security-review
SkillSecurityReview current code against the repository Security overlay; report evidence and remedies. Use when the user types /security-review.
Available today. Use it from your connected AI after setup.
No other account needed.
Connect ahel once, and every AI you use reads what you have installed.
Then ask your AI: use the security-review skill
What this skill tells your AI
The instructions your AI receives, as published by blockmatic/basilic in .agents/skills/workflow/security-review/SKILL.md and read by ahel’s review.
Perform comprehensive security review of current code and provide specific remediation steps with code examples for each security issue identified.
- Authentication & Authorization: Verify proper authentication mechanisms, check authorization controls/permission systems, review session management/token handling, ensure secure password policies/storage
- Input Validation & Sanitization: Identify SQL injection vulnerabilities, check for XSS/CSRF attack vectors, validate all user inputs/API parameters, review file upload/processing security
- Data Protection: Ensure sensitive data encryption at rest/in transit, check for data exposure in logs/error messages, review API responses for information leakage, verify proper secrets management
- Infrastructure Security: Review dependency security/known vulnerabilities, check HTTPS configuration/certificate validation, analyze CORS policies/security headers, review environment variable/configuration security
Signals
- GitHub stars
- 89
- Forks
- 11
- Last commit
- Sep 2026
Advanced
- Catalog kind
- skill
- Gateway key
security-review-blockmatic- Source
- github.com/blockmatic/basilic