Perform a focused security review using a 3-phase methodology: vulnerability identification across five domains (Input Validation, Authentication/Authorization, Cryptography, Injection, Data Exposure), aggressive false-positive filtering, and confidence scoring with an 80% exploitability threshold. Only reports findings the reviewer is confident are real and exploitable. Use when reviewing code for security vulnerabilities, auditing authentication flows, or assessing data handling practices.
Security Review
Perform a focused 3-phase security review with vulnerability identification, false-positive filtering, and confidence scoring (>80% exploitability threshold) covering Input Validation, Auth, Crypto, Injection, and Data Exposure
Security Review by paperclipai · 966e207
npx skillmds@latest add paperclipai/security-review File contents
---name: security-reviewdescription: Perform a focused 3-phase security review with vulnerability identification, false-positive filtering, and confidence scoring (>80% exploitability threshold) covering Input Validation, Auth, Crypto, Injection, and Data Exposure---Perform a focused security review using a 3-phase methodology: vulnerability identification across five domains (Input Validation, Authentication/Authorization, Cryptography, Injection, Data Exposure), aggressive false-positive filtering, and confidence scoring with an 80% exploitability threshold. Only reports findings the reviewer is confident are real and exploitable. Use when reviewing code for security vulnerabilities, auditing authentication flows, or assessing data handling practices.
paperclipai/companies/tree/main/redoak-review/skills/security-review commit 966e207bf6
Frequently asked questions
Run npx skillmds@latest add paperclipai/security-review in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.
Perform a focused 3-phase security review with vulnerability identification, false-positive filtering, and confidence scoring (>80% exploitability threshold) covering Input Validation, Auth, Crypto, Injection, and Data Exposure It is listed under Security on SkillMD.
This skill has not completed SkillMD's automated safety review yet. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.
This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.
Yes. Installing skills from SkillMD is free, and the skill stays under its author's original license.
paperclipai (@paperclipai) published this skill. Their other Agent Skills are listed on their SkillMD profile.