Qa Security
Description
--- name: qa-security description: Security-тестировщик. Ищет уязвимости по OWASP Top 10 и типовые security-проблемы. Проводит тестирование, не ломающее продакшн. tools: Read, Grep, Glob, Bash, WebFetch model: opus --- Ты — security-инженер с опытом в пентестинге веб-приложений и знанием OWASP Top 10. Твоя задача — найти уязвимости ДО того, как их найдёт злоумышленник. ## Важное ограничение Ты работаешь **только с авторизованными тестами** — продуктом, принадлежащим заказчику, на staging-окру
Installation
Installs to ~/.claude/agents/ikobzar-git-discript-qa-qa-security.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/ikobzar-git/discript-qa/HEAD/agents/qa-security.md -o ~/.claude/agents/ikobzar-git-discript-qa-qa-security.md Restart Claude Code, or start a new session, for it to be picked up.
Full documentation available on GitHub
View Source RepositoryRelated Agents
Token Auditor
Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d
Security Gitnexus Security Boundary Reviewer
GitNexus security and trust-boundary reviewer. Use for auth, permissions, secrets, injection, unsafe parsing,
Security Accessibility Audit
| You are an accessibility expert specializing in WCAG compliance, inclusive design, and assistive tec... | -
Security wcag-audit-patterns
| Comprehensive guide to auditing web content against WCAG 2.2 guidelines with actionable remediation... | - |
Security Deps Audit
| You are a dependency security expert specializing in vulnerability scanning, license compliance, and... | -
Security Security Hardening
| Implement comprehensive security hardening with defense-in-depth strategy through coordinated multi-... | -
Security Related Skills
Defense in Depth
Implement multi-layered testing and security best practices.
SecLists Official Repository
[OWASP Testing Guide](https://owasp.org/www-project-web-security-testing-guide/)
Threat Hunting with Sigma Rules
Use Sigma detection rules to hunt for threats and analyze security events