application-security

Enforce secure coding practices across Python, Go, JavaScript/TypeScript, PHP, and Node.js projects.

31|4|Updated Aug 24, 2021
One-click install
npx skills add https://github.com/razorpay/trino-gateway --skill application-security-razorpay
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: application-security
Source: https://github.com/razorpay/trino-gateway/tree/main/.agents/skills/code-security
Command: npx skills add https://github.com/razorpay/trino-gateway --skill application-security-razorpay

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

It provides proactive, practical security guidance to help developers write secure code, perform secure reviews, and discuss safe architectures across multiple languages and frameworks.

Core Features & Use Cases

  • Inline security guidance during coding and code reviews
  • Language- and framework-specific patterns across Python, Go, JavaScript/TypeScript, PHP, and Node.js
  • Threat modeling, security checklists, and secure design prompts for architecture discussions

Quick Start

Ask the skill to review a codebase and surface secure-by-default patterns, then generate a security checklist.

Frequently Asked Questions about application-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I enforce secure coding best practices across multiple languages?

To enforce secure coding across multiple languages, apply language-specific patterns for Python, Go, JavaScript/TypeScript, PHP, and Node.js. This skill provides inline security comments, threat modeling guidance, and checklists to proactively flag issues during development and code reviews.

Can I use this for secure code reviews in Python and Go projects?

Yes, you can perform secure code reviews in Python and Go projects. It guides inline SECURITY comments and enforces secure-by-default patterns specific to your framework, helping to surface vulnerabilities directly during the review process.

What is the best way to integrate threat modeling into architecture discussions?

The best way to integrate threat modeling into architecture discussions is by using secure design prompts and structured security checklists. This skill provides these resources to guide proactive issue flagging and ensure safe architectural decisions across your stack.

Does this secure code review skill support Node.js and PHP frameworks?

Yes, this secure code review skill supports Node.js and PHP frameworks. It delivers framework-specific security guidance, inline checks, and secure coding patterns tailored to these environments alongside Python, Go, and JavaScript/TypeScript.

How do I generate a security checklist for an existing codebase?

To generate a security checklist for an existing codebase, ask the skill to review your code and surface secure-by-default patterns. It analyzes the codebase against structured resources to output a tailored security checklist for your projects.