Skip to main content
Run any Skill in Manus
with one click

security-scan

Stars0
Forks0
UpdatedMay 7, 2026 at 07:13

Runs a comprehensive security scan on any frontend or backend project regardless of language or framework. Detects hardcoded secrets, authentication gaps, XSS vulnerabilities (Vue v-html, React dangerouslySetInnerHTML, Angular [innerHTML]/bypassSecurityTrust*, Svelte {@html}), SQL/NoSQL/command injection, insecure dependencies via npm/pnpm/yarn audit (monorepo aware — runs in every package directory), OWASP Top 10 issues, missing input validation (frontend and backend), error disclosure, and transport security issues. Integrates Semgrep, Trivy, and Gitleaks when installed, and provides install instructions for missing tools. Generates a Markdown report. Use this skill for security reviews, vulnerability assessments, and reporting findings to the team.

Installation

Install with Codex or Claude Copy this prompt, paste it into Codex, Claude, or another assistant, and let it review the skill page and install it for you.

SKILL.md
readonly