{"repo":"ivan-magda/swift-security-skill","free":true,"listed":false,"github":"https://github.com/ivan-magda/swift-security-skill","clone":"git clone https://github.com/ivan-magda/swift-security-skill.git","description":"AI agent skill for secure credential storage & cryptography on Apple platforms - Keychain Services, biometric auth, CryptoKit, and OWASP compliance (iOS 13–26+)","language":null,"stars":30,"topics":["agent-skill","biometric-authentication","claude-code","cryptokit","ios","keychain","owasp","secure-enclave","security","skill"],"license":"MIT","category":"security-tools","readme_excerpt":"Swift Security Expert An AI agent skill for secure credential storage and cryptography on Apple platforms: Keychain Services, biometric authentication, CryptoKit, Secure Enclave, certificate trust, and OWASP compliance for iOS, macOS, tvOS, watchOS, and visionOS (iOS 13 through 26+). Table of Contents - Background - Philosophy - Features - Installation - Usage - Project Structure - Contributing - License Background AI coding assistants are unreliable on Apple security code. They reach for UserDefaults to hold tokens, gate access on a patchable LAContext.evaluatePolicy() boolean, drop OSStatus return codes on the floor, and reuse AES-GCM nonces. Each of these is a real vulnerability, not a style problem. This skill gives an agent the defaults and review guidance it needs to avoid those mistakes. It covers reviewing existing Swift security code, modernizing legacy storage, and implementing Keychain, biometric, and CryptoKit features from scratch. The guidance comes from Apple documentation, DTS engineer posts (Quinn \"The Eskimo!\"), WWDC sessions, and the OWASP MASTG rather than from the model's own recall. Philosophy - Non-opinionated. It supplies verified patterns and Apple-documented behavior rather than mandating one architecture. Where several valid options exist (P256 vs Curve25519, AES-GCM vs ChaChaPoly, actor vs serial queue), it presents the tradeoffs and lets you choose. - Correctness over coverage. Reference files pair correct and incorrect examples and explain why th","default_branch":null,"files":null,"tree":[],"storefront":"/r/ivan-magda","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/ivan-magda/swift-security-skill/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}