一键导入
secure-review
Apply the team's secure-review checklist when reviewing code that handles user input, authentication, or database access.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Apply the team's secure-review checklist when reviewing code that handles user input, authentication, or database access.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Generate REST API endpoints following project conventions. Activate when user asks to create a new API endpoint, add a route, or build a new API resource with CRUD operations.
Review code for security vulnerabilities, performance issues, and coding best practices. Activate when the user asks to review code, check code quality, give feedback on code changes, or audit a file.
Analyze financial data including revenue, costs, profitability, margins, and business metrics. Activate when user asks about financial analysis, revenue review, cost breakdown, ROI calculation, or profitability assessment.
| name | secure-review |
| description | Apply the team's secure-review checklist when reviewing code that handles user input, authentication, or database access. |
| allowed-tools | ["Read","Grep","Glob"] |
Walk the change against this list, in order. Stop and report as soon as you find a Critical item — it blocks the merge.
Report findings as: severity, file:line, exploit path, fix.