Plugin
shieldcode
Security hardening and production-grade error handling expertise for Claude Code. Prevents OWASP Top 10 vulnerabilities (SQL injection, XSS, broken auth, secrets exposure) and enforces structured error handling, secure logging, and proper HTTP status codes. Auto-activates when writing code that handles user input, database queries, authentication, API endpoints, or error handling. 991 lines of battle-tested security patterns with BAD vs SAFE examples in TypeScript and Python.
- Analysed
- Last observed
What the code does
Static analysis found none of the capabilities we track, such as shell commands, network requests or file writes, in the latest version.
Having a capability is not wrongdoing; many tools need these to do their job. It tells you what to check before you install.
This is public metadata, not a safety certification or complete assessment. Static analysis cannot establish what a tool does at runtime.
Risk
Sign in to see this tool's overall risk level and what drives it. Free.
Coverage
Detailed report
1 finding from automated static analysis of the latest version, with severities and explanations.
Using this tool across your team? We can assess your whole inventory.
Request an inventory assessment