security-analyst

Identify and prioritize OWASP Top 10 vulnerabilities in web applications.

1|Updated Mar 6, 2026
One-click install
npx skills add https://github.com/grant-vine/wunderkind --skill security-analyst-grant-vine
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-analyst
Source: https://github.com/grant-vine/wunderkind/tree/main/skills/security-analyst
Command: npx skills add https://github.com/grant-vine/wunderkind --skill security-analyst-grant-vine

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps security teams and developers rapidly identify and remediate vulnerabilities by applying OWASP Top 10 guidance, performing structured security reviews, and documenting risk-focused findings.

Core Features & Use Cases

  • OWASP Top 10 alignment and threat modeling support for web apps and APIs.
  • Systematic vulnerability assessments and security code review with clear remediation guidance.
  • Use Case: assess a new web service for authentication and authorization weaknesses and generate a risk-driven remediation plan.

Quick Start

Perform a vulnerability assessment of your web application focusing on OWASP Top 10 issues and document actionable remediation steps.

Frequently Asked Questions about security-analyst

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform an OWASP Top 10 vulnerability assessment for a web application?

OWASP vulnerability assessments are performed by applying structured code reviews and threat modeling to identify security gaps, prioritizing risks, and generating evidence-based remediation steps for web frontends and APIs.

Can I use this for security code reviews and threat modeling across microservices?

Security code reviews and threat modeling are supported across microservices and APIs, applying OWASP Top 10 alignment to assess authentication and authorization weaknesses while documenting risk-driven findings.

What's the best way to identify and remediate authentication weaknesses in a new web service?

Authentication weaknesses are identified through systematic vulnerability assessments that apply OWASP guidance to code reviews, producing a risk-scored report with actionable remediation guidance for the web service.

Does this vulnerability assessment approach work for incident response and collaborative review workflows?

Vulnerability assessment applies to incident response and collaborative review workflows by structuring vulnerability reporting, scoring risks, and documenting evidence-based remediation guidance across web applications and APIs.

How does risk scoring work in structured vulnerability reporting?

Risk scoring in vulnerability reporting works by prioritizing identified OWASP Top 10 vulnerabilities based on threat modeling and assessment results, yielding a risk-driven remediation plan for web applications.