# Shieldcode

> Security hardening and production-grade error handling expertise for Claude Code. Prevents OWASP Top 10 vulnerabilities (SQL injection, XSS, broken auth, secrets exposure) and enforces structured error handling, secure logging, and proper HTTP status codes. Auto-activates when writing code that handles user input, database queries, authentication, API endpoints, or error handling. 991 lines of battle-tested security patterns with BAD vs SAFE examples in TypeScript and Python.

## Facts
- Page: https://tashan.sh/capability/plugin-nikolasdehor-shieldcode-shieldcode
- tashan id: plugin:nikolasdehor/shieldcode/shieldcode
- Source: https://github.com/nikolasdehor/shieldcode
- Type: plugin
- Category: security
- tashan score: 38.0 / 100
- Adoption: 11.0
- Upkeep: 73.0
- Freshness: 81.0
- Evidence coverage: 84% of the inputs this score can use
- Health: active
- Instruction depth: not yet graded
- GitHub stars: 1
- License: MIT
- Official: no

## Install

```sh
/plugin marketplace add anthropics/claude-plugins-community
/plugin install shieldcode@claude-community
```

## Security audit
Not scanned. We audit npm-published capabilities; this one has no npm package we can resolve, or has not reached the queue. This is not a clean bill of health.

---
Measured 2026-09-13 by tashan (https://tashan.sh) from public evidence. Scorer s5.
