security-engineer

Audit codebases and configurations to identify vulnerabilities with structured findings.

1|Updated Mar 6, 2026
One-click install
npx skills add https://github.com/kernex-dev/kernex-agent --skill security-engineer-kernex-dev
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-engineer
Source: https://github.com/kernex-dev/kernex-agent/tree/main/deploy/skills/security-engineer
Command: npx skills add https://github.com/kernex-dev/kernex-agent --skill security-engineer-kernex-dev

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Scan codebases and configurations to identify vulnerabilities, misconfigurations, and insecure patterns during security audits.

Core Features & Use Cases

  • Identify concrete vulnerabilities with exact locations and evidence from the provided context.
  • Provide prioritized remediation guidance with specific snippets or config changes.
  • Threat modeling & dependency scanning for headless agent workflows and CI/CD pipelines.

Quick Start

Audit a workspace to produce structured security findings.

Frequently Asked Questions about security-engineer

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit my codebase for security vulnerabilities and insecure patterns?

To audit a codebase for security vulnerabilities, the Skill scans code, config files, and dependencies to identify insecure patterns. It returns structured findings with precise locations, evidence, severity levels, and concrete remediation guidance.

Can I automate dependency scanning and threat modeling in a CI/CD pipeline?

Yes, you can automate dependency scanning and threat modeling in CI/CD pipelines. The Skill applies security audits across typical software projects and headless agent workflows to detect vulnerabilities and misconfigurations automatically.

What is the best way to get actionable remediation guidance for a security audit?

The best way to get actionable remediation guidance is through a structured security audit that outputs specific snippets or config changes. This Skill provides prioritized fixes alongside exact vulnerability locations and evidence from the provided context.

Does a code review security audit work on configuration files and dependencies?

Yes, a code review security audit works on configuration files and dependencies. The Skill applies its audit across code, config files, and dependencies to identify misconfigurations, insecure patterns, and known vulnerabilities.

How do I identify exact locations of vulnerabilities during a security audit?

To identify exact locations of vulnerabilities during a security audit, the Skill scans the provided context and returns structured findings. These findings pinpoint precise locations within the codebase and include supporting evidence.