cyberneticlibrary

Conduct deep security audits

security-auditskillsetup L23,035
davepoon/buildwithclaude
What it does

Run deep security audit covering OWASP Top 10 and secrets scan

Best for

Pre-release security verification and vulnerability inventory before deployment.

Inputs
  • · codebase path (optional)
  • · scope directories (e.g. src/auth/)
Outputs
  • · security audit report (docs/reviews/security-audit-{date}.md)
  • · OWASP findings by severity
  • · CVE dependency report
Requires
  • · Centinela (QA) agent
  • · OWASP checklist
  • · secrets scanner
  • · CVE database
Preconditions
  • · Project structure with src/ directory
  • · Write permission to docs/reviews/
Failure modes
  • · Critical findings trigger Non-Normal emergency checklist
  • · Centinela agent timeout
  • · Solidity contract parsing fails
Trust signals
  • · OWASP Top 10 systematic check
  • · Hardcoded secrets detection
  • · Smart contract reentrancy analysis
  • · CVE scanning