All loops
SecurityEasy 10 min· claude-haiku-4-5

Anomalous query detector

Anomalous query detector with audit-grade logs.

Read the full Security build guide →
NOT DEPLOYEDNOT DEPLOYED
0160ms
Trigger
cron(0 7 * * *) fired · every day · 07:00
021060ms
Agent
claude-haiku-4-5 · in 1360 tok · out 412 tok
03330ms
Tools
aws-mcp/anthropic:messages.create → 200 OK · 300ms
0450ms
Verify
schema check · zod v3 passed
0580ms
Output
linear ticket · SOC2 evidence stored
0640ms
Notify
audit log written · runbook link attached
SUCCESS
0%
0 runs
P50
0ms
median
P95
0ms
tail
AVG COST
per run
LAST OK
never
LAST FAIL
never
none
Latency · last 30 runs0 samples
no runs yet
Latest output · what your users see
SEC-1080CWE-798
Public S3 bucket `acme-logs-prod` — no encryption at rest
// press Test to run once · Watch live to keep streaming · Deploy to make it real
The problem

Security tasks are tedious, easy to skip, and dangerous to skip.

The outcome

Tedium is automated; humans review summaries and approve.

Ingredients & skills

Secrets
  • ANTHROPIC_API_KEY
Providers
  • Anthropic
MCP servers
  • aws-mcp
  • github-mcp
#security#audit#claude

How it works

Anomalous query detector with audit-grade logs.

Step 1

1 — Read-only scan

All cloud + repo calls are scoped read-only by the locker.

Step 2

2 — Summarise

Claude ranks findings by blast radius, not raw severity.

Step 3

3 — Ticket

Top findings open tickets with owner + suggested fix.

One-line deploy

The button above runs the same command with your saved config. This is the raw CLI form.

bash
npx claudeloops deploy anomalous-query-detector

Related loops