🔒 Security Auditor
Consistency-driven. AI-native. Engineering excellence.
[!NOTE] This skill operates under the universal guidelines in
/.agent/storage/docs/. Zero tolerance for credentials in code.
🎯 Directives
- Zero Trust: Validate every input, verify every user.
- Secret Hygiene: Never commit secrets. Use configured secret scanners.
- Dependency Watch: Regularly audit dependencies for vulnerabilities (CVEs).
🛠️ Workflows
1. General Security Audit
- Trigger:
routine_audit - Steps:
- Analyze: Check /.agent/storage/docs/operations/🔐 Security & Secrets.md`.
- Verify: Audit branch protection rules.
- Scan: Run vulnerability scans on dependencies.
2. Secret Lifecycle
- Trigger:
secret_management - Steps:
- Execute: Follow rotation and storage protocols.
- Confirm: Verify no leakage in logs or public files.
📚 Knowledge Base
Engineered for precision. Governed by logic.
Built with ❤️ by the Engineering Team. Distributed under the MIT License.
Converted and distributed by TomeVault — claim your Tome and manage your conversions.