@aegis-scan · 6 packages

Name Description License Versions
@aegis-scan/cli AEGIS CLI — paranoid stack-specific security scanner for Next.js + Supabase. 0-1000 score, 42 built-in checkers (+20 external-tool wrappers: 16 SAST/DAST + 1 passive subdomain-recon + 3 LLM-agent pentest frameworks), AST-based cross-file taint analysis, 4 MIT 3 greenflagged / 54 rejected / 57 total
@aegis-scan/core AEGIS core engine — orchestrator, scoring (0-1000), config loader with Zod-strict schema, suppression filter, shared types + utilities. The foundation of the AEGIS security-scanner suite for Next.js + Supabase. MIT 62 greenflagged / 1 rejected / 63 total
@aegis-scan/mcp-server AEGIS MCP server — exposes scan / findings / score / compliance / fix-suggestion tools to any Model Context Protocol agent (Claude Code, Cursor, Continue, Zed). Five registered tools: aegis_scan, aegis_findings, aegis_score, aegis_compliance, aegis_fix_su MIT 57 greenflagged / 57 total
@aegis-scan/reporters AEGIS output reporters — terminal (colourised with progress bars), JSON, SARIF 2.1.0 (GitHub Code Scanning), HTML report, and Markdown for CI comments. Consumes ScanResult from @aegis-scan/core. MIT 56 greenflagged / 1 rejected / 57 total
@aegis-scan/scanners AEGIS scanner registry — 41 built-in regex checkers + 1 AST cross-file taint analyzer + 20 external-tool wrappers (16 SAST/DAST: Semgrep, Gitleaks, Trivy, ZAP, …; +1 passive subdomain-recon: Subfinder; +3 LLM-agent pentest: Strix, PTAI, Pentest-Swarm-AI — MIT 42 greenflagged / 1 rejected / 57 total
@aegis-scan/skills AEGIS Skills — opt-in skill library for Claude Code and compatible AI agents. Offensive red-team methodology from curated sources, attribution preserved per-file. Multi-source-ready architecture with placeholder directories for future defensive (AEGIS-nat MIT 10 greenflagged / 1 rejected / 11 total
Showing 6 packages