akirtok/preflight-security-audit
Plugin Claude Code
One-command, 61-check pre-ship audit for AI-coded apps: security, reliability, performance, AI/LLM, privacy, and launch readiness — with a 0–100 security score.
akirtok/preflight-security-audit
Plugin Claude Code
One-command, 61-check pre-ship audit for AI-coded apps: security, reliability, performance, AI/LLM, privacy, and launch readiness — with a 0–100 security score.
akirtok/preflight-security-audit
Plugin Claude Code
Comprehensive 360 pre-ship audit: 61 checks across security, reliability, performance, AI/LLM, privacy/compliance, and launch readiness — including live-database, serverless/edge, GraphQL, client-side, and modern-attack (Trojan Source) checks. Reports a 0–100 security score with severity-ranked findings and proposes…
akirtok/preflight-security-audit
Agent
Runs Track 3 (AI/LLM security) of the Preflight Security Audit — prompt injection (direct + indirect), LLM output handling, sensitive-info disclosure, excessive agency/tool permissions, and AI supply chain. Applies when the product calls an LLM or ships an AI feature. Context: The /audit command detected an AI SDK in…
akirtok/preflight-security-audit
Agent
Runs Track 1 (the 20 code-core passes) of the Preflight Security Audit — injection, auth, authz/IDOR, secrets, error handling, concurrency, resources, N+1, complexity, memory, external calls, idempotency, transactions, config, deps, logging, contracts, tests. Context: The /audit command is fanning out the audit…
akirtok/preflight-security-audit
Agent
Runs Track 6 (verification & false-positive filter) of the Preflight Security Audit. Re-checks every raw finding against the code, rejects unprovable ones, merges duplicates, and recalibrates severity before the report is assembled. Always run last. Context: The /audit command has collected raw findings from all track…
akirtok/preflight-security-audit
Agent
Runs Track 5 (product & launch readiness) of the Preflight Security Audit — accessibility (WCAG 2.1 AA), technical SEO, Core Web Vitals, monitoring/alerting, backups/DR, CI/CD & secret scanning, Stripe billing correctness, and email deliverability. Context: The /audit command is fanning out the audit tracks. user…
akirtok/preflight-security-audit
Agent
Runs Track 4 (privacy & compliance) of the Preflight Security Audit — PII inventory & data flow, GDPR/KVKK consent & lawful basis, cookie consent, data retention & deletion (RTBF), sub-processor DPAs, and legal pages. Context: The /audit command is fanning out the audit tracks. user: "Run the privacy and compliance…
akirtok/preflight-security-audit
Agent
Runs Track 2 (web/app security) of the Preflight Security Audit — XSS, CSRF, SSRF, security headers/CORS/TLS, cryptography, file upload, rate limiting, multi-tenancy & Supabase RLS, business-logic abuse, and data integrity/deserialization. Context: The /audit command is fanning out the audit tracks. user: "Run the web…
akirtok/preflight-security-audit
Command
Run the full 360 pre-ship audit and write a report.
akirtok/preflight-security-audit
Skill Claude CodeCodex
This skill should be used when the user wants a comprehensive pre-ship audit of an app, product, or codebase — phrases like "audit my app", "security check before launch", "is this ready to ship", "preflight audit", "review my product for vulnerabilities", "check my code for security issues", or after building a…