Vulnetix
插件 已验证 活跃Vulnerability intelligence and remediation skills for Claude Code — 7 skills for exploit analysis, fix proposals, scoring, exploits, and package security via the Vulnetix VDB API
To empower users with actionable vulnerability intelligence and remediation guidance directly within Claude Code, enhancing security posture and streamlining the vulnerability management workflow.
功能
- Vulnerability lookup and details
- Exploit intelligence analysis
- Package security risk assessment
- Context-aware remediation planning
- Repository impact analysis
使用场景
- Assessing the risk of a known CVE in your project.
- Discovering actively exploited vulnerabilities relevant to your technology stack.
- Evaluating the security of a new dependency before adding it.
- Generating a comprehensive remediation plan for a critical vulnerability.
非目标
- Automatically applying fixes without user confirmation.
- Performing actual exploit execution or security testing.
- Replacing manual security review processes entirely.
工作流
- Load vulnerability memory and repository context.
- Fetch vulnerability/exploit/package data from Vulnetix VDB.
- Analyze repository impact (dependencies, code patterns, OS/container context).
- Present structured findings (summary, exploit details, fix options).
- Update vulnerability memory with new findings and analysis.
- Provide actionable next steps for remediation or further investigation.
实践
- Vulnerability Management
- Security Analysis
- Code Quality
- Developer Productivity
先决条件
- Network access to Vulnetix VDB API
- Internet access for external API calls
- Optional: gh CLI for enhanced GitHub security integration
安装
/plugin install vulnetix@davepoon-buildwithclaude包含 7 个扩展
Skill (7)
View all tracked vulnerabilities and their current status
Analyze exploit intelligence for a vulnerability against the current repository
Search for exploits across all vulnerabilities with filtering by ecosystem, severity, source, and EPSS
Get fix intelligence for a vulnerability and propose concrete remediation for the current repository
Search for packages and assess security risk before adding as dependencies
Get a context-aware remediation plan for a vulnerability with fix verification steps
Look up a vulnerability by ID or list all vulnerabilities for a package
质量评分
已验证类似扩展
Microsoft Learn MCP 服务器
100访问 Microsoft 官方文档、API 参考和代码示例,涵盖 Azure、.NET、Windows 等。
Ruflo Security Audit
99Security review, dependency scanning, policy gates, and CVE monitoring
Socraticode
98代码智能 — SocratiCode 的语义搜索工作流、依赖图分析和上下文伪影探索
Variant Analysis
79Find similar vulnerabilities and bugs across codebases using pattern-based analysis
Ruflo Intelligence
78User-facing surface for Ruflo's self-learning system: 6 neural_* + 10 hooks_intelligence_* + 9 routing/meta hooks + 4 SONA/MicroLoRA tools (29 total). Implements the 4-step pipeline (RETRIEVE → JUDGE → DISTILL → CONSOLIDATE) and IPFS-based cross-project pattern transfer.
Differential Review
78Security-focused differential review of code changes with git history analysis and blast radius estimation