Skip to content

qual-security

Domain: qual · Model class: cheap

Use this skill when the user wants to work on Reviewing code for security vulnerabilities, secret exposure, and unsafe patterns. Triggers include “find security issues in my code”, “security code review”, “check for vulnerabilities”. Do NOT use when design secure architecture (use core-security-design).

Reviewing code for security vulnerabilities, secret exposure, and unsafe patterns. This skill provides structured guidance, references, and worked examples to help produce high-quality, actionable outputs.

  • “find security issues in my code”
  • “security code review”
  • “check for vulnerabilities”
  • “find hardcoded secrets”
  • “OWASP review”
  • design secure architecture (use core-security-design)
  • harden against prompt injection (use gov-prompt-injection-hardening)
  1. What is the user’s goal and current state?
  2. What constraints (time, team, compliance) apply?
  3. Are there existing artifacts (specs, code, benchmarks) to reference?
  • quality findings
  • evidence-grounded issues
  • prioritized fixes
  • verification guidance

qual-code-analysis · arch-security · gov-prompt-injection-hardening