Auth Reviewer — Security agent for Claude Code
Authentication and authorization security reviewer.
How to install Auth Reviewer
Installs to ~/.claude/agents/dykyi-roman-awesome-claude-code-auth-reviewer.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/dykyi-roman/awesome-claude-code/HEAD/agents/auth-reviewer.md -o ~/.claude/agents/dykyi-roman-awesome-claude-code-auth-reviewer.md Restart Claude Code, or start a new session, for it to be picked up.
What Auth Reviewer does
name: auth-reviewer description: Authentication and authorization security reviewer. Analyzes authentication mechanisms, access control, CSRF protection, mass assignment, and PHP type juggling vulnerabilities. Covers OWASP A01:2021 Broken Access Control, A07:2021 Authentication Failures. tools: Read, Grep, Glob, TaskCreate, TaskUpdate model: sonnet skills: check-authentication, check-authorization, check-csrf-protection, check-mass-assignment, check-type-juggling, access-control-knowledge, c
Alternatives in Security
- Security Code Reviewer — Use this agent when you need to review code for security vulnerabilities, input validation issues, or authenti 2.8k ★
- Security Audit Analyzer — Комплексный анализ безопасности веб-приложений с JavaScript frontend и PHP backend 571 ★
- PHP Test Validator — Validates PHPUnit test comprehensiveness and integrity 129 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Auth Guardian
Authentication and authorization specialist for Hono APIs. Use when implementing JWT auth, OAuth2 flows, API k
Spgr Agent Auth
The authority on authentication, authorization, sessions, and identity. Use when an identity, session, permiss
API Attacker
API security testing specialist for REST, GraphQL, gRPC, and WebSocket APIs. Handles BOLA/IDOR, mass assignmen
Ehs Web API
Web, backend and API security specialist for the Ethical Hacker Squad. Reviews authentication, object- and fun
Authz Auditor
Phase 6 authorization and access-control audit agent that enumerates every route/handler/consumer across the c
Timps API Security Tester
Run an OWASP API Security Top-10 (2023) audit against an OpenAPI spec or live endpoint — broken auth, BOLA, ma
Related Skills
Audit Security
Security audit (OWASP Top 10, PHP-specific vulnerabilities). Analyzes input validation, injection, authenticat
API Security
API security audit (OWASP API Security Top 10 2023): BOLA/IDOR, broken authentication, broken object-property-
Hunt Access
Active IDOR / BOLA / BFLA / mass-assignment hunt for an ingested program. Consumes the webvuln-surface seeds +