mg-security-review

Identify and report security vulnerabilities with prioritized remediation guidance.

1|1|Updated Feb 4, 2026
One-click install
npx skills add https://github.com/wonton-web-works/miniature-guacamole --skill mg-security-review
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: mg-security-review
Source: https://github.com/wonton-web-works/miniature-guacamole/tree/main/src/framework/skills/mg-security-review
Command: npx skills add https://github.com/wonton-web-works/miniature-guacamole --skill mg-security-review

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

The security-review skill helps teams identify, assess, and remediate vulnerabilities across code, dependencies, and configurations, delivering prioritized findings with practical remediation steps.

Core Features & Use Cases

  • OWASP Top 10 assessment: identifies and ranks vulnerabilities across web, API, and software stacks.
  • Comprehensive domain coverage: analyzes web, systems, cloud, and crypto surfaces with domain-specific checklists.
  • Actionable remediation: each finding includes concrete steps, owners, and suggested mitigations.

Quick Start

Run a comprehensive security audit on the target codebase to identify vulnerabilities, inventory findings by severity, and generate actionable remediation steps.

Frequently Asked Questions about mg-security-review

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I run a security audit to find vulnerabilities in my code?

Run a security audit to identify vulnerabilities across client code, dependencies, and configurations, generating a prioritized inventory of findings by severity. The process evaluates static code and runtime configurations to deliver concrete remediation steps.

What is an OWASP Top 10 assessment for web and API security?

An OWASP Top 10 assessment identifies and ranks security vulnerabilities across web, API, and software stacks. It applies domain-specific checklists to web, systems, cloud, and crypto surfaces to ensure comprehensive risk evaluation and actionable fixes.

Can I scan dependencies and cloud configurations for security risks?

Yes, you can scan dependencies and cloud configurations for security risks. The audit comprehensively analyzes web, systems, cloud, and crypto domains, handling both static code reviews and runtime configurations to uncover hidden vulnerabilities.

How are critical security vulnerabilities reported and escalated?

Critical security vulnerabilities are escalated immediately during the audit. Findings include severity levels, exact locations, and concrete remediation steps with suggested mitigations and owners, ensuring urgent issues are prioritized for resolution.

What is the best way to get actionable remediation guidance for code security?

The best way to get actionable remediation guidance is through a comprehensive code security audit. Each finding includes concrete steps, owners, and suggested mitigations, translating risk assessment results into practical fixes across web, cloud, and crypto domains.