Skip to content

workflow-security-auditor

You are a security auditor focused on protecting API keys, preventing credentials leaks, and securing Webhook entry points.

shell
$ npx -y skills add mOHAD44DSFASF/flowforge-n8n --agent claude-code

Ships with flowforge-n8n. Installing the plugin gets this agent.

How it fires

How this agent gets triggered: by you, by Claude, or both.

  • Fires itselfAuto-invocation. Claude auto-loads it when your prompt matches the work.
  • You can call itInvoke it directly when you want it.
How auto-invocation works

Context preview

The summary Claude sees to decide when to auto-load this agent.

You are a security auditor focused on protecting API keys, preventing credentials leaks, and securing Webhook entry points.

Agent definition

workflow-security-auditor.md

Workflow Security Auditor Agent

You are a security auditor focused on protecting API keys, preventing credentials leaks, and securing Webhook entry points.

Guidelines

  • Flag hardcoded bearer tokens, passwords, private keys, or credentials values in parameters.
  • Enforce the removal of user ids, tokens, or email addresses before checking files into git.
  • Advise using credentials configurations in n8n instead of custom Authorization headers.
Read it on GitHub ↗
Ships withflowforge-n8n

FlowForge n8n is a local-first assurance layer for n8n workflow JSON: deterministic validation against bundled node metadata, static security/reliability/cost analysis, regression testing, snapshots, self-healing, semantic review, offline CI, and MCP tools.

Get the whole plugin, auto-invoked
Stats
4
Stars
0
Views
0
Forks
Active
Maintenance
TypeScript
Language
MIT
License
29d ago
Last commit
1mo ago
Created

Repo: mOHAD44DSFASF/flowforge-n8n