Agent Workspace

Pack comparison

Two packs, side-by-side. Merged comparisons, shared shape, and diff highlights in one view.

ACommunitysecurityv0.1.0Recommended
Injection Surface Audit

injection-surface-audit

Every agent product ships injection surfaces. Audit them before an attacker does.

npx attrition-sh pack install injection-surface-audit

Token budget

Pass rate

Avg tokens

Publisher

Agent Workspace

claude-codecursorcodex-cliany-agent-harness
BCommunityharnessv0.1.0Recommended
Session Persistence — Three Channels

session-persistence-three-channels

Append-only JSONL across 3 channels. Permissions never restore on resume — the friction IS the safety.

npx attrition-sh pack install session-persistence-three-channels

Token budget

0

Pass rate

Avg tokens

Publisher

Agent Workspace

claude-codecursorcodex

3 required outputs, 1 permissions, 2 completion conditions.

out: .transcripts/<session>.jsonl

What both packs have in common

Overlap across canonical pattern, compatibility, tags, and required packs.

claude-codecursor

Head-to-head claims from both packs

Each row is attributed to the pack that authored it. The winner column is normalised to this compare view (A / B / Tie).

SourceAlternativeAxisWinnerNote
Aowasp-llm-top10maintainabilityAOWASP LLM Top-10 is a vocabulary; this pack is an actionable checklist tied to specific code patterns. Use together: OWASP for framing, this pack for line-level audit.
Allm-guardrails-middlewarecomplexityAlternativeRuntime guardrail middleware (NeMo, Guardrails AI) adds automated filtering — lower manual effort, adds a dependency. This pack is zero-runtime and targets design-time holes. Layered defence uses both.
Ared-team-engagementaccuracyAlternativeA professional red-team engagement finds novel classes a checklist can't. Use this pack monthly; commission a red-team annually.
Bclaude-code-guidecomplexityAlternativeClaude Code Guide covers session memory in one section; this pack is the dedicated persistence specification with the deliberate-non-feature framing.
Bsubagent-delegation-three-isolation-modesmaintainabilityTieThis pack documents session + global channels; subagent-delegation documents the sidechain channel. Stack them for full 3-channel coverage.
Binjection-surface-auditaccuracyTieThe permissions-non-restoration invariant is one of the audit's checks. This pack names the invariant; that pack verifies nothing erodes it.

What each pack brings that the other doesn't

Unique coverage and any measurable gap between the two.

Comparisons not in B

owasp-llm-top10llm-guardrails-middlewarered-team-engagement

Compatibility A-only

codex-cliany-agent-harness

Tags A-only

securityprompt-injectionssrfauditowasp-llmsupply-chain

Comparisons not in A

claude-code-guidesubagent-delegation-three-isolation-modesinjection-surface-audit

Compatibility B-only

codex

Tags B-only

harnesspersistencesessionappend-onlyjsonlsafetyresumeclaude-codedive-into-claude-code