ryo-ebata/cc-audit

AI-free static security scanner for Claude Code artifacts (Skills, Hooks, MCP configs). Detects data exfiltration, prompt injection, and supply chain risks with deterministic, reproducible results.

32
/ 100
Emerging

This tool helps security auditors and developers prevent common risks in AI coding clients like Claude. It takes Claude Code artifacts (Skills, Hooks, MCP server configurations) as input and identifies potential vulnerabilities like data exfiltration, prompt injection, and over-permissioned access. The output is a clear security report, helping you decide if the code is safe to use or install.

Use this if you need to verify the security of third-party Claude Code before integrating it into your systems or development workflow.

Not ideal if you are looking for a runtime threat detection system or a tool to audit non-Claude-specific code.

AI coding security Claude Code audit software supply chain security prompt engineering security static analysis
No Package No Dependents
Maintenance 10 / 25
Adoption 6 / 25
Maturity 11 / 25
Community 5 / 25

How are scores calculated?

Stars

17

Forks

1

Language

Rust

License

MIT

Last pushed

Mar 11, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/mcp/ryo-ebata/cc-audit"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.