Skip to content
Productivity
Skill

/security-audit

Check code for common security vulnerabilities

From plugin
cowork-os
452155 skills
Install
$ npx -y skills add CoWork-OS/CoWork-OS --skill security-audit --agent claude-code

How it fires

How this skill gets triggered: by you, by Claude, or both.

  • Fires itselfAuto-invocation. Claude auto-loads it when your prompt matches the work.Auto-invocation is when the right skill fires by itself at the right moment, driven by a FLOW.md router and a hook, instead of you invoking it by name. It is the difference between a skill being installed and a skill actually getting used.Read the full definition →
  • You can call itInvoke it directly when you want it.
  • Slash command/security-audit

Context preview

The summary Claude sees to decide when to auto-load this skill.

Check code for common security vulnerabilities

SKILL.md

security-audit.SKILL.md
name: security-audit
description: "Check code for common security vulnerabilities"
version: "1.0.0"
metadata:
  author: CoWork OS Contributors <info@coworkosapp.com>

Security Audit

Purpose

Check code for common security vulnerabilities

Routing

  • Use when: Use when the user asks to check code for common security vulnerabilities.
  • Do not use when: Do not use when the request is asking for planning documents, high-level strategy, or non-executable discussion; use the relevant planning or design workflow instead.
  • Outputs: Outcome from Security Audit: task-specific result plus concrete action notes.
  • Success criteria: Returns concrete actions and decisions matching the requested task, with no fabricated tool-side behavior.

Trigger Examples

Positive

  • Use the security-audit skill for this request.
  • Help me with security audit.
  • Use when the user asks to check code for common security vulnerabilities.
  • Security Audit: provide an actionable result.

Negative

  • Do not use when the request is asking for planning documents, high-level strategy, or non-executable discussion; use the relevant planning or design workflow instead.
  • Do not use security-audit for unrelated requests.
  • This request is outside security audit scope.
  • This is conceptual discussion only; no tool workflow is needed.

Parameters

| Name | Type | Required | Description | |---|---|---|---| | path | string | Yes | Path to file or folder to audit |

Runtime Prompt

  • Current runtime prompt length: 497 characters.
  • Runtime prompt is defined directly in `../security-audit.json`.
Read more
Ships withcowork-os

Local-first personal agentic OS and everything app for coding, knowledge work, web design, automations, and artifacts.

Get the whole plugin
Stats
450
Stars
77
Forks
Active
Maintenance
TypeScript
Language
MIT
License
6d ago
Last commit
7mo ago
Created

Repo: CoWork-OS/CoWork-OS

Other skills on cowork-os.