Security Sast Dast

Use this skill when asked about SAST, DAST, static analysis, dynamic analysis, code scanning, SonarQube, Semgrep, Checkmarx, Fortify, OWASP ZAP, or Burp Suite. This skill enforces: SAST tool integration with custom rule writing, DAST scanning with authenticated sessions, false positive triage workflow, and CI pipeline gate configuration. Do NOT use for: dependency scanning (SBOM), container image scanning, or runtime security monitoring.

j4flmao Updated

File contents

j4flmao/agent-skills/tree/main/skills/security/sast-dast commit 1c1374af19

Frequently asked questions

npx skillmds@latest add j4flmao/security-sast-dast