Skip to Content
Back to Marketplace

security-reviewer

Conduct security audits, review code for vulnerabilities, and analyze infrastructure security with this skill, which specializes in code review, SAST scans, penetration testing, and DevSecOps practices.

4,690downloads8installs8stars
v1.0.0
cmdopSecuritycloud security, code review, compliance, DevSecOps, penetration testing, SAST, security3/2/2026

Overview

Use the security-reviewer skill when conducting security audits, reviewing code for vulnerabilities, or analyzing infrastructure security. This skill is designed for senior security analysts with 10+ years of application security experience.

Key Features

  • Code review and vulnerability identification
  • SAST scans and penetration testing
  • Infrastructure security audits and DevSecOps practices
  • Actionable reports with severity ratings and remediation guidance

How It Works

  1. Scope - Define the attack surface and critical paths
  2. Automated scan - Run SAST and dependency tools
  3. Manual review - Review authentication, input handling, and crypto
  4. Active testing - Validate and exploit (authorized only)
  5. Categorize - Rate severity (Critical/High/Medium/Low)
  6. Report - Document findings with remediation

Use Cases

  • Conducting security audits
  • Reviewing code for vulnerabilities
  • Analyzing infrastructure security
  • Implementing DevSecOps practices

Related Skills

  • Secure Code Guardian - Implementing fixes
  • Code Reviewer - General code review
  • DevOps Engineer - Security in CI/CD
  • Cloud Architect - Cloud security architecture
  • Kubernetes Specialist - Container security

Reviews

No reviews yet.