What problem does it solve?
Chief Security Officer mode enables automated, infrastructure-first security audits that reveal secrets archaeology, dependency supply chain weaknesses, CI/CD pipeline security gaps, and LLM/AI security risks. It also supports skill supply chain scanning and threat modeling workflows to prevent security incidents before they occur.
Core Features & Use Cases
- Infrastructure-first security audits covering secrets archaeology, dependency supply chain, CI/CD pipeline security, LLM/AI security, and skill supply chain scanning.
- Daily zero-noise audits with an 8/10 confidence gate and monthly comprehensive deep scans to track trends over time.
- OWASP Top 10 and STRIDE-based threat modeling, active verification, and remediation planning across the codebase and deployment.
Quick Start
Invoke the /cso command to start a daily security posture audit and switch to comprehensive for a deeper scan.