security-review-agent

Analyze system features and codebases for security vulnerabilities and compliance issues.

2|1|Updated Apr 1, 2026
One-click install
npx skills add https://github.com/gil-kapel/cursor-course-2026 --skill security-review-agent
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-review-agent
Source: https://github.com/gil-kapel/cursor-course-2026/tree/main/course/he_course/module-02-skills-and-agents/lesson-2.8-security-agent/security-review-agent
Command: npx skills add https://github.com/gil-kapel/cursor-course-2026 --skill security-review-agent

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill helps teams identify and analyze security vulnerabilities in features, architecture, or code, enabling proactive risk mitigation and safer deployments.

Core Features & Use Cases

  • Structured Security Reviews: Guides users through mapping attack surfaces and trust boundaries.
  • Threat Identification: Facilitates thorough evaluation of common security threats such as injection, auth issues, and data leaks.
  • Use Case: When releasing a new product feature, use this Skill to systematically assess security risks and formulate action plans.

Quick Start

Initiate a security review by describing the system or feature to assess potential vulnerabilities.

Frequently Asked Questions about security-review-agent

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I analyze a codebase for security vulnerabilities before deploying a new feature?

Security review for new features requires evaluating trust boundaries and attack vectors to identify injection risks, authentication issues, and data leaks, ensuring safer deployments through proactive risk mitigation before release.

What is the best way to identify attack surfaces and trust boundaries in my system architecture?

Mapping attack surfaces and trust boundaries involves systematically evaluating system architecture to pinpoint common security threats like injection flaws, authentication issues, and data leaks for targeted risk analysis.

Can I perform a threat modeling assessment on an existing codebase without prior security expertise?

Yes, threat modeling can be performed by submitting detailed system descriptions or codebase access, which allows the Skill to systematically identify vulnerabilities, evaluate risks, and generate actionable mitigation plans.

Does security review work across all development stages from design to deployment?

Yes, security review applies across all development stages from design to deployment, analyzing system features or codebases for vulnerabilities, trust boundaries, and compliance issues to enable safer releases.

What types of common security threats can be detected during a vulnerability assessment?

Common security threats detected during vulnerability assessment include injection vulnerabilities, authentication issues, and data leaks, identified through structured evaluation of attack vectors and trust boundaries.

What limitations exist when assessing compliance issues in a complex architecture?

Assessing compliance issues in complex architectures requires detailed system descriptions and direct code or architecture access; incomplete feature descriptions limit the effectiveness of the vulnerability assessment and risk analysis.