endorlabs/ai-plugins
Endor Labs Agent Kit plugins for Claude Code, Codex, Gemini CLI, Antigravity CLI, Cursor, and Cursor SDK: packaged AppSec workflows for SCA remediation, AI SAST triage, CI/CD posture, malware response, findings review, Endor Labs setup, and
ARCHETYPE
Orchestrator
A bench of specialised subagents. The main agent mostly delegates.
Copy this rig
# review before running: this installs third-party code $ claude mcp add endor-cli-tools -- endorctl ai-tools mcp-server $ npx degit endorlabs/ai-plugins/agents ./rig-ai-plugins/agents $ npx degit endorlabs/ai-plugins/skills ./rig-ai-plugins/skills $ npx degit endorlabs/ai-plugins/hooks ./rig-ai-plugins/hooks
MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ claude mcp add endor-cli-tools -- endorctl ai-tools mcp-server $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/ai-sast-remediation .claude/skills/ai-sast-remediation $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/cicd-posture .claude/skills/cicd-posture $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/configuration-automation .claude/skills/configuration-automation $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/dependency-reviewer .claude/skills/dependency-reviewer $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/endor-agent-kit-setup .claude/skills/endor-agent-kit-setup $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/findings-browser .claude/skills/findings-browser $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/malware-responder .claude/skills/malware-responder $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/oss-upgrade-investigator .claude/skills/oss-upgrade-investigator $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/remediation-planning .claude/skills/remediation-planning $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/sca-remediation .claude/skills/sca-remediation $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/troubleshooting .claude/skills/troubleshooting $ npx degit endorlabs/ai-plugins/plugins/antigravity/endor-labs-agent-kit/skills/vulnerability-explainer .claude/skills/vulnerability-explainer
$ curl -fsSL --create-dirs -o .claude/agents/ai-sast-remediation.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/ai-sast-remediation.md $ curl -fsSL --create-dirs -o .claude/agents/cicd-posture.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/cicd-posture.md $ curl -fsSL --create-dirs -o .claude/agents/configuration-automation.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/configuration-automation.md $ curl -fsSL --create-dirs -o .claude/agents/dependency-reviewer.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/dependency-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/findings-browser.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/findings-browser.md $ curl -fsSL --create-dirs -o .claude/agents/malware-responder.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/malware-responder.md $ curl -fsSL --create-dirs -o .claude/agents/oss-upgrade-investigator.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/oss-upgrade-investigator.md $ curl -fsSL --create-dirs -o .claude/agents/remediation-planning.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/remediation-planning.md $ curl -fsSL --create-dirs -o .claude/agents/sca-remediation.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/sca-remediation.md $ curl -fsSL --create-dirs -o .claude/agents/troubleshooting.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/troubleshooting.md $ curl -fsSL --create-dirs -o .claude/agents/vulnerability-explainer.md https://raw.githubusercontent.com/endorlabs/ai-plugins/main/agents/vulnerability-explainer.md
This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 7,204 rigs:
{
"permissions": {
"deny": [
"Read(./.env)",
"Read(**/.env)",
"Read(~/.ssh/**)",
"Bash(rm -rf *)",
"Read(**/*.pem)",
"Bash(rm -rf /)",
"Bash(git push --force:*)",
"Bash(sudo *)",
"Read(.env)",
"Bash(rm -rf /*)",
"Read(./.env.*)",
"Read(~/.aws/**)",
"Bash(git push --force*)",
"Bash(rm -rf:*)",
"Read(**/*.key)",
"Read(**/.env.*)",
"Bash(sudo:*)",
"Bash(git reset --hard*)",
"Bash(git reset --hard:*)",
"Read(.env.*)"
],
"ask": [
"Bash(git push:*)",
"Bash(git push *)",
"Bash(git commit:*)",
"Bash(rm *)",
"Bash(rm:*)",
"Bash(git rebase *)",
"Bash(wget *)",
"Bash(npm publish:*)",
"Bash(git commit *)",
"Bash(gh pr merge *)"
]
}
} MCP servers (1)
| server | source | est. tokens |
|---|---|---|
| endorctl · "endor-cli-tools" | binary | 2.5k |
Skills (12)
ai-sast-remediationcicd-postureconfiguration-automationdependency-reviewerendor-agent-kit-setupfindings-browsermalware-respondeross-upgrade-investigatorremediation-planningsca-remediationtroubleshootingvulnerability-explainer
Subagents (11)
| ai-sast-remediation model: sonnet | | |
| cicd-posture model: sonnet | | |
| configuration-automation model: sonnet | | |
| dependency-reviewer model: sonnet | | |
| findings-browser model: sonnet | | |
| malware-responder model: sonnet | | |
| oss-upgrade-investigator model: sonnet | | |
| remediation-planning model: sonnet | | |
| sca-remediation model: sonnet | | |
| troubleshooting model: sonnet | | |
| vulnerability-explainer model: sonnet | | |
Similar rigs
claude-code-expert/brewnet
Self-hosted stack bootstrapper · Docker Compose · Git server · File manager · One command setup
Pragmatist 4.3k tok ·
bethanychamberlain/claude-skills-librechat
Claude Code skills for LibreChat administration and configuration
Skill Collector 2.0k tok ·
anatomia-dev/anatomia
Spec-driven agent harness for Claude Code and Codex — five-agent pipeline (scope, plan, build, verify, learn) with an auditable proof chain.
Orchestrator 957 tok ·
chase0213/dotfiles-claude
—
Orchestrator 1.6k tok ·