
This catches you before you accidentally download malware disguised as legitimate security software from GitHub. It triggers when you're looking at repos offering cracked antivirus, keygens, or "free premium" versions of commercial tools like Avast. Instead of letting you proceed, it explains the threat indicators (artificial stars, missing source code, piracy keywords), shows what malicious payloads these repos typically deliver, and redirects you to either official sources or actual open source alternatives like ClamAV. It's basically a last line of defense against the repos that exploit trust in security software to distribute the exact threats they claim to protect against.
npx -y skills add aradotso/security-skills --skill security-threat-awareness --agent claude-codeInstalls into .claude/skills of the current project.
Select a file.