Hooks
What find-cve-agent runs automatically, and when. A hook is a command Claude Code fires at a fixed moment, without you asking for it.
$ npx -y skills add ByamB4/find-cve-agent --agent claude-codeShips with find-cve-agent. Installing the plugin gets these hooks.
What fires, and when
SessionStart
Fires once when a session begins, and again after a context compaction. It is where a plugin sets up its environment, or restores state the compaction dropped.
- Runs session-start-context.mjs".
PreToolUse
- Runs pretooluse-clone-dedup.mjs".
PostToolUse
- Runs posttooluse-version-check.mjs".
Where it lives
- hooks/posttooluse-version-check.mjsGitHub
- hooks/pretooluse-clone-dedup.mjsGitHub
- hooks/pretooluse-finding-selfcheck.mjsGitHub
- hooks/session-start-context.mjsGitHub
Read the script before you install anything that runs on your machine. This is the one part of a plugin that acts without being asked.
Open Source CVE Hunting Harness for Claude Code A Claude Code plugin that systematically finds real CVEs in open source packages through coordinated multi-agent security research.
Repo: ByamB4/find-cve-agent

