| name | security-audit |
| description | Run a security audit on the project (dependencies, secrets, OWASP) |
| model | haiku |
| context | fork |
| agent | security-reviewer |
Perform a comprehensive security audit of this project.
If $ARGUMENTS is provided, focus the audit on that specific area.
Steps:
- Run dependency audit (npm audit, pip-audit, cargo audit, etc.)
- Scan for hardcoded secrets, API keys, and credentials
- Review authentication and authorization patterns
- Check for OWASP Top 10 vulnerabilities in the codebase
- Report findings categorized by severity (critical/high/medium/low)