backend-security-skill
Audit backend risks and turn verified findings into prioritized fixes.
Audit backend risks and turn verified findings into prioritized fixes.
Use the skill in audit, scan, guide, or harden mode to review a backend project. It detects the stack, maps the attack surface, traces untrusted input to dangerous sinks, checks dependencies and configuration, and reports verified findings with file locations, severity, and fix guidance. Its coverage is anchored to OWASP and ASVS, but it is not runtime testing, a professional penetration test, or a compliance program, and it does not edit code without approval.
Resource types
Use cases
Platforms
Audit agent skills, plugins, and MCP repositories before they reach your tools.
Audit authorized web applications through source review or black-box checks.
Capabilities
Audience
Public GitHub facts last synced Jul 10, 2026.
Run supported always-on AI agents inside managed NVIDIA OpenShell sandboxes.
Plan and run authorized penetration tests with autonomous agents in an isolated environment.