Install and configure the Lacework CLI with IaC and SCA scanning components
Run Fortinet Code Security IaC and SCA scans on the current directory
Configure Fortinet Code Security plugin settings (enable/disable scanning globally or per repo)
A collection of Fortinet security plugins for Claude Code.
| Plugin | Description |
|---|---|
| code-security | Automated IaC and SCA scanning — scans infrastructure-as-code and dependency manifests for vulnerabilities after every task |
In Claude Code, register the marketplace and install a plugin:
/plugin marketplace add lacework/forticnapp-llm-plugins
/plugin install code-security@fortinet-plugins
See each plugin's README for setup and configuration details.
Releases are managed automatically via GitHub Actions:
Auto-release: Every push to main triggers a version bump and release. The bump type is determined from conventional commit prefixes:
| Commit prefix | Version bump |
|---|---|
feat!:, fix!: (breaking change) | Major (1.0.0 → 2.0.0) |
feat: | Minor (1.0.0 → 1.1.0) |
fix:, chore:, refactor:, etc. | Patch (1.0.0 → 1.0.1) |
Manual release: Go to Actions → Release → Run workflow and enter a specific version (e.g. 2.1.0) to cut a release at an exact version. Use this to skip ahead, backport, or hotfix.
Each release publishes a .zip artifact and updates the install command in the release notes. Available versions are listed on the Releases page.
plugins/<plugin-name>/.claude-plugin/plugin.json with name, version, description.claude-plugin/marketplace.json with "source": "./plugins/<plugin-name>"Executes bash commands
Hook triggers when Bash tool is used
Modifies files
Hook triggers on file write and edit operations
Own this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimOwn this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimBased on adoption, maintenance, documentation, and repository signals. Not a security audit or endorsement.
npx claudepluginhub lacework/forticnapp-llm-plugins --plugin code-securityHarness-native ECC operator layer - 67 agents, 271 skills, 92 legacy command shims, reusable hooks, rules, selective install profiles, and production-ready workflows for Claude Code, Codex, OpenCode, Cursor, and related agent harnesses
Complete collection of battle-tested Claude Code configs from an Anthropic hackathon winner - agents, skills, hooks, and rules evolved over 10+ months of intensive daily use
Efficient skill management system with progressive discovery — 410+ production-ready skills across 33+ domains