles from JustHandled Labs