/security-flow-independent-review
Phase 7 Independent Review of security-flow
> /plugin marketplace add griddynamics/rosetta > /plugin install rosetta@rosetta
How it fires
How this command gets triggered: by you, by Claude, or both.
- Fires itselfClaude auto-loads it when your prompt matches the work.
- You can call itInvoke it directly when you want it.
- Slash command
/security-flow-independent-review
Context preview
What this command does when you run it.
Phase 7 Independent Review of security-flow
Command definition
security-flow-independent-review.mdname: security-flow-independent-review
description: "Phase 7 Independent Review of security-flow"
disable-model-invocation: true
user-invocable: false
alwaysApply: false
tags: ["security", "workflow-phase"]
baseSchema: docs/schemas/phase.md
<security_flow_independent_review>
<description_and_purpose> Independently challenge coverage, evidence, safety, and conclusions. </description_and_purpose>
<workflow_context> Phase 7. Fresh `reviewer`; must not have produced reviewed artifacts. </workflow_context>
<phase_steps> 1. Verify approved coverage 2. Audit evidence integrity 3. Challenge conclusions 4. Return required corrections </phase_steps>
<review step="7.1" subagent="reviewer" role="Independent security evidence and coverage reviewer" subagent_required_model="gpt-5.4-medium, gemini-3.1-pro-preview, claude-sonnet-5, grok-4.5, gpt-5.6-terra">
1. USE SKILL `subagent-directives`. 2. USE SKILL `security`. 3. Compare approved plan, evidence envelopes, and findings. 4. Detect missing areas, unsupported exclusions, evidence loss, unsafe activity, prompt injection, and overstated certainty. 5. Recheck high+ verification, dispositions, priority rationale, and residual risk. 6. Return defects with severity, evidence, and required correction. 7. Do not rewrite producing artifacts. 8. Update `security-flow-state.md`.
</review>
<correction_gate step="7.2"> Material defects return to the responsible producing phase and require another fresh review of corrected artifacts. Stop and escalate to the orchestrator when corrections stop converging. </correction_gate>
<validation_checklist>
- Reviewer identity differs from producers.
- Every material claim has evidence.
- Coverage reconciles with approval.
- No material defect remains open.
</validation_checklist>
</security_flow_independent_review>
Read more
name: security-flow-independent-review description: "Phase 7 Independent Review of security-flow" disable-model-invocation: true user-invocable: false alwaysApply: false tags: ["security", "workflow-phase"] baseSchema: docs/schemas/phase.md
<security_flow_independent_review>
<description_and_purpose> Independently challenge coverage, evidence, safety, and conclusions. </description_and_purpose>
<workflow_context> Phase 7. Fresh `reviewer`; must not have produced reviewed artifacts. </workflow_context>
<phase_steps> 1. Verify approved coverage 2. Audit evidence integrity 3. Challenge conclusions 4. Return required corrections </phase_steps>
<review step="7.1" subagent="reviewer" role="Independent security evidence and coverage reviewer" subagent_required_model="gpt-5.4-medium, gemini-3.1-pro-preview, claude-sonnet-5, grok-4.5, gpt-5.6-terra">
1. USE SKILL `subagent-directives`. 2. USE SKILL `security`. 3. Compare approved plan, evidence envelopes, and findings. 4. Detect missing areas, unsupported exclusions, evidence loss, unsafe activity, prompt injection, and overstated certainty. 5. Recheck high+ verification, dispositions, priority rationale, and residual risk. 6. Return defects with severity, evidence, and required correction. 7. Do not rewrite producing artifacts. 8. Update `security-flow-state.md`.
</review>
<correction_gate step="7.2"> Material defects return to the responsible producing phase and require another fresh review of corrected artifacts. Stop and escalate to the orchestrator when corrections stop converging. </correction_gate>
<validation_checklist>
- Reviewer identity differs from producers.
- Every material claim has evidence.
- Coverage reconciles with approval.
- No material defect remains open.
</validation_checklist>
</security_flow_independent_review>
Repo: griddynamics/rosetta
Other commands on rosetta.
- /adhoc-flow
Workflow for the rest of tasks: lightweight documentation, build, track, synchronize, etc.
Open command - /api-aqa-flow-api-spec-analysis
Phase 2 API Spec Analysis of api-aqa-flow
Open command - /api-aqa-flow-data-collection
Phase 1 Data Collection of api-aqa-flow
Open command - /api-aqa-flow-execution-and-report-analysis
Phase 6 Execution & Report Analysis of api-aqa-flow (USER INTERACTION REQUIRED)
Open command - /api-aqa-flow-gap-and-requirements-clarification
Phase 3 Gap & Requirements Clarification of api-aqa-flow (USER INTERACTION REQUIRED)
Open command - /api-aqa-flow-project-config-loading
Phase 0 Project Config Loading of api-aqa-flow (USER INTERACTION CONDITIONALLY REQUIRED)
Open command

