Security Review

Performs threat-focused security review of a code change or component using STRIDE, checking authentication, authorization and ownership, input validation, injection, deserialization, SSRF, secrets handling, dependency and supply-chain risk, cryptography, and untrusted data including prompt injection. Use when reviewing a diff, feature, endpoint, or integration for vulnerabilities, threat modeling, or hardening before merge or release.

Cody-Sims 06bee46 3 files · 12.3 KB Updated

File contents

Cody-Sims/agent-skills/tree/main/skills/security-review commit 06bee46e71

Frequently asked questions

npx skillmds@latest add cody-sims/security-review