smithery/fet-3312

security-audit-skill

針對代碼執行專注的安?

Installation

$ npx skills add smithery/fet-3312 --skill security-audit-skill

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from smithery/fet-3312.

npx skills add smithery/fet-3312

Browse all from smithery/fet-3312

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 1,027 B
  • docs SUMMARY.md 99 B

History

  1. First recorded snapshot · 0 installs

SKILL.md

安全審計技能 (Security Audit Skill)

使用方式: Audit this code for security vulnerabilities

請專注於檢查安全漏洞。

審計步驟 (Audit Steps)

  1. 注入攻擊 (Injection): 檢查 SQL Injection, Command Injection 或 XSS 風險。

- Svelte: 確保 {@html} 的使用是謹慎的,且輸入經過消毒。

  1. 身份驗證 (Authentication): 驗證敏感操作是否需要身份驗證。
  2. 資料暴露 (Data Exposure): 檢查是否有敏感資料(個資 PII、密碼)不必要地被 Log 或暴露給前端。
  3. 依賴套件 (Dependencies): (若可見 package.json) 檢查是否有已知易受攻擊的依賴版本或可疑套件。

報告格式 (Report Format)

安全風險等級 (Security Risk Level): [高 High / 中 Medium / 低 Low / 無 None]

發現結果 (Findings):

  • [行號 Line #]: [漏洞描述] - [建議措施]