Superagent
Official@superagent-ai · United States of America
Security for AI-native developers
Agent Skills by Superagent
Showing 13 vetted skills indexed across 1 GitHub repositories.
skill-security
Audit AI skills for safety using deterministic scanning and contract checks.
authz-security
Identify missing authorization checks in routes, controllers, resolvers, and data models.
repo-security-posture
Inventory GitHub repository security posture across branch protection, actions, and access controls.
security-disclosure-triage
Evaluate security advisories against repository checkouts and assign severity.
supply-chain-security
Analyze manifests, lockfiles, and install scripts to flag supply-chain risks.
crypto-secrets
Scan application code and configuration for cryptography and secrets hygiene issues.
pr-github-ops
Post Superagent PR security scan findings as inline GitHub review comments via gh CLI.
redteam-autoresearch
Generate labeled adversarial prompts and responses for guardrail training data.
ci-cd-security
Identify security weaknesses in GitHub Actions workflow YAML files.
hacker
Orchestrate authorized offensive security engagements with phase gates and role subagents.
vulnerability-triage
Analyze vulnerability reports against project intent and produce a structured triage report.
recon-security
Coordinate and execute authorized external penetration tests from reconnaissance to reporting using free, open-source tools and structured evidence management.
infra-security
Audit Terraform, CloudFormation, Kubernetes, and Docker IaC for security misconfigurations.
Frequently Asked Questions About Superagent
FAQPage SchemaWhat specific security tasks does Superagent enable?▼
Superagent enables deterministic auditing of codebases, infrastructure configurations, and supply chain manifests. It identifies missing authorization checks, detects exposed secrets, evaluates security advisories against project checkouts, and audits IaC files for misconfigurations to ensure robust posture across development environments.
Which personas benefit most from these security capabilities?▼
Security engineers, DevSecOps practitioners, and software architects benefit from these capabilities. The platform is designed for technical teams needing to enforce security standards within GitHub environments, manage vulnerability triage, and conduct authorized offensive security engagements through structured, repeatable processes.
What are the prerequisites for running these security scans?▼
Users require access to the target GitHub repositories and relevant infrastructure configuration files such as Terraform, CloudFormation, or Kubernetes manifests. The system operates by analyzing these artifacts against defined security policies to produce structured triage reports and inline review comments.