🛡️
QualityTypeScript

Security Research

by code-yeongyu

Security Research is a Quality skill for Claude Code, published by code-yeongyu in oh-my-openagent.

67.8K stars5.5K forkson code-yeongyu/oh-my-openagentAdded 2026/08/13Repository updated 2026/08/13
aiai-agentsanthropicchatgptclaudeclaude-skillscodexcursorgeminiideopenaiopencodeorchestrationtuitypescript
Install in seconds
Install Security Research
Copy Security Research into your Claude Code skills folder. Run the command in your terminal, or review the source on GitHub before installing.
terminal
npx degit https://github.com/code-yeongyu/oh-my-openagent/tree/dev/.agents/skills/security-research ~/.claude/skills/security-research

Requires Node.js. Downloads this skill only — not the rest of the repository — into your Claude Code skills folder.

Without Node.js

git clone https://github.com/code-yeongyu/oh-my-openagent.git

Clones the whole repository, then copy the skill’s own directory into your skills folder yourself.

In this catalog

Source file
.agents/skills/security-research/SKILL.md in code-yeongyu/oh-my-openagent
Installs to
~/.claude/skills/security-research
Collection
One of 21 skills cataloged from this repository
Category
Quality1354 skills

What Security Research does

Security Research runs a parallel Team Mode audit with 3 vulnerability hunters and 2 PoC engineers to separate real exploitability from generic concern. Use it for security review, vulnerability research, exploitability audit, pre-release security check, and threat model validation.

Security Research is cataloged under Quality on DirSkills. Security Research comes from a repository tagged ai, ai-agents, anthropic, chatgpt and claude.

Documentation

README

Security Research - Team Mode Vulnerability Audit

Use this skill to run a parallel security audit that separates real exploitability from generic concern. The team has 3 vulnerability hunters and 2 PoC engineers.

Hard Preconditions

Before starting, verify:

  1. team_* tools are available. If not, stop and tell the user: security-research requires team-mode. Set team_mode.enabled: true in your oh-my-openagent config, restart opencode, then retry.
  2. You are in the main session, not a background subagent.
  3. You have a concrete target: repository, diff range, PR, release candidate, path list, or threat surface.

This is the opening of the README. Read the full README on GitHub.

Frequently asked about Security Research

  • What else does code-yeongyu publish alongside Security Research?

    Security Research is one of 21 skills that DirSkills catalogs from code-yeongyu/oh-my-openagent, the repository it ships in. Its siblings there include Codex QA, Dead Code Removal and Get Unpublished Changes. Each one is a separate skill with its own page in this directory, installs the same way Security Research does, and is maintained by code-yeongyu in that same repository. The rest of the collection is listed on the code-yeongyu/oh-my-openagent page.

  • How does Security Research compare to other Quality skills?

    Security Research ranks #47 by stars among the 1354 Quality skills in this catalog. The most-starred ones next to it are Benchmark, Benchmark Optimization Loop and API Design Patterns. DirSkills ranks by the star count of the repository each skill ships in, so that order reflects how popular those repositories are rather than any review of Security Research against them. Open each page to compare what they document and how they install.

More from code-yeongyu/oh-my-openagent

Security Research is one of 21 skills cataloged on DirSkills from code-yeongyu/oh-my-openagent.

See all 21 skills
🧪
3w ago

Codex QA

Codex QA verifies the omo Codex Light edition plugin in a real Codex app-server with an isolated CODEX_HOME and local mock model, so the user's real ~/.codex and API credentials are never touched. Use it whenever changes are made to the plugin, hooks, installer, or TUI.
Quality
67.8K5.5K
🧹
3w ago

Dead Code Removal

Dead Code Removal scans a TypeScript project for unused code with TypeScript strict mode and LSP-verified safety, then removes it in parallel commits. Use it to clean up unused imports, constants, functions, and files without breaking builds.
Quality
67.8K5.5K
📋
3w ago

Get Unpublished Changes

Get Unpublished Changes compares the current git HEAD with the latest published npm versions and lists all unpublished changes grouped by release layer. Use it when you need to see what has changed since the last release to prepare changelogs or release notes.
DevOps
67.8K5.5K
💡
3w ago

Give Me Tips

Give Me Tips explains any senpi tip in depth—startup tips, working tips, and Tip: lines shown in the TUI—by querying the live tip list, checking what the user can see, and verifying the real feature code before answering.
AI Engineering
67.8K5.5K
⚔️
3w ago

Hyperplan

Hyperplan orchestrates five adversarial category agents in team mode to cross-critique plans, distills only defensible insights, and hands them to the plan agent for executable formalization. Use when planning needs maximum rigor.
AI Engineering
67.8K5.5K
⚔️
3w ago

Hyperplan

Hyperplan orchestrates a five-member adversarial multi-agent team that debates and critiques a plan to surface weak assumptions, then distills surviving insights and hands them to a planner for executable formalization. Use it when planning needs maximum rigor or when you want to expose blind spots and over-engineering.
AI Engineering
67.8K5.5K