harleybartles/security-pack
v1.0.0MIT
Codex marketplace bundle for secure development, OWASP, risk gates, and web identity.
What this package declares
The file a client reads when it loads this plugin, exactly as this revision carries it.
plugin.json
{
"$schema": "https://agent-plugins.org/schemas/1.0.0/plugin.schema.json",
"name": "security-pack",
"version": "1.0.0",
"description": "Codex marketplace bundle for secure development, OWASP, risk gates, and web identity.",
"author": {
"name": "Harley Bartles"
},
"homepage": "https://github.com/HarleyBartles/agent-asset-marketplace",
"repository": "https://github.com/HarleyBartles/agent-asset-marketplace",
"license": "MIT",
"rights": "Contains first-party maintained skills, including attributed adaptations; see SOURCE.md and references/bundle-manifest.json for provenance and licenses.",
"keywords": [
"codex",
"marketplace",
"security",
"owasp",
"security-review",
"security-scan",
"security-bounty",
"security-testing",
"framework-security",
"config-validation",
"risk-review",
"safe-operations",
"defi",
"django",
"laravel",
"risk",
"analysis",
"skills"
],
"extensions": {
"com.openai": {
"interface": {
"displayName": "Security Pack",
"shortDescription": "Secure development, OWASP, risk gates, and web identity",
"longDescription": "A repo-local Codex plugin bundle that distributes the first-party owasp-top-ten, risk-gates, secure-development, and web-identity skills into an installable marketplace shape for secure coding, OWASP review, security testing, threat modeling, cloud review, config validation, risk review, and web identity.",
"developerName": "Harley Bartles",
"category": "Productivity",
"capabilities": [
"Interactive",
"Write"
],
"defaultPrompt": [
"Inspect the Security Pack bundle and bundle manifest.",
"Use the bundle to review the owasp-top-ten, risk-gates, secure-development, and web-identity skill plugins.",
"Compare the bundle versioning against the first-party source custody surface."
],
"brandColor": "#991B1B",
"composerIcon": "./assets/icon.svg",
"logo": "./assets/icon.svg"
}
}
}
}
Client extensions
Data this package carries for particular clients. The directory lists the clients named and never reads what is addressed to them.
- com.openai
Fields the format does not define
This package's plugin.json declares these at its top level. The Agent Plugins format gives them no meaning, so a client loads the plugin and ignores them.
- rights