Skip to content
Back to skills

Security Review

ASecurity

Security vulnerability assessment identifying OWASP risks, injection vectors, authentication issues, and data exposure with severity classification.

  • 1,760 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added May 29, 2026
ai-agentsgobashsecurity

Security analysis

A100/100

Pro scans all 2 files and shows the line behind each finding

Scanned May 29, 2026

npx -y skills add a5c-ai/babysitter --skill security-review --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Security Review?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Security Review
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/a5c-ai-security-review/badge)](https://www.skillsdirectory.com/skills/a5c-ai-security-review)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: security-review
description: Security vulnerability assessment identifying OWASP risks, injection vectors, authentication issues, and data exposure with severity classification.
allowed-tools: Read, Bash, Grep, Glob, Agent, AskUserQuestion
---

# Security Review

## Overview

Identify security vulnerabilities in code changes. Covers OWASP categories, injection vectors, authentication/authorization issues, data exposure, and dependency risks.

## When to Use

- After code review passes (or in parallel)
- Before any code merge involving user-facing changes
- As part of the /review-security command
- Mandatory for high-stakes implementations

## Process

1. Identify modified files with security relevance
2. Scan for common vulnerability patterns
3. Assess authentication and authorization changes
4. Check for data exposure risks
5. Evaluate dependency security
6. Classify severity and provide recommendations

## Severity Levels

- **Critical**: Immediate exploitation risk
- **High**: Significant vulnerability requiring fix before merge
- **Medium**: Vulnerability that should be addressed soon
- **Low**: Minor security improvement opportunity

## Key Rules

- Security review failure halts implementation
- All findings must include file paths and line numbers
- Provide actionable remediation steps
- Reference OWASP categories where applicable

## Tool Use

Invoke via babysitter process: `methodologies/rpikit/rpikit-review`

Files in this skill

  • README.md414 B
  • SKILL.md1.4 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…