Security Analyzer

Comprehensive security vulnerability analysis for codebases and infrastructure. Scans dependencies (npm, pip, gem, go, cargo), containers (Docker, Kubernetes), cloud IaC (Terraform, CloudFormation), and detects secrets exposure. Fetches live CVE data from OSV.dev, calculates risk scores, and generates phased remediation plans with TDD validation tests. Use when users mention security scan, vulnerability, CVE, exploit, security audit, penetration test, OWASP, hardening, dependency audit, container security, or want to improve security posture. Use when this capability is needed.

tomevault-io 877ed48 2 files · 5.4 KB Updated

File contents

tomevault-io/skills-registry/tree/main/cornjebus--security-analyzer--security-analyzer commit 877ed48ac8

Frequently asked questions

npx skillmds@latest add tomevault-io/security-analyzer