skillZs
★ LIVE SKILL TAGS ★
>>> LIVE SKILLS INDEX <<<
* OPEN SOURCE *
NO LOGIN, NO TRACKING
※ REAL INSTALL DATA ※
← back to all skills
jmsktm/claude-settings0 installs

Security Scanner

Scan code and infrastructure for security vulnerabilities and compliance issues

How do I install this agent skill?

npx skills add https://github.com/jmsktm/claude-settings --skill security-scanner
view source ↗

Is this agent skill safe to install?

  • Gen Agent Trust Hubpass

    No executable code or malicious patterns were found in the skill. However, the skill is structurally vulnerable to indirect prompt injection because it is designed to ingest and process untrustworthy external data such as code repositories and infrastructure configurations.

  • Socketpass

    No alerts

  • Snykpass

    Risk: LOW · No issues

What does this agent skill do?

Security Scanner

Scan code and infrastructure for security vulnerabilities. Identify issues before they become breaches with systematic security analysis.

Core Workflows

Workflow 1: Code Security Scan

  1. SAST - Static application security testing
  2. Dependency Check - Scan for vulnerable dependencies
  3. Secrets Detection - Find hardcoded credentials
  4. OWASP Check - Review against OWASP Top 10
  5. Report - Generate findings report

Workflow 2: Infrastructure Security

  1. Configuration Audit - Check security settings
  2. Network Scan - Identify exposed services
  3. Access Review - Audit permissions and IAM
  4. Compliance Check - Verify against standards
  5. Remediation Plan - Prioritize and fix issues

Quick Reference

ActionCommand
Scan code"Run security scan on [repo]"
Check dependencies"Scan for vulnerable dependencies"
Audit infrastructure"Security audit [environment]"

Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.

<a href="https://skillzs.dev/skills/jmsktm/claude-settings/security-scanner">View Security Scanner on skillZs</a>