Security Review

Threat-model-driven security review of a change, feature, or subsystem. Runs a STRIDE-style pass over the actual code and produces a filing-ready report with severity, exploit scenario, and remediation. Use when asked to "security review", "threat model", "check for vulnerabilities", "audit for security", "secure this", or before shipping changes touching auth, input handling, data access, or external surfaces.

open-gsd 7649246 7.6 KB Updated

File contents

open-gsd/gsd-pi/tree/main/src/resources/skills/security-review commit 7649246618

Frequently asked questions

npx skillmds@latest add open-gsd/security-review