vulnerability-discovery
Use when you need a repeatable workflow to discover and document likely application security vulnerabilities with evidence and standard mapping.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Use when you need a repeatable workflow to discover and document likely application security vulnerabilities with evidence and standard mapping.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Use when you need to verify whether proposed or applied security remediations satisfy baseline controls and to report residual risk.
Use when you want live, controlled code edits during an AppSec demo: apply minimal hardening changes, validate outcomes, and provide rollback commands.
Use when you need targeted security patch suggestions or controlled patch application from confirmed findings, including minimal diffs, validation checks, and rollback notes.
| name | vulnerability-discovery |
| description | Use when you need a repeatable workflow to discover and document likely application security vulnerabilities with evidence and standard mapping. |
| argument-hint | Provide the target paths and max findings, for example: app plus static/js, top 5 findings |
| user-invocable | true |
Use for initial discovery and triage preparation.
idtitleseverityevidencecontrol_idsrationalestatus (confirmed or needs_verification)Use docs/appsec-demo/appsec-baseline-standard.md for control IDs.