All skills
boshu2 avatar

/security

@c655850
by Boboshu2/agentops446 stars
42

Review code or scan for security vulnerabilities, secrets, dependencies and prompt risks. Use when: concrete exposure needs assessment; never silently change policy.

Use this Skill: https://skilld.dev/gh/boshu2/agentops/security

This session only. Nothing lands on disk.

referencesowasp-checklist.md

≈1k tokens on demand. Your agent reads this file only when SKILL.md points to it.

OWASP Top 10 Security Checklist

Code-level OWASP Top 10 review checklist. Load it during a /security code-level review pass to walk each class and record a per-class result. It ranks findings by severity; it does not gate merges or releases — those are caller decisions.

Checklist

1. Secrets Management

  • No hardcoded API keys, passwords, or tokens in source
  • All secrets loaded from environment variables or secret stores
  • .env files in .gitignore
  • No secrets in log output or error messages
  • CI/CD secrets use platform-native secret management

Detection:

grep -rn 'password\s*=\s*"[^"]\+"\|api_key\s*=\s*"[^"]\+"\|secret\s*=\s*"[^"]\+"\|token\s*=\s*"[^"]\+' --include='*.go' --include='*.py' --include='*.ts' --include='*.js' . | grep -v _test | grep -v test_ | grep -v vendor/

2. Input Validation

  • All user input validated with schema (Zod, JSON Schema, struct tags)
  • Input length limits enforced
  • Content-type validation on file uploads
  • No eval(), exec(), or dynamic code execution with user input
  • Path traversal prevention (no ../ in user-supplied paths)

3. SQL Injection

  • All database queries use parameterized statements
  • No string concatenation in SQL
  • ORM usage follows safe query patterns
  • Raw queries (if any) are reviewed and justified

4. XSS (Cross-Site Scripting)

  • User-generated HTML sanitized before rendering
  • CSP (Content-Security-Policy) headers configured
  • Template engines auto-escape by default
  • No innerHTML or dangerouslySetInnerHTML with user input

5. CSRF (Cross-Site Request Forgery)

  • Anti-CSRF tokens on state-changing requests
  • SameSite=Strict or SameSite=Lax on cookies
  • Origin/Referer header validation

6. Authentication

  • Tokens in httpOnly cookies (not localStorage)
  • Session expiry configured
  • Password hashing uses bcrypt/argon2 (not MD5/SHA1)
  • Rate limiting on auth endpoints
  • Account lockout after failed attempts

7. Authorization

  • Role-based access control (RBAC) enforced
  • Authorization checks on every endpoint (not just frontend)
  • No direct object reference without ownership check
  • Admin endpoints require elevated permissions

8. Rate Limiting

  • Rate limits on all public endpoints
  • Stricter limits on auth/payment endpoints
  • Rate limit headers returned (X-RateLimit-*)
  • Distributed rate limiting if multi-instance

9. Sensitive Data Exposure

  • No passwords, tokens, or PII in log output
  • Error messages are generic (no stack traces in production)
  • HTTPS enforced (no mixed content)
  • Sensitive fields excluded from API responses
  • Database encryption at rest for PII

10. Dependencies

  • No known vulnerable dependencies (npm audit, pip audit, govulncheck)
  • Dependencies pinned to specific versions
  • Lock files committed
  • Regular dependency update process (Renovate/Dependabot)

Severity Classification

Severity ranks findings so a reviewer can order them; it carries no merge, release, or remediation-timing authority. Whether and when to fix, and whether to block any delivery, are caller decisions this checklist does not make.

Finding Severity
Hardcoded secret in source CRITICAL
SQL injection possible CRITICAL
Missing input validation on public endpoint HIGH
Dependency with known CVE (CVSS > 7) HIGH
Missing rate limiting MEDIUM
Missing CSP headers MEDIUM
Debug logging in production code LOW

Integration

With /security (suite primitives)

The redteam primitive (collect-redteam) covers items 1-4 automatically. This checklist covers the remaining items that require code-level review.

With CI

# Minimum: secrets + dependencies
grep -rn 'password\|secret\|api_key' --include='*.go' --include='*.py' . | grep -v test
govulncheck ./...  # or npm audit / pip audit

Source: SKILL.md on GitHub

1 alert15d5 checks · Risk SAFE
  • Gen Agent Trust Hub15d

    The skill is a comprehensive security suite designed for scanning repositories, analyzing binaries, and performing red-team assessments. It uses subprocesses to execute security utilities and monitor binary behavior within a local sandbox. While the skill processes files containing prompt injection attacks, these are explicitly treated as test data (evidence) rather than instructions for the agent to follow.

  • Socket15d

    1 alert: gptAnomaly

  • Snyk15d

    Risk: LOW · No issues

  • Runlayer6mo

    3/3 files flagged

  • ZeroLeaks5mo

    Score: 93/100 · 2 sections analyzed

Signed by skilld at c655850. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 20 hours ago.

Activeupdated 3 weeks ago

README badge

README badge for boshu2/agentops/security