Skip to main content
在 Manus 中运行任何 Skill
一键导入

security-scan

星标0
分支0
更新时间2026年5月7日 07:13

Runs a comprehensive security scan on any frontend or backend project regardless of language or framework. Detects hardcoded secrets, authentication gaps, XSS vulnerabilities (Vue v-html, React dangerouslySetInnerHTML, Angular [innerHTML]/bypassSecurityTrust*, Svelte {@html}), SQL/NoSQL/command injection, insecure dependencies via npm/pnpm/yarn audit (monorepo aware — runs in every package directory), OWASP Top 10 issues, missing input validation (frontend and backend), error disclosure, and transport security issues. Integrates Semgrep, Trivy, and Gitleaks when installed, and provides install instructions for missing tools. Generates a Markdown report. Use this skill for security reviews, vulnerability assessments, and reporting findings to the team.

安装

用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。

SKILL.md
readonly