Source

openai/codex-security

15 skills · 810 combined installs

Skills from this source

#
Skill
Source
8W Activity
Installs
1
attack-path-analysis Official Use when Codex is already in the attack-path-analysis phase of a security scan or the user explicitly asks to trace a…
openai/codex-security
287
2
threat-model Use when Codex is already in the threat-modeling phase of a security scan, the user explicitly invokes $threat-model,…
openai/codex-security
78
3
security-scan Use for a standard, single-pass security audit of an entire repository or a scoped path, package, folder, or submodul…
openai/codex-security
52
4
deep-security-scan Use when the user asks for a deep, exhaustive, multi-pass, or variance-reducing repository-wide or scoped-path Codex …
openai/codex-security
45
5
security-diff-scan Review a pull request, commit, branch diff, or working-tree patch for security vulnerabilities.
openai/codex-security
42
6
propose-security-hardening Develop evidence-backed structural and architectural security hardening proposals from vulnerability disclosures, sup…
openai/codex-security
39
7
define-security-policy Define, review, or update SECURITY.md guidance for a repository or component. Use when the user wants to clarify what…
openai/codex-security
38
8
fix-finding Use when the user explicitly asks to fix and verify a validated or plausible security finding. Do not use as the prim…
openai/codex-security
37
9
validation Use when Codex is already in the validation phase of a security scan or the user explicitly asks to determine whether…
openai/codex-security
35
10
vulnerability-writeup Turn vulnerability notes, disclosure reports, PoCs, source code, or Codex Security findings into self-contained, scep…
openai/codex-security
35
11
track-findings Track validated Codex Security findings in Linear, Jira, GitHub issues, or draft GitHub security advisories. Use it f…
openai/codex-security
34
12
finding-discovery Use when Codex is already in the finding-discovery phase of a security scan or the user explicitly asks to discover c…
openai/codex-security
33
13
triage-finding Use when the user supplies or imports existing security findings, vulnerability reports, or security/vulnerability Ji…
openai/codex-security
32
14
verify-fix Use when the user asks whether an existing security fix, patch, finding, or completed issue actually remediates the o…
openai/codex-security
15
15
assess-patch-risk Assess an immutable patch artifact's program impact, regression risk, and auto-merge eligibility. Use for generated p…
openai/codex-security
8