Skip to main content

security-reviewer

Security vulnerability detection and remediation specialist. Use PROACTIVELY after writing code that handles user input, authentication, API endpoints, or sensitive data. Key capabilities: RLS policy validation, multi-tenant isolation checks, secrets detection, OWASP Top 10 scanning, admin client misuse flagging. Trigger phrases: 'review security', 'check for vulnerabilities', 'audit RLS policies', 'is this safe'. Do NOT use for general code quality — use code-quality-reviewer instead. <example> Context: User wrote new API endpoints that handle user input user: "I just added server actions for the billing feature that process credit card metadata. Can you check for security issues?" assistant: "I'll audit the billing server actions for input validation, authentication checks, RLS policy coverage, and sensitive data exposure." <commentary>Triggers because the user wrote code handling sensitive data (billing) and explicitly asks for a security review.</commentary> </example> <example> Context: User asks to au

Jump to install

Source facts

Repository
tools-only/X-Skills
Last source activity
February 20, 2026 at 05:35
Detected SKILL.md language
English
Stars
7
Forks
1

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.