一键导入
security-review
Используй для security, secrets, permissions, MCP trust boundary. EN: defensive security review.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Используй для security, secrets, permissions, MCP trust boundary. EN: defensive security review.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
| name | security-review |
| description | Используй для security, secrets, permissions, MCP trust boundary. EN: defensive security review. |
Review secrets, config, MCP servers, runtime permissions, server modes, and
automation risk. MiMoCode permissions are not a sandbox. No credential,
auth.json, token, provider key, or MIMOCODE_AUTH_CONTENT value may be
committed.
High-risk autonomous actions require explicit owner policy and appropriate human oversight.
Используй для browser QA только через управляемые Playwright CLI и Chrome DevTools MCP. EN: managed CloakBrowser evidence review.
Воркер cmux v3 для MiMoCode: cmux worker role, typed task envelope, heartbeat, scoped JSON report, no push/final sync. Используй для: cmux worker, worker report. EN triggers: cmux v3 worker. EN: cmux v3 worker.
Используй для финальной синхронизации rldyour после задачи. EN: post-task sync.
Используй для visual/Figma/design QA evidence. EN: design and visual review.
Используй для ремонта repo/config/runtime/release drift. EN: repair convergence.
Используй для полного rldyour SDLC: контекст, план, реализация, проверки, sync. EN: full lifecycle implementation.