zz-code-recon

Map codebase architecture, data flows, and trust boundaries for security audits.

11|13|Updated Mar 25, 2026
One-click install
npx skills add https://github.com/MetalLegBob/drfraudsworth --skill zz-code-recon-metallegbob
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: zz-code-recon
Source: https://github.com/MetalLegBob/drfraudsworth/tree/main/.claude/skills/code-recon-skill
Command: npx skills add https://github.com/MetalLegBob/drfraudsworth --skill zz-code-recon-metallegbob

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Deep architectural context building for security audits. Use when conducting security reviews, building codebase understanding, mapping trust boundaries, or preparing for vulnerability analysis. Inspired by Trail of Bits methodology.

Core Features & Use Cases

  • Systematic reconnaissance methodology to rapidly map a codebase's architecture, data flows, and trust boundaries.
  • Phase-based guidance that scales from overview to implementation details, enabling security professionals and developers to build actionable context.
  • Use Case: Apply this approach to a new or legacy project to produce a concise context document that informs threat modeling, audit scope, and remediation planning.

Quick Start

Run CodeRecon to start building architectural context for a new codebase audit.

Frequently Asked Questions about zz-code-recon

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I build architectural context for a security audit on an unfamiliar codebase?

A security audit on an unfamiliar codebase requires systematic reconnaissance to map data flows and trust boundaries. This approach uses phase-based mapping and template-driven notes to produce consistent, actionable context documents.

What is the best way to map trust boundaries when onboarding to a legacy codebase?

Mapping trust boundaries during codebase onboarding requires a structured reconnaissance methodology that scales from architectural overview to implementation details. This process generates a concise context document to inform threat modeling and audit scope.

Can I use this code reconnaissance approach across multiple programming languages and frameworks?

Yes, this code reconnaissance methodology applies to vulnerability analysis and security reviews across multiple languages and frameworks. It provides phase-based guidance to map architecture regardless of the specific tech stack.

How does phase-based mapping work for vulnerability analysis preparation?

Phase-based mapping for vulnerability analysis works by scaling reconnaissance from an architectural overview down to implementation details. It structures your notes using templates to build actionable context that informs remediation planning.

Does this security audit methodology follow established threat modeling practices?

This security audit methodology follows established threat modeling practices inspired by the Trail of Bits methodology. It structures codebase reconnaissance to directly inform threat modeling, audit scope, and remediation planning.