{"repo":"ByamB4/find-cve-agent","free":true,"listed":false,"github":"https://github.com/ByamB4/find-cve-agent","clone":"git clone https://github.com/ByamB4/find-cve-agent.git","description":"CVE hunting harness for Claude Code - 20 skills, 5-agent team, systematic vulnerability research with false positive elimination","language":"JavaScript","stars":44,"topics":["ai-agent","bug-bounty","claude-code","claude-code-plugin","cve","false-positive","offensive-security","penetration-testing","responsible-disclosure","security-automation"],"license":"Apache-2.0","category":"ai-agents","readme_excerpt":"find-cve-agent Open Source CVE Hunting Harness for Claude Code A Claude Code plugin that systematically finds real CVEs in open source packages through coordinated multi-agent security research. --- What It Is find-cve-agent is a battle-tested harness of 20 skills organized as a 5-agent team. It provides structured workflows for every phase of vulnerability research: target discovery, code review, PoC development, false positive elimination, and responsible disclosure. Every skill encodes practical knowledge about what gets accepted, what gets rejected, and how to avoid wasting time on false positives. Philosophy - Quality over quantity. One confirmed CVE beats ten false positives. - False positive elimination is a first-class concern. Every finding passes a 6-gate verification process before submission. - Responsible disclosure only. 90-day coordinated timeline, no production exploitation, PoCs run locally. - Learn from mistakes. The plugin encodes patterns from past false positives so you don't repeat them. --- Quick Start Or manually copy the plugin contents into your project's .claude/ directory. Recommended: Also install blader/humanizer to auto-clean AI patterns from disclosure reports before sending. --- Agent Team Agent Role Key Responsibility ------- ------ -------------------- Director Human lead Approves targets, approves PoC plans, final submit/drop Recon Target discovery Finds promising packages on npm/PyPI/GitHub Hunter Code review Traces data flows from source ","default_branch":null,"files":null,"tree":[],"storefront":"/r/ByamB4","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/ByamB4/find-cve-agent/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}