---
title: "pentest-ai vs claude-code-plugins-plus-skills"
type: "comparison"
canonical_url: "https://www.graphcanon.com/compare/0xsteph-pentest-ai-vs-jeremylongshore-claude-code-plugins-plus-skills"
tools: ["0xsteph-pentest-ai", "jeremylongshore-claude-code-plugins-plus-skills"]
---

# pentest-ai vs claude-code-plugins-plus-skills

*GraphCanon updated Aug 12, 2026*

## Verdict

Pick pentest-ai if pentest-ai is an offensive-security platform featuring over 200 security tools and agents for various security tasks including exploit chaining and osint, licensed under MIT; pick claude-code-plugins-plus-skills if claude-code-plugins-plus-skills offers an expansive collection of plugins and skills for Claude Code with features unique to its system.

[pentest-ai](https://pentestai.xyz) reports 1.4k GitHub stars, 286 forks, and 2 open issues, last pushed Jul 5, 2026. [claude-code-plugins-plus-skills](https://tonsofskills.com) has 2.6k stars, 384 forks, and 27 open issues, last pushed Aug 11, 2026. Figures are from public GitHub metadata via [pentest-ai's repository](https://github.com/0xSteph/pentest-ai) and [claude-code-plugins-plus-skills's repository](https://github.com/jeremylongshore/claude-code-plugins-plus-skills).

| | [pentest-ai](/tools/0xsteph-pentest-ai.md) | [claude-code-plugins-plus-skills](/tools/jeremylongshore-claude-code-plugins-plus-skills.md) |
| --- | --- | --- |
| Tagline | Offensive-security MCP server with security tools and agents | Claude Code Plugins Plus Skills |
| Stars | 1,441 | 2,618 |
| Forks | 286 | 384 |
| Open issues | 2 | 27 |
| Language | Python | Python |
| Adopt for | Pentest-ai is an offensive-security platform featuring over 200 security tools and agents for various security tasks including exploit chaining and osint, licensed under MIT. | claude-code-plugins-plus-skills offers an expansive collection of plugins and skills for Claude Code with features unique to its system. |
| Persona | - | - |
| Runtime | - | - |
| License | MIT | MIT |
| Categories | AI Agents, Developer Tools | AI Agents, Developer Tools |

## Trust and health

_Sourced signals - not a safety guarantee. No winner column._

| | [pentest-ai](/tools/0xsteph-pentest-ai.md) | [claude-code-plugins-plus-skills](/tools/jeremylongshore-claude-code-plugins-plus-skills.md) |
| --- | --- | --- |
| Maintenance | Active (82%) | Very active (96%) |
| Days since push | 21d | 0d |
| Open issues (now) | 2 | 27 |
| Full report | [trust report](/tools/0xsteph-pentest-ai/trust.md) | [trust report](/tools/jeremylongshore-claude-code-plugins-plus-skills/trust.md) |

## Decision facts: pentest-ai

- **Adopt for:** Pentest-ai is an offensive-security platform featuring over 200 security tools and agents for various security tasks including exploit chaining and osint, licensed under MIT.

## Decision facts: claude-code-plugins-plus-skills

- **Adopt for:** claude-code-plugins-plus-skills offers an expansive collection of plugins and skills for Claude Code with features unique to its system.

## Choose when

### Choose pentest-ai if…

- Tags unique to pentest-ai: cybersecurity, mcp, pentesting, security.
- pentest-ai ships Docker support for self-hosted deployment.
- When you need a comprehensive suite that includes more than 205 security tools and 17 specialist agents.

### Choose claude-code-plugins-plus-skills if…

- Tags unique to claude-code-plugins-plus-skills: agent-skills, ai-agents, automation, claude-code.
- When you need extensive automation capabilities tailored specifically to the Claude Code ecosystem, leveraging over 425 plugins and 2810 skills.
- More GitHub stars (2.6k vs 1.4k) - visibility, not fit.

## When NOT to use pentest-ai

- If your requirements do not include offensive-security capabilities or exploit chaining.
- When you want to avoid MIT-licensed open-source code and prefer proprietary solutions without sharing obligations.

## When NOT to use claude-code-plugins-plus-skills

- Avoid if your project requires integration with competitor systems as claude-code-plugins-plus-skills is deeply integrated into Claude Code and might not interoperate smoothly.
- If you are looking for proprietary support or services, since this open-source marketplace relies on community contributions.
- When rapid changes in the plugin ecosystem affect stability, considering the marketplace's dynamic nature may impact legacy system compatibility.

## Common questions

### What is the difference between pentest-ai and claude-code-plugins-plus-skills?

pentest-ai: Offensive-security MCP server with security tools and agents. claude-code-plugins-plus-skills: Claude Code Plugins Plus Skills. See the comparison table for live GitHub stats and shared categories.

### When should I choose pentest-ai over claude-code-plugins-plus-skills?

Choose pentest-ai over claude-code-plugins-plus-skills when Tags unique to pentest-ai: cybersecurity, mcp, pentesting, security; pentest-ai ships Docker support for self-hosted deployment; When you need a comprehensive suite that includes more than 205 security tools and 17 specialist agents.

### When should I choose claude-code-plugins-plus-skills over pentest-ai?

Choose claude-code-plugins-plus-skills over pentest-ai when Tags unique to claude-code-plugins-plus-skills: agent-skills, ai-agents, automation, claude-code; When you need extensive automation capabilities tailored specifically to the Claude Code ecosystem, leveraging over 425 plugins and 2810 skills; More GitHub stars (2.6k vs 1.4k) - visibility, not fit.

### When should I avoid pentest-ai?

If your requirements do not include offensive-security capabilities or exploit chaining. When you want to avoid MIT-licensed open-source code and prefer proprietary solutions without sharing obligations.

### When should I avoid claude-code-plugins-plus-skills?

Avoid if your project requires integration with competitor systems as claude-code-plugins-plus-skills is deeply integrated into Claude Code and might not interoperate smoothly. If you are looking for proprietary support or services, since this open-source marketplace relies on community contributions. When rapid changes in the plugin ecosystem affect stability, considering the marketplace's dynamic nature may impact legacy system compatibility.

### Is pentest-ai or claude-code-plugins-plus-skills more popular on GitHub?

claude-code-plugins-plus-skills has more GitHub stars (2,618 vs 1,441). Stars measure visibility, not whether either tool fits your constraints.

### Are pentest-ai and claude-code-plugins-plus-skills open source?

Yes - both are open-source projects on GitHub (pentest-ai: MIT, claude-code-plugins-plus-skills: MIT).

### Where can I find alternatives to pentest-ai or claude-code-plugins-plus-skills?

GraphCanon lists graph-backed alternatives at [pentest-ai alternatives](/tools/0xsteph-pentest-ai/alternatives) and [claude-code-plugins-plus-skills alternatives](/tools/jeremylongshore-claude-code-plugins-plus-skills/alternatives) ([pentest-ai markdown twin](/tools/0xsteph-pentest-ai/alternatives.md), [claude-code-plugins-plus-skills markdown twin](/tools/jeremylongshore-claude-code-plugins-plus-skills/alternatives.md)), ranked by typed relationship edges rather than popularity votes.

### Is there a machine-readable version of this comparison?

Yes. The markdown twin at [this comparison](/compare/0xsteph-pentest-ai-vs-jeremylongshore-claude-code-plugins-plus-skills.md) mirrors this page for agents and LLM crawlers, with the same stats table and FAQ answers.

### Which is better maintained, pentest-ai or claude-code-plugins-plus-skills?

pentest-ai: Active. claude-code-plugins-plus-skills: Very active. Compare maintenance labels, days since push, and release cadence in the trust section below - stars alone do not measure maintenance.

### Where are the full trust reports for pentest-ai and claude-code-plugins-plus-skills?

GraphCanon publishes per-repo trust reports with dated maintenance, provenance, and scan summaries: [pentest-ai trust report](/tools/0xsteph-pentest-ai/trust); [claude-code-plugins-plus-skills trust report](/tools/jeremylongshore-claude-code-plugins-plus-skills/trust).

---

**Machine-readable endpoints**

- JSON: [`/api/graphcanon/graph?tool=0xsteph-pentest-ai`](/api/graphcanon/graph?tool=0xsteph-pentest-ai)
- LLM index: [/llms.txt](/llms.txt)
- Full corpus: [/llms-full.txt](/llms-full.txt)

_GraphCanon - The knowledge graph for AI development. https://www.graphcanon.com/_
