先看结论
基于现有公开资料生成,最后决策仍应核对原始来源。
Security review for Claude-generated code. Pattern-based warnings on edits, LLM-powered diff review on Stop, and an agentic commit reviewer that catches injection, XSS, SSRF, hardcoded secrets, and 25+ other vulnerability classes.
能力
它能让 Agent / 使用者做什么。
- 适用 Agent:Claude Code
安装与获取
可复现安装方式。
plugin:security-guidance@claude-plugins-official
来源与核实
保留来源、时间与置信度,供回溯。
实效证据
来源可信不等于任务有效。
暂无通过审核、可复现的同任务 A/B 运行证据;本档案仅证明来源可信,不代表实测有效。