Language: JapaneseEnglish

crowdsec Claude Code Plugin

Author
CrowdSec
Category
Security
Topics
Security, Auth & Compliance · Cloud, Deployment & CI/CD · Monitoring & Observability
First cataloged
2026-07-21 (UTC)
Explanation last updated
2026-07-21 (UTC)

The explanation below is AI-generated. Please verify it against the sources.

This plugin is a Claude skill that acts as an operational assistant for CrowdSec, helping with installation, configuration, day-to-day operation, and troubleshooting. According to the README, it supports bare-metal/systemd, Docker, Kubernetes/Helm, and OPNsense environments, and covers bouncer setup, WAF/AppSec deployment, hub content management, and diagnosing issues such as missing alerts or non-blocking bouncers. The README states the skill is limited to operational tasks and explicitly does not cover authoring new parsers, scenarios, or AppSec rules. It works by guiding cscli commands and interactions with the local and central APIs (LAPI/CAPI).

About the service

CrowdSec, as described on its homepage, is a security engine paired with a collaborative threat-intelligence network: it inspects logs locally to detect malicious activity, contributes signals to a shared community database, and enforces blocking through bouncers integrated with firewalls, web servers, or CDNs. The homepage also mentions a cloud Console used for enrollment, blocklist management, and visibility into aggressive IPs. This plugin's skill is built specifically to operate and troubleshoot that CrowdSec engine and its ecosystem.

What you can do with crowdsec

  • Install CrowdSec on bare-metal/systemd, Docker, Kubernetes/Helm, or OPNsense, and enroll it in the CrowdSec Console
  • Deploy and troubleshoot the WAF/AppSec component
  • Manage hub content such as collections, parsers, and scenarios, including installs and updates
  • Configure acquisition sources, profiles and ban durations, notifications, and allowlists
  • Run health checks, handle upgrades/rollbacks, and set up multi-server or remote LAPI/mTLS configurations
  • Debug problems like unparsed logs, missing alerts, or bouncers that fail to block

Sources

History of crowdsec

  • Claude Code Plugin Added crowdsec

Back to list