security-review

Identify vulnerabilities and verify security controls in software projects.

1|Updated Feb 3, 2026
One-click install
npx skills add https://github.com/yasudaProduct/chord-chart --skill security-review-yasudaproduct
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-review
Source: https://github.com/yasudaProduct/chord-chart/tree/main/.claude/skills/security-review
Command: npx skills add https://github.com/yasudaProduct/chord-chart --skill security-review-yasudaproduct

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

セキュリティ上の不安を抱えるソフトウェア開発に対し、組織横断で統一されたセキュリティレビュープロセスを提供します。

Core Features & Use Cases

  • OWASP Top 10 チェックリストと推奨対策の適用
  • 認証・認可の健全性評価と設定例の提供
  • サードパーティ依存関係の安全性ガイドと脆弱性管理

Quick Start

ChordBook プロジェクトのセキュリティ評価を実行して、脆弱性とベストプラクティスを確認します。

Frequently Asked Questions about security-review

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform an OWASP Top 10 security review on my codebase?

To perform an OWASP Top 10 security review, apply this skill's checklist to evaluate your codebase against common vulnerabilities, authentication flaws, and data exposure risks across front-end and back-end layers.

What is threat modeling and how does it apply to secure coding?

Threat modeling identifies potential security vulnerabilities during the design phase, and this skill applies it alongside secure coding checks to verify controls and harden configurations across your software deployment.

How do I evaluate authentication and authorization security in my application?

Evaluate authentication and authorization by applying this skill's assessment guidelines to verify configuration hardening, session management, and access control健全性 across your application's data layers.

Can I use this security review process for both front-end and back-end deployments?

Yes, you can use this security review process for front-end, back-end, and data layer deployments, as it implements checks for configuration hardening, data exposure, and vulnerability management across your entire project.

What is the best way to manage third-party dependency vulnerabilities during a security review?

The best way to manage third-party dependency vulnerabilities is to apply this skill's safety guidelines, which provide structured checks for evaluating and mitigating risks in your project's external dependencies.

When do I need a standardized security review process for my software project?

You need a standardized security review process when your organization requires consistent vulnerability identification, secure coding enforcement, and incident response guidance across cross-functional software development teams.