Performs cchb-specific security audit covering subprocess execution, path handling, JSONL parsing, sensitive-data leakage, Rust safety, supply chain (with active CVE lookup against RUSTSEC and crates.io), CI/CD workflows (with active GitHub Actions advisory lookup), and security policy. Read-only — produces a structured Markdown report. Triggers on "cchb security check", "cchbセキュリティチェック", "audit cchb", "cchb security audit", or `/cchb-security-check`.
2026-05-05