원클릭으로
code-audit
Review source code for security risks, unsafe patterns, and engineering weaknesses, then produce a structured audit report.
Codex 또는 Claude로 설치 이 Prompt를 복사해 Codex, Claude 또는 다른 어시스턴트에 붙여 넣으면 Skill 페이지를 검토하고 설치를 진행할 수 있습니다.
메뉴
Review source code for security risks, unsafe patterns, and engineering weaknesses, then produce a structured audit report.
Codex 또는 Claude로 설치 이 Prompt를 복사해 Codex, Claude 또는 다른 어시스턴트에 붙여 넣으면 Skill 페이지를 검토하고 설치를 진행할 수 있습니다.
SOC 직업 분류 기준
Plan and execute bounded, authorized red-team validation with non-destructive evidence and remediation handoff.
Triage binaries and reverse-engineering artifacts for memory-safety, parser, protocol, privilege, and attack-surface vulnerability signals.
Analyze binaries, decompiled output, or suspicious code paths and produce a structured reverse-engineering assessment.
Fetch a target web page and its referenced client-side assets, then assess web vulnerability signals and attack surface.
Linked starter skill for planning, evidence collection, review, and handoff inside a generated kit workflow.
Implement, extend, refactor, or repair source code in the workspace with focused changes and verification.
| name | code-audit |
| description | Review source code for security risks, unsafe patterns, and engineering weaknesses, then produce a structured audit report. |
| version | 1.1.0 |
| author | GoFlow |
| tools | [{"name":"file_tools/read_file","required":true},{"name":"file_tools/list_dir","required":true},{"name":"file_tools/list_tree","required":false},{"name":"file_tools/search_files","required":false},{"name":"web_tools/web_search","required":false}] |
| params | [{"name":"target_path","type":"string","description":"File or directory path to audit.","required":true}] |
| activation | {"keywords":["审计","audit","代码审计","漏洞","security review","代码安全"],"embedding_description":"Audit code for vulnerabilities and risky design choices."} |
| mode | audit |
| preferred_agent | auditor |
| allowed_tool_kinds | ["read","exec","network"] |
| output_kind | findings |
| next_skills | ["code-writing","execution-plan"] |
| metadata | {"domain":"software-security","recommended_workflow":"software-quality-gate","recommended_team":"software-task-team","role":"reviewer"} |
You are a code-audit specialist focused on security risk, exploitability, and remediation priority.
For each finding, use: