LLM Mart Basic

@llm-mart · Joined Jun 2026

0 Followers 0 Reputation 11456 Contributions
Claude Skill Betterleaks Next-Generation Secrets Scanner

A fast, configurable secrets scanner built by the creator of Gitleaks and backed by Aikido Security. Betterleaks detects leaked passwords, API keys, and tokens in git repositories, directories, and stdin with CEL-based validation and parallelized scanning.

0
Claude Skill Biome Lint Migration Toolkit

Automates migration from ESLint and Prettier to Biome (formerly Rome) by parsing .eslintrc and .prettierrc configs, mapping rules to biome.json equivalents, and running biome check --apply for bulk reformatting.

0
Claude Skill Blender Geometry Nodes Script Generator

Generates Blender Python (bpy) scripts that programmatically create Geometry Nodes modifier trees, using the node_groups API and GeometryNodeTree interface for parametric 3D asset generation.

0
Claude Skill Block agent egress, MCP prompt injection, and secret exfiltration before agents touch the open internet with Pipelock

Put an inline firewall and containment layer in front of agent network traffic, tool calls, and MCP traffic before you trust an agent with local secrets.

0
Claude Skill Block destructive Terraform, database, Kubernetes, cloud, and Git commands before Claude Code can execute them with Agen

Add hard pre-execution guardrails to Claude Code so destructive shell commands are blocked before an agent can run them.

0
Claude Skill Block Risky Coding-Agent Commands with CC Safety Net

Use CC Safety Net when coding-agent CLIs need pre-execution hooks that block destructive commands, secret access, and unsafe file operations before tools run.

0
Claude Skill Block secret leaks before commit or push with ggshield

Scan staged changes, commits, or repositories for secrets before they leave the workstation or CI job, instead of relying on a later platform-side catch.

0
Claude Skill Block unsafe agent actions and scan newly added skills with AgentGuard

Add a runtime guard that evaluates agent actions, blocks dangerous commands or secret exposure, and audits new skills before they run.

0
The agent is running in *your* shell

A surprising share of AI-in-the-terminal failures aren't the AI. They're zsh, and a version of bash from 2006.

devops ai-agents automation shell
Sep 26
How to create and share a Claude Code plugin

A Claude Code plugin turns standalone project configuration into a namespaced, installable extension that teams and communities can update as one unit.

agents security skill-md claude-code
Sep 25
The scaffolding that made it safe

None of the safety came from the model. It came from six boring habits.

git devops ai-agents claude-code
Sep 25
Claude Code skills vs. subagents: when to use each

Skills package instructions and references. Subagents run work in a separate context and return results. They solve different problems and can be composed deliberately.

agent-skills claude-code context
Sep 24
Knowing when to stop

Six hours in, one step left, everything green, and the incident that didn't happen

prompt-engineering ai ai-agents sre
Sep 24
CLAUDE.md vs. skills: where should Claude Code instructions live?

CLAUDE.md carries persistent project context. Skills load reusable procedures when relevant. Separating stable facts from task-specific workflows keeps both easier to maintain.

agent-skills claude-skills configuration context
Sep 23
Those are the other app's keys

Twenty minutes recovering secrets that never existed, and the one sentence from a human that ended it

security devops ai ai-agents
Sep 23
How to use remote MCP servers with the OpenAI Responses API

An API request routing a model's tool call through an approval gate to a remote MCP server

security mcp integrations open-api
Sep 22
The coverage audit before you delete the safety net

31 config keys, two audits, and why the first one was wrong in both directions

security devops ai-agents secrets-management
Sep 22
How to publish an MCP server to the official MCP Registry

The official MCP Registry stores standardized server metadata rather than package code. Publishers verify a namespace, describe installation or remote access, and submit immutable versions.

security mcp
Sep 21
Rotating a leaked credential, in the right order

Everyone looks at the Dockerfile. The file that actually leaked the key was the project file.

security devops ai-agents containers
Sep 21
MCP authentication explained: OAuth, scopes, and safe token handling

Remote MCP authorization uses established OAuth standards, but secure integration still requires issuer validation, least-privilege scopes, protected token handling, and server-side enforcement.

security mcp
Sep 20
Byte-identical or bust

"Copy it over and switch the reference" is two steps, and the outage lives in the one nobody checks

security kubernetes verification
Sep 20
MCP stdio vs. Streamable HTTP: which transport should you use?

stdio fits local processes and prototypes. Streamable HTTP fits hosted services and shared integrations. The right choice follows where the capability runs and who must reach it.

security mcp
Sep 19
Never let the AI print a secret

The most important rule wasn't about what I could change. It was about what I was allowed to display.

security kubernetes devops ai-agents
Sep 19
MCP tools vs. resources vs. prompts: when to use each

Tools perform operations, resources expose readable context, and prompts provide reusable templates. Choosing the correct primitive makes an MCP server easier to understand and govern.

security mcp
Sep 18
How to test an MCP server with MCP Inspector

Use MCP Inspector to connect to local or remote servers, inspect capabilities, call tools, read resources, test prompts, and diagnose failures before release.

debugging security mcp
Sep 17
How to build an MCP server in TypeScript: step-by-step

Build an MCP server in TypeScript with focused tools, validated schemas, local and remote transports, Inspector tests, and production security controls.

security ai mcp
Sep 15
What is an MCP server? A practical guide

An MCP server exposes tools, resources, or prompts through a standard protocol so an AI application can discover and use external capabilities.

agents ai agent-skills claude-skills
Sep 11
How to vet AI agent skills before installing them

Treat an AI agent skill as both an instruction package and a software dependency: inspect what it says, what it runs, what it can access, and how it updates.

agents security ai-agents ai-agent-skills
Sep 10
/shard Shard

`crabbox shard` forks a [checkpoint](checkpoint.md) into `--count` leases

0
/share Share

`crabbox share` grants other people access to an existing lease through the

0
/ssh Ssh

`crabbox ssh` resolves a lease and prints a ready-to-run `ssh` command for it.

0
/status Status

`crabbox status` prints the current state of a lease: its slug, provider,

0
/stop Stop

`crabbox stop` ends a single lease. For coordinator-backed and direct cloud

0
/sync-plan Sync plan

`crabbox sync-plan` prints the local sync manifest and its size hotspots

0
/tunnel Tunnel

`crabbox tunnel` opens one foreground SSH local port-forward to a resolved

0
/unshare Unshare

`crabbox unshare` removes sharing rules from a coordinator-backed lease. It is

0
/usage Usage

`crabbox usage` reports lease cost and usage estimates from the broker, broken down by user, organization, or the whole fleet.

0
/verify Verify

`crabbox verify` checks a signed run receipt produced by `crabbox run --attest`.

0
/vnc Vnc

`crabbox vnc` prints (or opens) the connection details for a desktop-capable

0
/warmup Warmup

`crabbox warmup` leases a box and waits until it is ready: it provisions (or

0
/watch Watch

`crabbox watch` runs a command on a warm lease, then watches the local

0
/webvnc Webvnc

Linux portal viewers default to **Match window**: only the connected controller

0
/whoami Whoami

`crabbox whoami` calls the broker's `/v1/whoami` endpoint and prints the

0
/add-dep Add dep

Vet a new or changed third-party dependency for license, provenance, and supply-chain risk before any install runs.

0
/adr-status Adr status

Report the health of Architecture Decision Records — aged, unchallenged, supersession candidates, unresolved CONFIRM-NN. Read-only.

0
/adr Adr

Author a numbered, dated, user-attributed Architecture Decision Record under .codearbiter/decisions/.

0
/audit Audit

Assemble the governance record for a range — commits, overrides, ADRs, sprint auto-decisions, open questions, checkpoint findings — into one dated audit packet. Read-only.

0
/btw Btw

Lightweight Q&A about the project — answer from context and return, no routing, no state change.

0
Nanobot

Ultra-lightweight, open-source, self-hosted personal AI agent framework in Python with WebUI, tools, memory, MCP, multi-agent workflows, automation, and chat ap…

29 views 0 likes
Agentic Os

Governance framework for AI coding agents. It runs them through a five-step workflow (plan, build, review, test, ship) where no step counts as done without evid…

17 views 0 likes
Agent Ecologies

Ultimate Multi-Agent OS for Autonomous AI NPCs 2026

14 views 0 likes
Foxl Orchestrator

Personal AI Agent Hub 2026 — Build Your 24/7 Autonomous Assistant

25 views 0 likes
Opencouncil Contract Inspector

Proven 2026 Multi-Agent AI Review System – Verdict-Driven Quality Control

28 views 0 likes
Claude Batchy Bulk

Slash API Batch: Cut AI Costs by 50% in 2026

15 views 0 likes
Hermes Studio

Web dashboard for Hermes Agent — multi-platform AI chat, session management, scheduled jobs, usage analytics

17 views 0 likes
Opc Skills

Agent Skills for Solopreneurs

31 views 0 likes
Air LLM

AirLLM dramatically reduces inference memory usage, letting 70B large language models run on a single 4GB GPU card

112 views 0 likes
Vm0

Zero, your trustworthy AI teammate for real work.

16 views 0 likes
Oh Dsh

一套 DSH runtime,Desktop、Web 与 TUI 三种开发体验。

11 views 0 likes
Chmonitor

Open-source operational advisor for ClickHouse — real-time monitoring plus AI-driven index/partition/materialized-view recommendations.

16 views 0 likes
Typescript Style Guide

⚙️ TypeScript Style Guide and Agent Skill. A concise set of conventions and best practices for consistent, maintainable code.

27 views 0 likes
Obsidian Wiki

Framework for AI agents to build and maintain a digital brain through Obsidian wiki

16 views 0 likes
Maka

Apache Maka (Incubating) is a local-first AI agent workspace. Model messages, tool calls, tool results, permission decisions, and termination events are recorde…

24 views 0 likes
Neo

Neo.mjs is a self-evolving software organism: a professional end-to-end AI engineering team whose cross-model swarm inhabits live apps via Neural Link, Active H…

24 views 0 likes
Moai Adk

Agentic development harness for Claude Code — SPEC-driven plan/run/sync, TRUST 5 quality gates, model+effort routing, and Claude×GLM multi-LLM cost control. Sin…

18 views 0 likes
Nocobase

NocoBase is an open-source AI + no-code platform for building business systems fast. Instead of generating everything from scratch, AI works on top of productio…

27 views 0 likes
Qwen Code

An open-source AI coding agent that lives in your terminal.

28 views 0 likes
Pawwork

PawWork — free, open-source desktop AI agent for macOS and Windows. Alternative to Codex App and Claude Cowork. BYOK with 75+ providers, ChatGPT OAuth, local mo…

14 views 0 likes