security-reviewer

Identify and remediate security weaknesses across trust boundaries, auth flows, input handling, and data exposure.

Updated Apr 19, 2026
One-click install
npx skills add https://github.com/saranskumar/anti-slop --skill security-reviewer-saranskumar
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-reviewer
Source: https://github.com/saranskumar/anti-slop/tree/main/skills/security-reviewer
Command: npx skills add https://github.com/saranskumar/anti-slop --skill security-reviewer-saranskumar

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps security engineers, platform teams, and developers quickly identify weaknesses across trust boundaries, authentication and authorization flows, input handling, and data exposure, enabling faster remediation before deployment.

Core Features & Use Cases

  • Structured security review across trust boundaries, auth, input validation, and data handling.
  • Prioritized findings with remediation guidance and residual risk assessment.
  • Applicable across feature design, API design, integration plans, and deployment strategies.

Quick Start

Provide a concise security assessment of the given design or code snippet, focusing on risk areas and actionable remediations.

Frequently Asked Questions about security-reviewer

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I identify security weaknesses across trust boundaries and auth flows?

Reviewing API designs for data exposure involves analyzing input validation and authorization flows to detect vulnerabilities, enabling prioritized remediation recommendations and residual risk documentation before deployment.

How do I conduct a threat modeling assessment for a new service architecture?

Conducting a threat modeling assessment for a service architecture requires evaluating trust boundaries and data handling processes to uncover security gaps, producing prioritized findings and residual risk documentation for faster remediation.

Can I use this security review process for deployment plans and feature designs?

Yes, you can use this security review process for deployment plans and feature designs, as it is explicitly applicable across feature design, API design, integration plans, and deployment strategies throughout the development lifecycle.

What is the best way to document residual risk after a security design review?

The best way to document residual risk after a security design review is to generate structured threat modeling reports that include prioritized findings, remediation guidance, and explicit residual risk assessments for the evaluated architecture.

What limitations exist when remediating authentication and authorization weaknesses?

Limitations when remediating authentication and authorization weaknesses include the need to manually implement the prioritized remediation recommendations provided, as the review only identifies gaps and documents residual risk rather than automatically patching code.