Security Review

Security review orchestrator for dependency lockfiles and source: inventory of lockfiles/manifests (npm, pip, cargo, go, gem, maven, gradle, composer), exit-code classifier for 13 security tools (semgrep, bandit, gitleaks, osv-scanner, pip-audit, trufflehog, checkov, trivy, grype, npm audit, cargo audit), JSON normalizer to a unified finding schema, and human-readable reports. Stdlib-only Python helper + workflow for OWASP-aligned security review.

bestdeejay-design 4f31cae 4 files · 27.9 KB Updated

File contents

bestdeejay-design/agent-skills/tree/main/skills/security-review commit 4f31cae709

Frequently asked questions

npx skillmds@latest add bestdeejay-design/security-review