security-scan-workflow

Community

Automate security scans, catch 80% of vulnerabilities fast.

Authormetasaver
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Manual security reviews are time-consuming, error-prone, and often miss common vulnerabilities. This Skill automates static application security testing (SAST) using Semgrep, providing fast and comprehensive detection.

Core Features & Use Cases

  • Automated Vulnerability Detection: Scans code for OWASP Top 10, CWE patterns, hardcoded secrets, and security misconfigurations using Semgrep MCP.
  • Fast & Efficient: Scans changed files in 10-15 seconds, offering 98% token savings and 75% time savings compared to manual review, with 30% coverage improvement.
  • Prioritized Reporting: Generates structured reports with findings classified by severity (Critical, High, Medium, Low) and includes clear remediation guidance and OWASP coverage.
  • Use Case: Integrate this skill into a pre-commit hook to automatically scan staged files for critical vulnerabilities, blocking commits if severe issues are found, ensuring security from the start.

Quick Start

Perform an incremental security scan on the recently changed files.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: security-scan-workflow
Download link: https://github.com/metasaver/metasaver-marketplace/archive/main.zip#security-scan-workflow

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.