code-security

Provide security guidelines for writing secure code and auditing vulnerabilities.

260|28|Updated Jan 15, 2026
One-click install
npx skills add https://github.com/semgrep/skills --skill code-security
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: code-security
Source: https://github.com/semgrep/skills/tree/main/skills/code-security
Command: npx skills add https://github.com/semgrep/skills --skill code-security

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Security guidelines to help AI agents and developers write secure code and audit code for vulnerabilities across languages and frameworks.

Core Features & Use Cases

  • Comprehensive, category-organized security rules with practical examples.
  • Guidance for secure coding practices and vulnerability reviews across multiple languages.
  • Real-world scenarios to apply secure patterns during development and code reviews.

Quick Start

Review a codebase and consult these guidelines to implement safe patterns and actionable remediation steps.

Frequently Asked Questions about code-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit my codebase for security vulnerabilities?

You can audit code for vulnerabilities by reviewing your codebase against comprehensive, category-organized security rules to identify risks and apply actionable remediation steps.

What secure coding practices should I follow to prevent OWASP vulnerabilities?

Secure coding practices to prevent OWASP vulnerabilities include applying language-agnostic security rules organized by impact, using concrete examples to guide safe pattern implementation during development and code reviews.

Can I use these security guidelines across different programming languages?

Yes, you can use these security guidelines across different programming languages, as they apply language-agnostic rules and secure coding practices to support vulnerability reviews throughout various development workflows.

What is the best way to integrate secure code review into my development workflow?

The best way to integrate secure code review into your development workflow is to consult category-organized security guidelines with real-world scenarios, applying safe patterns and actionable remediation during reviews.

How do AI agents use security rules to write secure code?

AI agents use security rules to write secure code by consulting comprehensive, category-organized guidelines with concrete examples, applying safe patterns and actionable remediation steps across various languages and frameworks.