security-audit

Scan code, configurations, and deployments to generate vulnerability reports with remediation steps.

Updated Mar 8, 2026
One-click install
npx skills add https://github.com/petrSimonidesXart/xPmGateway --skill security-audit-petrsimonidesxart
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-audit
Source: https://github.com/petrSimonidesXart/xPmGateway/tree/main/.gaai/core/skills/cross/security-audit
Command: npx skills add https://github.com/petrSimonidesXart/xPmGateway --skill security-audit-petrsimonidesxart

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Detect security vulnerabilities and governance violations across delivered code, configurations, and deployed environments, enabling governance checks and risk mitigation.

Core Features & Use Cases

  • Automated scanning of code, configurations, and deployment setups for common vulnerability patterns
  • Compliance validation with project security rules and audit trails
  • Use Case: Periodic governance checks after implementation to maintain security posture

Quick Start

Audit a repository to generate a vulnerability report and remediation plan.

Frequently Asked Questions about security-audit

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit code and deployments for security vulnerabilities?

To audit code and deployments for security vulnerabilities, you apply automated scanning to your development pipelines, repositories, configurations, and runtime environments, generating a vulnerability report with severity scores and remediation steps.

What is a security audit of development pipelines and runtime environments?

A security audit of development pipelines and runtime environments is the process of identifying security vulnerabilities and governance violations across code, configurations, and deployed environments to enable risk mitigation and compliance checks.

How do I check code repository configurations for compliance violations?

You check code repository configurations for compliance violations by applying automated scanning to validate them against project security rules, producing an auditable vulnerability report and compliance status.

Does the security audit process generate remediation steps for detected vulnerabilities?

Yes, the security audit process generates remediation steps for detected vulnerabilities. It produces an auditable vulnerability report that includes severity scores, compliance status, and specific remediation actions.

When do I need to perform a security audit on my code repository?

You need to perform a security audit on your code repository during periodic governance checks after implementation. This maintains your security posture by detecting common vulnerability patterns and governance violations.

What's the best way to generate an auditable vulnerability report for deployed environments?

The best way to generate an auditable vulnerability report for deployed environments is to apply automated scanning across your configurations and runtime environments, which outputs severity scores and compliance validation against security rules.