Security

Apply when code handles untrusted input, authentication, authorization, cryptography, secrets, or crosses a trust boundary. Trigger on mentions of security review, threat modeling, vulnerabilities, injection, XSS, CSRF, SSRF, auth, secrets management, or hardening. Extends the defensive-programming skill's boundary validation with adversary-aware techniques. Language-specific vulnerability patterns are in references/. Use when this capability is needed.

tomevault-io Updated

File contents

tomevault-io/skills-registry/tree/main/tswr--engineering-mastery-plugin--security commit ff0e7386ab

Frequently asked questions

npx skillmds@latest add tomevault-io/security-21