repo-forensics
Detects secrets, malware, and supply-chain risks in code repos before they reach production.
Automated Security scanner for GitHub repos, Agent Skills, Plugins, and MCP servers. 18 scanners. Zero dependencies. Keeps you and your agent safe.
- Pre-integration scan of public GitHub repos for exposed credentials
- Audit Claude plugin dependencies for known vulnerabilities
- Validate MCP server code before internal deployment
Detects secrets, malware, and supply-chain risks in code repos before they reach production. Reduces breach surface by scanning dependencies and agent configurations without requiring external services.
Security teams and engineering leads vetting third-party GitHub repos, MCP servers, or Claude plugins before integration.
https://github.com/alexgreensh/repo-forensics
By alexgreensh
How to Get It
claude plugins install alexgreensh/repo-forensics
Tip: Paste this into a Claude Code conversation. Verify command matches your Claude Code version.
Auto-generated from the tool's public listing — not hands-on verified. Cross-check against the source repo's README before running.
After installing, paste this into Claude:
Help me pre-integration scan of public GitHub repos for exposed credentials
Trust Signals Auto-scanned
Reviewer notes
Auto-scanned review. These are observations, not a security certification.
Scored from trust signals (evidence-eval-v1): 144 GitHub stars; 7 contributors; last commit 0d ago; license no license.
Things to check
- Scanned, not hands-on tested — this entry was auto-scanned from public metadata (GitHub metrics, license, security flags). No reviewer has run it, and no tool-specific limitations have been documented yet.
How to evaluate tools before deploying →
Data shown here comes from public APIs and automated scanning. Reviewer notes reflect one person's experience. This is not a security certification or legal recommendation. Always evaluate tools according to your own organization's policies.
Evaluation
Scored from trust signals (evidence-eval-v1): 144 GitHub stars; 7 contributors; last commit 0d ago; license no license.