vulnerability-scanner

Installation
Summary

Advanced vulnerability analysis aligned with OWASP 2025, supply chain threats, and risk prioritization frameworks.

  • Covers OWASP Top 10:2025 including new categories for supply chain security (A03) and exceptional conditions (A10), with threat modeling questions and attack vector mapping
  • Provides attack surface mapping methodology, CVSS/EPSS-based risk prioritization, and a four-phase scanning approach (reconnaissance, discovery, analysis, reporting)
  • Includes code pattern analysis for high-risk constructs (injection, RCE, deserialization, path traversal) and secret detection indicators
  • Offers security expert mindset principles (assume breach, zero trust, defense in depth, fail-secure) and cloud-specific responsibility checks for shared infrastructure models
SKILL.md

Vulnerability Scanner

Think like an attacker, defend like an expert. 2025 threat landscape awareness.

πŸ”§ Runtime Scripts

Execute for automated validation:

Script Purpose Usage
scripts/security_scan.py Validate security principles applied python scripts/security_scan.py <project_path>

πŸ“‹ Reference Files

File Purpose
checklists.md OWASP Top 10, Auth, API, Data protection checklists

Related skills
Installs
708
GitHub Stars
37.3K
First Seen
Jan 20, 2026