Official Trent plugin for AI coding agents. Security review, threat modeling, and mitigation guidance.
- ✓Open-source license (MIT)
- ✓Actively maintained (<30d)
- ✓Clear description
- ✓Documented (README)
/plugin marketplace add trnt-ai/trent-agent-plugin
/plugin install trent-agent-pluginResumen de Plugins
# Trent agent plugin
Trent, an AI security engineer. Review code, plans and configs for security problems, run threat models over a repo or website, and track remediation without leaving the editor.
## Installing
Add the marketplace by repository name. `trnt-ai/trent-agent-plugin` is the only public
marketplace that carries Trent, and adding it by name is what ties the install
to us. (A plugin manifest carries no signature, so the name is what you are
trusting; never add a marketplace from a URL to a file.)
Claude Code:
```
/plugin marketplace add trnt-ai/trent-agent-plugin
/plugin install trent@trent
```
Codex CLI:
```
codex plugin marketplace add trnt-ai/trent-agent-plugin
codex plugin add trent@trent
```
Check what you installed with `claude plugin details trent`. It prints
`Source: trent@trent` and the manifest's identity fields.
## Signing in
The plugin declares a remote MCP server and no credentials. Authentication
happens in the browser the first time a tool runs; there is no API key to paste
and none is shipped here.
## Verifying where a release came from
Each release is one commit, and its message carries the revision it was built
from:
```
Published from source revision <sha>
```
Run `git log -1` in a clone of this repository to read it. The `<sha>` is an
identifier, not a link; there is nowhere to follow it to. What it gives you is
an exact name for the build you are running: quote it to support and they can
say which release you have. If a copy of this plugin does not carry a message in
that form, it was not published by us.
The plugin manifest names `https://github.com/trnt-ai/trent-agent-plugin`, this repository, as
its `repository`, and `trent.ai` as its `homepage`. A plugin claiming to be Trent
from anywhere else is not ours.
## Pinning a release
Every release is tagged `plugin-v<version>`, on the commit that release
published. `git tag -l` in a clone lists them. A tag here never moves: the
repository's rules refuse it, so a pin keeps resolving to the same files.
On a Team or Enterprise plan an admin can register this marketplace for everyone
in `managed-settings.json`, pinned to a release. `ref` is the tag and `sha` is
the commit it names; with both set the `sha` is the pin and the `ref` says which
release it came from:
```json
{
"extraKnownMarketplaces": {
"trent": {
"source": {
"source": "github",
"repo": "trnt-ai/trent-agent-plugin",
"ref": "plugin-v0.1.0",
"sha": "<the 40-character commit plugin-v0.1.0 names>"
}
}
},
"enabledPlugins": { "trent@trent": true }
}
```
Read the `sha` off the tag rather than copying one from anywhere else:
```
git ls-remote https://github.com/trnt-ai/trent-agent-plugin refs/tags/plugin-v0.1.0 'refs/tags/plugin-v0.1.0^{}'
```
One line back means the tag names that commit: pin it. Two lines back means
the tag is annotated: the line ending `^{}` names the commit, and that is the
one to pin.
Upgrading is then a deliberate edit of those two fields, not something that
happens when someone reinstalls.
## Getting help
Questions, bugs and feature requests reach us at <https://trent.ai> or through
your usual support channel; that is where they get answered.
This repository is published from Trent's build on each release; every file in
it is generated, so it is not the place to file or fix anything.
## Licence
Copyright Trent AI. See [LICENSE](LICENSE) for the terms, and
<https://trent.ai> for anything the terms do not answer.
Lo que la gente pregunta sobre trent-agent-plugin
¿Qué es trnt-ai/trent-agent-plugin?
+
trnt-ai/trent-agent-plugin es plugins para el ecosistema de Claude AI. Official Trent plugin for AI coding agents. Security review, threat modeling, and mitigation guidance. Tiene 9 estrellas en GitHub y su última actualización registrada es del 2026-10-02.
¿Cómo se instala trent-agent-plugin?
+
Puedes instalar trent-agent-plugin clonando el repositorio (https://github.com/trnt-ai/trent-agent-plugin) o siguiendo las instrucciones del README en GitHub. ClaudeWave también te ofrece bloques de instalación rápida en esta misma página.
¿Es seguro usar trnt-ai/trent-agent-plugin?
+
Nuestro agente de seguridad ha analizado trnt-ai/trent-agent-plugin y le ha asignado un Trust Score de 87/100 (tier: Trusted). Revisa el desglose completo de comprobaciones superadas y flags en esta página.
¿Quién mantiene trnt-ai/trent-agent-plugin?
+
trnt-ai/trent-agent-plugin es mantenido por trnt-ai. La última actividad registrada en GitHub es del 2026-10-02, con 0 issues abiertos.
¿Hay alternativas a trent-agent-plugin?
+
Sí. En ClaudeWave puedes explorar plugins similares en /categories/plugins, ordenados por popularidad o actividad reciente.
Despliega trent-agent-plugin en tu cloud
Lleva este repo a producción en minutos. Cada plataforma genera su propio entorno con variables de entorno editables.
¿Mantienes este repo? Añade un badge a tu README
Pega el badge en tu README de GitHub para mostrar que está auditado por ClaudeWave. Cada badge enlaza de vuelta a esta página y muestra el Trust Score actual.
[](https://claudewave.com/repo/trnt-ai-trent-agent-plugin)<a href="https://claudewave.com/repo/trnt-ai-trent-agent-plugin"><img src="https://claudewave.com/api/badge/trnt-ai-trent-agent-plugin" alt="Featured on ClaudeWave: trnt-ai/trent-agent-plugin" width="320" height="64" /></a>Más Plugins
Claude Code is an agentic coding tool that lives in your terminal, understands your codebase, and helps you code faster by executing routine tasks, explaining complex code, and handling git workflows - all through natural language commands.
AI agent skill that researches any topic across Reddit, X, YouTube, HN, Polymarket, and the web - then synthesizes a grounded summary
Write HTML. Render video. Built for agents.
Agent skill that removes signs of AI-generated writing from text
Academic Research Skills for Claude Code: research → write → review → revise → finalize
Create beautiful slides on the web using a coding agent's frontend skills