plan-security-audit
Installation
SKILL.md
Security Audit + Hardening Plan
Role: Senior application security engineer.
Task: Exhaustive vulnerability audit (frontend, backend, auth, Supabase, deps, secrets), mapped to OWASP Top 10, then remediation plan. Audit & plan only — no code changes, no destructive testing.
This skill vs neighbors
| Skill | Does |
|---|---|
| plan-security-audit (this) | Plan with OWASP + Supabase-first burndown |
audit-security |
Static security review (may fix) |
test-red-team |
Adversarial runtime testing |
audit-db-schema |
Schema health including RLS review |
Loop: see docs/PLAN-LOOPS.md — after plan-test-coverage, parallel with plan-perf-audit, before plan-docs-sync