
from security-check40
AI-driven security scanning pipeline: recon, automated hunts across OWASP categories, verification, and consolidated reporting for codebases and PRs.
Security-Check converts an AI assistant into a multi-stage security scanner that runs Recon, Hunt, Verify, and Report phases. It orchestrates parallel vulnerability checks across injection classes, access control, data exposure, API security, infrastructure misconfigurations, and language-specific scanners. The skill produces a structured output directory with consolidated reports, architecture maps, dependency audits, and verified findings. It focuses on natural-language driven scans so teams can run audits and PR-level diffs without complex CI changes.
Use this skill for repository security audits, scanning PR diffs before merge, supply-chain analysis, or generating remediation plans with CVSS severity and confidence scores. Trigger when the user asks for a security audit, vulnerability scan, PR scan, or penetration-test style review.
Designed for agents that can coordinate multi-step analysis and file output (Claude Code, Cursor, Codex, Gemini CLI).
This skill has not been reviewed by our automated audit pipeline yet.