security-review

Identify and remediate security vulnerabilities across authentication, input handling, secrets management, and API design.

Updated Nov 15, 2025
One-click install
npx skills add https://github.com/geinala/entry --skill security-review-geinala
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-review
Source: https://github.com/geinala/entry/tree/main/.agents/skills/security-review
Command: npx skills add https://github.com/geinala/entry --skill security-review-geinala

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Identifies and remediates security vulnerabilities across authentication, input handling, secrets management, API design, and payment features, helping teams build safer software from design through deployment.

Core Features & Use Cases

  • Comprehensive security checklist aligned with industry best practices
  • Threat modeling and secure-by-default patterns for common stacks
  • Verification steps to validate compliance before deployment
  • Use Case: Integrate during API development to audit auth flows and data handling

Quick Start

Run a security review on a new feature and generate a prioritized remediation plan.

Frequently Asked Questions about security-review

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I run a security review on a new API endpoint?

Run a security review on a new API endpoint by applying a structured checklist to audit authentication flows, input handling, secrets management, and data processing. It generates a prioritized remediation plan with verifiable verification steps.

What is threat modeling for secure development?

Threat modeling for secure development is applying structured security checklists and secure-by-default patterns to identify and remediate vulnerabilities across authentication, input handling, API design, and secrets management.

How do I remediate authentication vulnerabilities in my code?

Remediate authentication vulnerabilities by applying best-practice patterns and a structured security checklist to audit your auth flows. The process outputs a prioritized remediation plan with verification steps to validate compliance.

Does this security checklist cover secrets management and input validation?

Yes, the security checklist covers secrets management and input validation. It identifies and remediates vulnerabilities across these areas, enforcing best-practice patterns and verifiable verification steps before deployment.

When do I need to perform an API security audit?

Perform an API security audit when building new API endpoints or integrating features that process user input and handle secrets. It enforces a structured security checklist to identify vulnerabilities and generate a remediation plan.