Back to skill

Security audit

编码总控

Security checks for vulnerabilities and agentic risk

Overview

This is a low-risk routing skill that only helps choose the right coding workflow skills and does not install or run code itself.

Install this if you want help deciding which coding skill should handle a local workspace task. Review any downstream skill it recommends, especially ones that write code, run commands, or manage Git, because those skills carry the operational risk.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.