Security Audit Phased

Use when a reviewer wants to steer a security code audit between phases — Phase 1 reconnaissance, Phase 2 prior-vuln pattern analysis, Phase 3 systematic CWE-taxonomy weakness hunt (including PEACH tenant isolation), Phase 4 cross-cutting analysis and final report, Phase 6 reproducer generation, plus review/CVSS/follow-up-seed helpers. Each phase is a separate slash command that reads the previous phase's JSON and writes its own.

openshift 2ab3086 9 files · 65.7 KB Updated

File contents

openshift/traust/tree/main/harnessing/3-audit/security-audit-phased commit 2ab3086c23

Frequently asked questions

npx skillmds@latest add openshift/security-audit-phased