audit-report

Generate structured security audit reports with findings, severity, and ASVS mappings.

9|2|Updated Dec 5, 2025
One-click install
npx skills add https://github.com/Zate/cc-plugins --skill audit-report
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: audit-report
Source: https://github.com/Zate/cc-plugins/tree/main/plugins/security/skills/audit-report
Command: npx skills add https://github.com/Zate/cc-plugins --skill audit-report

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill provides a ready-made template and formatting guidelines for security audit reports, ensuring findings are structured, severity-mapped, and remediation guidance is clear and actionable.

Core Features & Use Cases

  • Consistent structure for executive summaries, findings, severity, ASVS mappings, and remediation recommendations.
  • Audit comparison enables uniform reporting across multiple engagements.
  • Clear remediation guidance with actionable steps linked to ASVS controls.

Quick Start

Use the audit-report skill to generate a full report template for your latest assessment and fill in the executive summary, findings, and remediation recommendations.

Frequently Asked Questions about audit-report

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I generate a standardized security audit report?

Generate a standardized security audit report using this Skill's template, which structures findings, severity levels, ASVS mappings, remediation guidance, and executive summaries. Fill in your assessment data to produce a consistent, documented report suitable for web applications, APIs, libraries, CLIs, and mobile projects.

What should a security audit report include?

A security audit report should include an executive summary, detailed findings with severity scores, ASVS control mappings, clear remediation recommendations with actionable steps, and metadata-rich appendices. This Skill provides the structured template and formatting guidelines to ensure nothing is missed.

Can I use audit reports to compare findings across multiple security assessments?

Yes. This Skill enables audit comparison by enforcing uniform reporting structure across multiple engagements, making it easier to track remediation progress, identify patterns, and maintain consistency in how findings and severity are documented.

How do I map security findings to ASVS controls?

This Skill includes built-in ASVS mapping functionality within its report template. As you document findings, you link each to relevant ASVS controls, ensuring your audit evidence and remediation guidance align with the Application Security Verification Standard framework.

What's the best way to structure remediation guidance in a security report?

Structure remediation guidance with clear, actionable steps linked to specific ASVS controls and severity levels. This Skill's template enforces this structure, so findings are prioritized and remediation paths are unambiguous for development teams.

Do I need specialized knowledge to use this audit report template?

No special prerequisites are required to use this template. Familiarity with security audit concepts and ASVS is helpful but not mandatory; the Skill's structure guides you through executive summary, findings, severity scoring, and remediation documentation.