/audit-security
Perform comprehensive security audit of the current project.
$ npx -y skills add LarouexNonprofitConsulting/larouex-fullstack-plugin --agent claude-codeShips with larouex-fullstack-builder. Installing the plugin gets this command.
How it fires
How this command gets triggered: by you, by Claude, or both.
- Fires itselfClaude auto-loads it when your prompt matches the work.
- You can call itInvoke it directly when you want it.
- Slash command
/audit-security
Context preview
What this command does when you run it.
Perform comprehensive security audit of the current project.
Command definition
audit-security.mdPerform comprehensive security audit of the current project.
Analyze and report on:
- Common vulnerabilities (XSS, CSRF, SQL injection, command injection)
- Environment variable exposure and secrets management
- CORS configuration and potential security issues
- Authentication and authorization implementation
- Input validation and sanitization
- API endpoint security (rate limiting, authentication)
- Dependency vulnerabilities using npm audit or similar
- Security headers (CSP, X-Frame-Options, HSTS, etc.)
- Session management and token storage
- SQL/database query security
- File upload security if applicable
- HTTPS enforcement
- Error message information disclosure
Provide specific recommendations with code examples for each finding. Prioritize issues by severity (Critical, High, Medium, Low). Include remediation steps.
A comprehensive Claude Code plugin with 81 commands and 12 specialized AI agents for building modern, full-stack web applications with Next.js 15, Azure, Railway, Bootstrap, and TypeScript.
Repo: LarouexNonprofitConsulting/larouex-fullstack-plugin
Other commands on larouex-fullstack-builder.
- /add-admin-panel
Create basic admin dashboard with protected routes. Implement admin route protection with role-based access control. Create dashboard layout with sidebar navigation using Bootstrap. Add user management table with search and pagination. Implement CRUD operations for users:
Open command - /add-analytics-google
Integrate Google Analytics 4 for comprehensive tracking. Install gtag.js script in application layout. Create analytics wrapper hooks for type-safe event tracking. Implement automatic pageview tracking with Next.js router events. Add custom event tracking for business metrics:
Open command - /add-analytics-plausible
Integrate privacy-friendly Plausible Analytics for cookieless tracking. Add Plausible script to application layout with custom domain if configured. Implement automatic pageview tracking. Create custom event tracking hooks for user interactions. Set up goals in Plausible
Open command - /add-api-azure
Create a new Azure Function HTTP endpoint with full integration.
Open command - /add-api-railway
Create a new Express API endpoint with full integration.
Open command - /add-auth
Implement authentication system with comprehensive user management.
Open command

