{"repo":"HarmonicSecurity/claudit-sec","free":true,"listed":false,"github":"https://github.com/HarmonicSecurity/claudit-sec","clone":"git clone https://github.com/HarmonicSecurity/claudit-sec.git","description":"Security audit tool for Claude Desktop and Claude Code on macOS — single-command visibility into MCP servers, extensions, plugins, connectors, scheduled tasks, and permissions.","language":"PowerShell","stars":293,"topics":["ai-security","audit-tool","claude","claude-ai","claude-code","claude-desktop","endpoint-security","macos","mcp","mdm"],"license":"Apache-2.0","category":"mcp-servers","readme_excerpt":"🛡️ CLAUDIT-SEC Security audit tool for Claude Desktop on macOS and Windows — including CoWork, extensions, plugins, MCP servers, connectors, and scheduled tasks. One command. Full visibility. Read-only. ⚠️ Windows support is a work in progress. We're aware of a few kinks and bugs and wanted to get something out sooner rather than later. Community feedback and contributions are welcome. 🤔 Why Claude Desktop introduces a new class of endpoint risk: AI agents with autonomous execution, persistent scheduled tasks, MCP server integrations, browser-control extensions, and OAuth-authenticated connectors to external services. Most of this configuration lives in JSON files scattered across multiple directories with no centralised visibility. CLAUDIT gives you that visibility in a single command. 📝 A note on \"Code\": Claude Desktop includes a built-in agent coding feature called Code (visible in the app's sidebar). This is not the same as Claude Code , the standalone terminal CLI. CLAUDIT primarily audits Claude Desktop and its CoWork features. It does include a basic check of the Claude Code settings file ( /.claude/settings.json on macOS, %USERPROFILE%\\.claude\\settings.json on Windows), but the focus is squarely on the Desktop app. 📋 What It Audits Area What's Checked ------ --------------- 🖥️ Desktop Settings keepAwakeEnabled , sidebar/menuBar preferences 🤖 CoWork Settings Scheduled tasks, web search, browser use, dispatch (mobile→desktop), network mode, egress policy, enabled ","default_branch":null,"files":null,"tree":[],"storefront":"/r/HarmonicSecurity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/HarmonicSecurity/claudit-sec/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}