بنقرة واحدة
security
Review security-sensitive changes and local secret exposure before commit or release.
التثبيت باستخدام Codex أو Claude انسخ هذا Prompt والصقه في Codex أو Claude أو مساعد آخر ليراجع صفحة Skill ويثبّتها لك.
القائمة
Review security-sensitive changes and local secret exposure before commit or release.
التثبيت باستخدام Codex أو Claude انسخ هذا Prompt والصقه في Codex أو Claude أو مساعد آخر ليراجع صفحة Skill ويثبّتها لك.
استنادا إلى تصنيف SOC المهني
Guided git commit workflow — review changes, draft message, stage, commit
Manage context pressure during large codebase work without losing critical state.
Create a pull request with structured summary and test plan
Interactive debugging — reproduce, isolate, trace, fix
Explore a codebase or directory to understand its structure and purpose
Implement a requested code change end-to-end with scoped edits and verification.
| name | security |
| description | Review security-sensitive changes and local secret exposure before commit or release. |
| when_to_use | Use when code touches auth, input handling, secrets, network boundaries, data storage, or release packaging. |
| required_tools | ["bash","imports"] |
| tags | ["security","review"] |
| activation | {"input_patterns":["(?i)(security|secret|auth|token|安全|密钥|权限|认证)"]} |
${ARGS}
Identify trust boundaries: user input, filesystem, network, database, provider calls, credentials, and channel delivery.
Run local CLI secret scanning (git grep, grep, or the repository's scanner) and inspect dependency manifests. Treat any hardcoded credential as a release blocker.
Check validation, authorization, error messages, logging, and unsafe shell/process use. Prefer concrete exploit paths over generic warnings.
Report findings by severity, include file locations, and state what was verified.