{"repo":"Netxeo/skill-file-security","free":true,"listed":false,"github":"https://github.com/Netxeo/skill-file-security","clone":"git clone https://github.com/Netxeo/skill-file-security.git","description":"One command. 29 battle-tested security checks built into every AI coding assistant you already use without leaving your IDE.","language":"JavaScript","stars":72,"topics":["ai","claude","claude-code","cli","cursor","cwe","javascript","nextjs","owasp","security"],"license":null,"category":"security-tools","readme_excerpt":"Your AI coding assistant just became a security engineer. 🌐 Visit the Official Website --- Install it. Right now. Interactive mode (Smart 5-question setup): The interactive mode automatically detects your stack (Next.js, Supabase, Docker, etc.) and asks you 5 simple questions to install only the security rules you actually need. Fast mode (Silent install, bypasses prompts and installs all rules): That's it. Run this in any project. Then type /security-scan in your AI. --- What just happened? Your AI now knows 25 security categories. It will flag vulnerabilities while you code , not after. --- See it in action --- Commands Command What it does --- --- /security-scan 30-second scan, critical issues only /security-audit Full audit + score /100 + report file /security-fix Applies fixes — always asks before touching code /security-status Score history from memory-security.md /security-incident Full incident response playbook /security-explain Explains a security rule or concept in plain language --- Coverage 100% of OWASP, 100% of CWE Top 25 — without installing a single extra tool. 📋 CWE Top 25 — Full list # CWE What we check --- --- --- 1 CWE-787 Out-of-bounds Write Buffer.alloc(), safe allocation 2 CWE-79 XSS textContent vs innerHTML, CSP nonces 3 CWE-89 SQL Injection Parameterized queries everywhere 4 CWE-416 Use After Free Event listener cleanup, memory lifecycle 5 CWE-78 OS Command Injection execFile() with argument arrays 6 CWE-20 Improper Input Validation Allowlists, sch","default_branch":null,"files":null,"tree":[],"storefront":"/r/Netxeo","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Netxeo/skill-file-security/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}