一键导入
sdd-security-check
Audit a focused scope for exploitable security flaws and prioritized remediation.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Audit a focused scope for exploitable security flaws and prioritized remediation.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Commit verified SDD changes and prepare a focused pull request.
Design an approved SDD feature with traceable components, interfaces, risks, and tests.
Implement approved SDD tasks test-first with focused verification and security checks.
Generate testable EARS requirements and measurable acceptance criteria for an SDD feature.
Review a focused change for correctness, regressions, security, and maintainability.
Define scoped custom steering for a verified project convention or domain.
| name | sdd-security-check |
| description | Audit a focused scope for exploitable security flaws and prioritized remediation. |
| disable-model-invocation | true |
Do not make destructive probes, contact external systems, or claim exploitability without evidence.
Target renderers provide the security-auditor route. When a native advisor is required, dispatch exactly one compact handoff with specialistDepth: 1; include only threat context, relevant diff, security requirements, and scan evidence. The specialist must not delegate again. Keep the handoff and returned summary at or below 2,048 estimated tokens. If the advisor or routed model is unavailable, record one fallback and continue in the parent without retrying or selecting a generic child. Where a native per-turn model override applies, execute in this turn.
Return findings ordered critical/high/medium/low, each with evidence, impact, remediation, and verification. Then list checked areas, unresolved blockers, and residual risk.
Read REFERENCE.md only for OWASP prompts, severity guidance, or the report checklist.