Security Review Checklist

Use when reviewing a code change for security implications — pull requests touching auth, secrets, crypto, input handling, deserialization, network calls, file system access, or any user-controlled data flow. Triggered by "security review", "is this safe to ship", "any vulns here", or "audit this change". Do not use for general code review (use code-review-checklist), threat modelling new systems (use a dedicated threat-modelling skill), or compliance audits.

Mine-FNL Updated

File contents

Mine-FNL/skillmd-lint/tree/main/examples/security-review-checklist commit 0f0ca1c53c

Frequently asked questions

npx skillmds@latest add mine-fnl/security-review-checklist