ClaudeSuperPower

stackhawk-hawkscan

Plugin

Configure, run, and interpret HawkScan DAST results inside Claude Code. Generates stackhawk.yml configs, runs scans via CLI or Docker, and transforms security findings into prioritized fix tasks for your coding agent.

Install

claude plugin install stackhawk-hawkscan@claude-plugins-official

What is stackhawk-hawkscan?

Configure, run, and interpret HawkScan DAST results inside Claude Code. Generates stackhawk.yml configs, runs scans via CLI or Docker, and transforms security findings into prioritized fix tasks for your coding agent.

What's inside

5 bundled components — installing the plugin installs all of them.

What this can do

Capabilities declared by the plugin's own components — read straight from their frontmatter, not inferred.

Inherit all session tools

1 component declare no tool restrictions

~255 tokens of context used while enabled, before you invoke anything

Trust

83/100 · Excellent

2 factors scored below maximum

Unscoped tools

Documentation

README · ~8 min read

StackHawk Agent Skills

Your agent writes the code. Nothing checks if it's exploitable.

StackHawk agent skills fix that. Install once and your coding agent can configure security scans, run them against your live app, parse the findings, and fix what it found — all in the same session.

Try It Free

14 days free, no card required. auth.stackhawk.com/wingman

Your AI coding agent is also your security team.

StackHawk agent skills teach your AI coding agent to find security vulnerabilities as you build, report your security posture across applications, and help you fix what it finds — all without leaving your workflow. No context switching, no tickets to another team. Your agent scans, reports, and remediates.

Works with Claude Code, Codex, Gemini CLI, GitHub Copilot, OpenCode, Cursor, and anywhere the Agent Skills standard is supported.


Four Skills, One Security Workflow

Reviews

Log in to leave a review.

No reviews yet — be the first.

Explore related

Other things in this space — across every part of the ecosystem, not just plugins.

Pluginssimilar to this one

All plugins