Secure Code

Static analysis security scanning and architectural trifecta detection using semgrep. Use when reviewing code for security vulnerabilities, running SAST scans, checking for the lethal trifecta (private data + untrusted input + external comms co-occurrence), or when the user says 'scan', 'security scan', 'trifecta check', 'check for vulnerabilities', 'SAST', or 'secure this code'. On-demand via /scan and /trifecta-check commands.

davisbuilds 7890a2e 13 files · 35.6 KB Updated

File contents

davisbuilds/dojo/tree/main/skills/secure-code commit 7890a2e618

Frequently asked questions

npx skillmds@latest add davisbuilds/secure-code