Skip to content

clover-security-public/clover-security

v0.1.103-beta.1AGPL-3.0-only

Clover reviews every spec before implementation starts, hands back the security requirements it is missing, and blocks the task until they are covered.

What this package declares

The file a client reads when it loads this plugin, exactly as this revision carries it.

plugin.json
{
  "$schema": "https://agent-plugins.org/schemas/1.0.0/plugin.schema.json",
  "name": "clover-security",
  "displayName": "Clover Security",
  "version": "0.1.103-beta.1",
  "description": "Clover reviews every spec before implementation starts, hands back the security requirements it is missing, and blocks the task until they are covered.",
  "author": {
    "name": "Clover Security",
    "url": "https://clover.security"
  },
  "homepage": "https://docs.cloversec.io/product-guides/kura-securing-agentic-development/about-kura",
  "repository": "https://github.com/clover-security-public/agentic-security-marketplace",
  "license": "AGPL-3.0-only",
  "keywords": [
    "security",
    "appsec",
    "clover",
    "security-review",
    "security-requirements",
    "threat-model",
    "spec",
    "devsecops"
  ]
}

Client extensions

Data this package carries for particular clients. The directory lists the clients named and never reads what is addressed to them.

  • dev.kiroships a directory of files

Fields the format does not define

This package's plugin.json declares these at its top level. The Agent Plugins format gives them no meaning, so a client loads the plugin and ignores them.

  • displayName