YangKuoshih/security-audit

Universal security scanning skill for AI agents - finds hardcoded secrets, API keys, and vulnerabilities in any codebase. 44 patterns validated against GitLeaks, OWASP Top 10 mapping, Markdown/SARIF/JSON reports. Works across Claude Code, Cursor, Windsurf, and any agentic platform.

5Stars on the repository
2Mods indexed here, across every type
5mo agoLast push, which is what freshness is scored on
Apache-2.0Licence, which decides whether bodies are shown

security-audit

01

YangKuoshih/security-audit

Skill Claude CodeCodex

Scans source code files for hardcoded secrets, leaked credentials, and security vulnerability patterns, then produces a severity-classified audit report (Markdown, SARIF, or JSON). Use this skill — not ad-hoc grep — when the user wants to: scan for hardcoded secrets or API keys, do a security audit, find leaked…

5 5mo ago A 163 tokens original Apache-2.0