securability-engineering-review
Installation
SKILL.md
SSEM Evaluation (Scoring and Reporting)
Analyze code for securable engineering qualities and produce a structured SSEM scorecard. This file is authoritative for the rubric, weights, severity classification, and report shape. The play at plays/securability-engineering-review.md is the step-by-step runbook; consult it for when to do each step, not for what the rubric says.
Aligned with FIASSE v1.0.4. Per-attribute measurement guidance in data/fiasse/SA.*.md (Appendix A).
When to Invoke
Trigger this skill when the user asks to:
- Assess, audit, score, rate, or evaluate the securability of code
- Produce an SSEM scorecard or SSEM evaluation report
- Review a merge request / pull request through a securable engineering lens
- Establish a security posture baseline for a project
- Identify engineering quality issues that affect security (not vulnerability-centric)
- Answer "where would I start hardening this codebase?"
- Check FIASSE/SSEM compliance
Adjacent phrasings: "rate this code for security", "is this audit-ready?", "what's the security health of X?", "how securable is this?", "do a sec-engineering review", "give me a posture report".