From larouex-fullstack-builder
Performs comprehensive security audit of the current project, reporting on vulnerabilities, configurations, secrets; provides prioritized recommendations with code examples.
How this command is triggered — by the user, by Claude, or both
Slash command
/larouex-fullstack-builder:audit-securityThe summary Claude sees in its command listing — used to decide when to auto-load this command
Perform comprehensive security audit of the current project. Analyze and report on: - Common vulnerabilities (XSS, CSRF, SQL injection, command injection) - Environment variable exposure and secrets management - CORS configuration and potential security issues - Authentication and authorization implementation - Input validation and sanitization - API endpoint security (rate limiting, authentication) - Dependency vulnerabilities using npm audit or similar - Security headers (CSP, X-Frame-Options, HSTS, etc.) - Session management and token storage - SQL/database query security - File upload ...
Perform comprehensive security audit of the current project.
Analyze and report on:
Provide specific recommendations with code examples for each finding. Prioritize issues by severity (Critical, High, Medium, Low). Include remediation steps.
npx claudepluginhub larouexnonprofitconsulting/larouex-fullstack-plugin/security-guardAudits codebase for security vulnerabilities across 8 categories: env secrets exposure, auth checks, rate limiting, file uploads, storage security, prompt injection, and more.
/kasi-securityRuns security audit on project codebase: detects stack (PHP/Node/Python/etc.), loads checklist, scans files for SQLi/XSS/CSRF/auth bypass/etc., outputs prioritized findings with confidence labels.
/secureRuns security audit scanning dependencies, secrets, OWASP patterns, and HTTP headers. Auto-fixes safe issues.
/auditPerforms security audit of codebase for dependency vulnerabilities, secrets, OWASP Top 10, input validation, auth issues, and misconfigs. Outputs findings report by severity with fixes and references.
/security-scanScans codebase for vulnerabilities, hardcoded secrets, OWASP Top 10 compliance, and security best practices violations. Produces report with issues and fix recommendations.
/audit-securityAudits PHP projects for OWASP Top 10 and PHP-specific vulnerabilities including injection, XSS, CSRF, auth issues; reports severity, CWE IDs, attack vectors.