finding-review

Community

Harden and improve security findings

AuthorJoranHonig
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Provides a structured, standards-driven review of existing security findings to improve clarity, correctness, and actionable guidance so maintainers can assess and remediate issues confidently.

Core Features & Use Cases

  • Structural validation: Parses finding frontmatter and sections and reports schema violations.
  • Quality assessment: Evaluates title clarity, description completeness, recommendation objectivity, severity accuracy, and precondition specification.
  • Cross-checking: Invokes a familiar agent for impact and feasibility triangulation and a librarian agent to verify and locate authoritative references.
  • Interactive fixes: Presents passes, warnings, failures, and recommendations and can apply approved edits and re-run validation.
  • Use case: Run on a repository finding file to harden a draft finding before publishing or triaging in a security audit.

Quick Start

Review the specified finding file, run the validation checks, include the familiar and librarian assessments, and apply the recommended edits when prompted.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: finding-review
Download link: https://github.com/JoranHonig/grimoire/archive/main.zip#finding-review

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.