convex-security-audit

Installation
Summary

Security audit patterns for authorization, data access, action isolation, rate limiting, and sensitive operations in Convex applications.

  • Covers five core security areas: role-based access control with hierarchical permissions, data access boundaries with ownership verification, action isolation for external API calls, rate limiting with configurable windows, and two-factor confirmation for destructive operations
  • Includes complete TypeScript examples for RBAC implementation, permission-based checks, shared resource access patterns, and audit logging systems
  • Provides defense-in-depth patterns including confirmation codes, internal actions, sanitized error responses, and audit trail recording for sensitive operations
  • Emphasizes server-side validation, environment-based secrets management, and preventing information leakage through error details or API responses
SKILL.md

Convex Security Audit

Comprehensive security review patterns for Convex applications including authorization logic, data access boundaries, action isolation, rate limiting, and protecting sensitive operations.

Documentation Sources

Before implementing, do not assume; fetch the latest documentation:

Instructions

Security Audit Areas

Related skills
Installs
1.3K
GitHub Stars
396
First Seen
Jan 24, 2026