Fxa Security Review

Comprehensive security review of changed code. Checks for OWASP vulnerabilities, secrets leakage, XSS, SQL/Redis injection, CORS issues, insecure crypto, OTP/TOTP misuse, insufficient logging, Docker/CI exposure, and more. Use when landing changes that touch auth, payments, user data, or any security-sensitive path.

mozilla d118fd7 7.7 KB Updated

File contents

mozilla/fxa/tree/main/.claude/skills/fxa-security-review commit d118fd72e1

Frequently asked questions

npx skillmds@latest add mozilla/fxa-security-review