Skip to content
Back to skills

Security Review

ASecurity

安全审查。Path C+ 自动触发或显式调用。检查认证/授权、输入验证、密钥管理、依赖漏洞。

  • 188 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 5, 2026
code-qualitysecurity

Security analysis

A100/100

Scanned September 5, 2026

npx -y skills add WenJunDuan/Rlues --skill security-review --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Security Review?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Security Review
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/wenjunduan-security-review-c9ea0b99/badge)](https://www.skillsdirectory.com/skills/wenjunduan-security-review-c9ea0b99)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: security-review
description: 安全审查。Path C+ 自动触发或显式调用。检查认证/授权、输入验证、密钥管理、依赖漏洞。
---
# Security Review

## 检查项
1. 认证/授权: 每个端点有权限检查?
2. 输入验证: 外部输入已验证和消毒?
3. 密钥管理: 无硬编码, 用环境变量
4. 依赖: `npm audit` / `pip audit` 无高危
5. 日志: 不记录密码/token/PII
6. CORS/CSP: Web 接口配置正确?

结果追加 quality.md。
如已安装 ECC → `npx ecc-agentshield scan` 做深度扫描。

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…