gstack-cso

Analyze code repositories for security vulnerabilities and threat models.

1|Updated Apr 5, 2026
One-click install
npx skills add https://github.com/giljae/gstack-antigravity --skill gstack-cso-giljae
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: gstack-cso
Source: https://github.com/giljae/gstack-antigravity/tree/main/gstack-origin/.agents/skills/gstack-cso
Command: npx skills add https://github.com/giljae/gstack-antigravity --skill gstack-cso-giljae

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill helps security teams identify vulnerabilities and assess the security posture of their systems by performing targeted evaluations and threat modeling.

Core Features & Use Cases

  • Security Auditing: Conducts OWASP Top 10 assessments and maps attack surfaces to find potential entry points.
  • Threat Modeling: Evaluates systems for spoofing, tampering, data leaks, and privilege escalation vulnerabilities.
  • Use Case: A security engineer wants to identify insecure configurations, outdated components, and access control flaws in a new application before deployment.

Quick Start

Invoke the /cso command in your terminal or chat to start a comprehensive security review of your project.

Frequently Asked Questions about gstack-cso

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform a security audit on my codebase to identify vulnerabilities?

To perform a security audit on your codebase, this Skill analyzes your code repositories to identify security vulnerabilities, attack surfaces, and configuration weaknesses, mapping them against OWASP compliance standards to improve your overall security posture.

What is threat modeling and how does it evaluate spoofing or tampering risks?

Threat modeling evaluates your systems for spoofing, tampering, data leaks, and privilege escalation vulnerabilities. This Skill assesses your code repository to map potential attack surfaces and identify entry points before deployment.

Can I check my application for OWASP Top 10 compliance and supply chain risks before deployment?

Yes, you can check your application for OWASP Top 10 compliance and supply chain risks before deployment. This Skill targets insecure configurations, outdated components, and access control flaws to help prevent exploits.

What is the best way to map attack surfaces and find potential entry points in a new application?

The best way to map attack surfaces and find potential entry points is to use a comprehensive security audit. This Skill conducts targeted evaluations of your code repositories to identify access control flaws and configuration weaknesses.

How do I start a comprehensive security review of my project?

To start a comprehensive security review of your project, invoke the /cso command in your terminal or chat. This initiates the analysis of your code repositories for vulnerabilities and threat models.