review-owasp-security
Installation
SKILL.md
OWASP MASVS Security Review
When to Activate
Trigger this review when code touches any of the following areas:
- Sensitive data handling — tokens, passwords, PII, health data
- Authentication & session management — login, logout, token refresh, biometrics
- Networking — API calls, certificate configuration, TLS settings
- Local storage — databases, preferences, file system, caching
- Deep links & WebViews — URL schemes, intent filters, embedded web content
- Permissions & exported components — manifest declarations, runtime permissions