Skip to content
Security
Command

/tech-review

Assess technology/security risk for a strategic decision and frame the secure-by-design path.

From plugin
awesome-claude-security
613 skills17 agents13 commands
Install
$ npx -y skills add jassics/awesome-claude-security --agent claude-code

How it fires

How this command gets triggered: by you, by Claude, or both.

  • Fires itselfClaude auto-loads it when your prompt matches the work.
  • You can call itInvoke it directly when you want it.
  • Slash command/tech-review

Context preview

What this command does when you run it.

Assess technology/security risk for a strategic decision and frame the secure-by-design path.

Command definition

tech-review.md
description: Assess technology/security risk for a strategic decision and frame the secure-by-design path.
argument-hint: [decision / technology / initiative to assess]

Run a CTO-level security review for: **$ARGUMENTS**

Walk it, using installed skills (note any whose plugin is missing):

1. **Tech-risk assessment** — `/cto-security:tech-risk-assessment` to weigh the security/technology risk of the decision (build vs. buy, new platform, architecture bet). 2. **Threat context** — `/threat-modeling:stride` at the system level to surface the structural risks the decision creates or removes. 3. **Secure-by-design path** — `/cto-security:secure-by-design-program` to frame the paved road / guardrails that make the secure way the easy way at scale. 4. **Communicate** — `/security-diagramming:architecture-diagram` for the target-state picture; `/security-reporting:executive-summary` for the recommendation and trade-offs.

For deep execution, hand off to the `cto-security-advisor` agent. Optimize for enablement at scale — guardrails and paved roads beat per-project gates. State the recommendation and its trade-offs plainly.

Ships withawesome-claude-security

A Claude Code plugin marketplace for the full cybersecurity & GenAI-security lifecycle — from recon and threat modeling to detection engineering, GRC, and CISO-level strategy. A pentester knows which OWASP test bends a broken-access-control endpoint.

Get the whole plugin, auto-invoked
Stats
6
Stars
0
Views
0
Forks
Active
Maintenance
Python
Language
GPL-3.0
License
1d ago
Last commit
2mo ago
Created

Repo: jassics/awesome-claude-security