security-audit
v2.11.4by netresearch · author: Netresearch DTT GmbH
Security audit patterns (OWASP Top 10, CWE Top 25 2025, CVSS v4.0) and GitHub project security checks for any project. Deep automated PHP/TYPO3 scanning with 80+ checkpoints, 19 reference guides, PreToolUse warnings. By Netresearch.
What security-audit does, in the publisher's words
Security audit patterns (OWASP Top 10, CWE Top 25 2025, CVSS v4.0) and GitHub project security checks for any project. Deep automated PHP/TYPO3 code scanning with 80+ checkpoints, 19 reference guides, and PreToolUse warnings.
This is an Agent Skill following the open standard originally developed by Anthropic and released for cross-platform use.
Supported Platforms:
- Claude Code (Anthropic)
- Cursor
- GitHub Copilot
- Other skills-compatible AI agents
- Vulnerability Assessment: XXE injection, SQL injection, XSS, CSRF, command injection, path traversal, file upload vulnerabilities, insecure deserialization, SSRF, type juggling, SSTI, JWT flaws, LDAP injection, email header injection, session fixation
- Risk Scoring: CVSS v3.1 and v4.0 scoring methodology, risk matrix assessment, impact and likelihood analysis, prioritization frameworks
From the project README, punctuation lightly normalized · Open the README on GitHub
- Skills
- 1
- MCP servers
- 0
- Stars
- 42
- License
- (MIT AND CC-BY-SA-4.0)
- Repo created
- 2025-12-13
- Last pushed
- 2026-09-20
- Publisher type
- Organization
- Version
- 2.11.4
Links
Skills · 1
- security-audit
- Use when conducting security assessments, OWASP Top 10 / API / LLM, CWE Top 25, CVSS scoring, auditing PHP/TYPO3, APIs, frontend, Terraform/K8s/Docker IaC, AWS cloud, AI agent configs, or scanning dependencies.
Descriptions come from the frontmatter of each SKILL.md, punctuation lightly normalized.
Category
Security & Compliance. Assigned by this directory. Agent Plugins 1.0.0 has no category field, so no manifest declares one.
Related by publisher and keywords
Comprehensive Jira integration with auto-detection of issue keys
Generate and maintain AGENTS.md, copilot-instructions.md, and other agent rule files
Fetch up-to-date library documentation via Context7 REST API
Git workflow best practices with commit validation hooks
PHP 8.x modernization patterns with type safety and PHPStan
Fast codebase search with ripgrep for text patterns, ast-grep for structural code search, plus fd, rga, tokei, and scc
[](https://agentpluginsdirectory.com/plugins/security-audit)✓ Verified . We fetched the manifest from GitHub and checked it against the official Agent Plugins 1.0.0 schema at agent-plugins.org.