Insecure Defaults

PluginSecurity

Lets your agent scan code for insecure default settings like hardcoded credentials and weak authentication.

Detects insecure default configurations including hardcoded credentials, fallback secrets, weak authentication defaults, and dangerous values in production

Delivery for this kind is on the roadmap — not serving yet. You can still add it. It stays paused until ahel can serve it.

Serve it through your gateway

One link, every agent. Your own credentials, stored once.

Signals

GitHub stars
7k
Forks
590
Last commit
Aug 2026
Installs
6k stars