What problem does it solve?
It helps you perform high-signal security audits by systematically checking where real risk comes from: secrets, dependencies, CI/CD, threat models, and LLM/AI-specific attack surfaces.
Core Features & Use Cases
- Daily confidence-gated security review: Runs a low-noise pass geared toward finding high-confidence issues without flooding you with speculative results.
- Comprehensive deep scanning with trend tracking: Supports a broader monthly audit mode and keeps a memory trail across audit runs to spot recurring weaknesses.
- Threat modeling plus active verification: Combines structured frameworks (OWASP Top 10 and STRIDE) with verification loops to reduce false positives.
Quick Start
Use the skill when you want a security audit or threat model by saying: run security review for my project with OWASP Top 10 and STRIDE, include secret scanning, dependency supply chain checks, CI/CD hardening, and LLM/AI security review.