speckit-security-review-export

Export consolidated security review findings into a formal Whitebox Security Assessment Report.

Updated Mar 16, 2026
One-click install
npx skills add https://github.com/B0yZ4kr14/OrthoPlus-Enterprise --skill speckit-security-review-export
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: speckit-security-review-export
Source: https://github.com/B0yZ4kr14/OrthoPlus-Enterprise/tree/main/.specify-backups/20260518-141826/_agents/skills/speckit-security-review-export
Command: npx skills add https://github.com/B0yZ4kr14/OrthoPlus-Enterprise --skill speckit-security-review-export

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

It consolidates fragmented security review outputs into a single, formal report that is suitable for executive stakeholders and engineers who need actionable remediation guidance.

Core Features & Use Cases

  • Executive + Technical Reporting: Produces a professional Whitebox Security Assessment Report with clear executive framing and detailed technical findings.
  • Finding Consolidation & Categorization: Merges multiple findings into deduplicated entries and groups risks by OWASP categories for readability.
  • Evidence-Driven Vulnerability Documentation: Structures each finding with severity, OWASP/CWE mapping, evidence locations, exploit scenario, impact, and remediation steps compatible with plan-style workflows.
  • Architectural Drift Coverage: Adds systemic risk patterns that reflect deviations from the Security Constitution and memory-hub intent.

Quick Start

Ask the AI to export your latest whitebox security review findings into a formal Executive and Technical Pentest report for your Spec-Kit project.

Frequently Asked Questions about speckit-security-review-export

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I generate a whitebox security assessment report from fragmented review findings?

To generate a whitebox security assessment report, you consolidate fragmented security review artifacts into a structured Markdown document featuring an executive summary, methodology, and categorized technical findings with remediation steps.

What is the best way to map security findings to OWASP and CWE categories for an executive report?

Mapping security findings to OWASP and CWE categories involves deduplicating entries and grouping risks by their respective classifications to produce a readable executive and technical report with clear severity, evidence, and impact analysis.

Can I document architectural drift and systemic risks in a technical pentest report?

Yes, you can document architectural drift in a technical pentest report by appending systemic risk patterns that reflect deviations from the Security Constitution and memory-hub intent, providing enriched assessment context.

Does generating a formal security review export require prior implementation context?

Generating a formal security review export requires prior security review artifacts, durable memory, and implementation context from your Spec-Kit project to accurately enrich the assessment and evidence-driven vulnerability documentation.

How do I structure a remediation roadmap for vulnerabilities found during a whitebox pentest?

You structure a remediation roadmap by formatting each vulnerability finding with severity, OWASP/CWE mapping, evidence locations, exploit scenarios, and step-by-step remediation guidance compatible with plan-style workflows.