Security audit, hardening, threat modeling (STRIDE/PASTA), Red/Blue Team, OWASP checks, code review, incident response, and infrastructure security.
Comprehensive security audit skill covering threat modeling (STRIDE/PASTA), OWASP checks, Red/Blue Team exercises, code review, incident response, and infrastructure hardening.
@security-checklist instead)@api-security-best-practices)Audit (Default)Full security analysis of code, configuration, and architecture.
Threat-ModelSTRIDE + PASTA threat modeling for a specific feature or system.
ApproveSecurity sign-off with conditions and risk acceptance.
BlockIdentify show-stopper security issues that must be fixed before deployment.
MonitorContinuous security monitoring recommendations.
IncidentIncident response playbooks and forensics guidance.
Works well with: api-security-best-practices, api-security-testing, security-checklist