vibe-security

Audit codebases for security vulnerabilities in AI-generated code.

925|112|Updated Mar 15, 2026
One-click install
npx skills add https://github.com/raroque/vibe-security-skill --skill vibe-security-raroque
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: vibe-security
Source: https://github.com/raroque/vibe-security-skill/tree/main/vibe-security
Command: npx skills add https://github.com/raroque/vibe-security-skill --skill vibe-security-raroque

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Audits codebases for security vulnerabilities commonly introduced by AI-generated code, helping teams identify exposed keys, misconfigurations, and dangerous patterns before shipping.

Core Features & Use Cases

  • Comprehensive security review for vibe-coded apps and AI-assisted development.
  • Threat pattern detection across authentication, authorization, data access, and deployments.
  • Guided remediation with prioritized fixes and actionable recommendations.

Quick Start

Trigger a full security audit on your project to identify critical vulnerabilities and receive prioritized fixes.

Frequently Asked Questions about vibe-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit AI-generated code for security vulnerabilities?

To audit AI-generated code for security vulnerabilities, trigger a comprehensive security review that identifies exposed keys, misconfigurations, and dangerous patterns across authentication, payments, and data access before shipping.

What security risks are commonly introduced by AI coding assistants?

Common security risks introduced by AI coding include exposed environment secrets, misconfigured access controls, flawed authorization logic, and insecure integration patterns across data access and deployment configurations.

How do I check my codebase for exposed environment secrets and misconfigurations?

You can check your codebase for exposed environment secrets by running a full security audit that validates secrets, access controls, and secure integration patterns using built-in reference files.

Can I detect row-level security and authorization flaws in vibe-coded apps?

Yes, you can detect row-level security and authorization flaws by applying a security audit workflow designed to identify threat patterns in data access and authentication logic across AI-assisted projects.

Does this security audit work for deployment configurations and payment integrations?

Yes, the security audit applies validation checks across deployment configurations and payment integrations, scanning for dangerous patterns and insecure integration logic commonly introduced by AI-generated code.

What is the best way to get prioritized fixes for AI-generated code risks?

The best way to get prioritized fixes for AI-generated code risks is to run a guided remediation audit, which provides actionable recommendations and prioritized fixes for detected threat patterns.