Awesome Leak Audit

Audits a public-facing client (extension, mobile or desktop app, SPA, CLI, SDK) so its published surface reveals nothing about the private backend: leaked internals in comments, docs and tests (rate limits, anti-abuse, quotas, test backdoors, infra, schema, env-var names), plus client hardening (permissions, message-sender validation, token handling, DOM sinks, bundled secrets). Use when asked whether a repo leaks backend details, before open-sourcing or a store submission, to harden a client, or 'что раскрывает наш клиент'. Do not use for server-side vulnerability hunting (awesome-security-audit).

khasky 09ea984 8 files · 56.4 KB Updated

File contents

khasky/awesome-agent-skills/tree/main/skills/awesome-leak-audit commit 09ea9843ab

Frequently asked questions

npx skillmds@latest add khasky/awesome-leak-audit