Security audit
Backend Test Plan
Security checks for vulnerabilities and agentic risk
Overview
This is a local documentation-only skill for planning backend tests, with optional and disclosed knowledge-note writing and Ritual Cloud setup.
This skill is reasonable to install if you want structured backend test planning. Review the optional Ritual Cloud section before running any npm or ritual commands, and only approve knowledge-note creation when you want reusable project knowledge saved in the repository.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
