Security Requirements Reviewer — Security agent for Claude Code
Read-only security architect's review of a project's requirement/spec set (requirements, ADRs, spec docs) for security and privacy completeness, before or independently of implementation.
How to install Security Requirements Reviewer
Installs to ~/.claude/agents/nolte-claude-shared-security-requirements-reviewer.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/nolte/claude-shared/HEAD/agents/security-requirements-reviewer.md -o ~/.claude/agents/nolte-claude-shared-security-requirements-reviewer.md Restart Claude Code, or start a new session, for it to be picked up.
What Security Requirements Reviewer does
name: security-requirements-reviewer description: "Read-only security architect's review of a project's requirement/spec set (requirements, ADRs, spec docs) for security and privacy completeness, before or independently of implementation. Judges whether each requirement specifies the controls it needs, detecting requirement sources at runtime; returns a severity-classified report, writes nothing. Invoke to review requirements/specs for security gaps, missing access control, or over-collectio
Alternatives in Security
- Security Requirement Extraction — Transform threat analysis into actionable security requirements 31.9k ★
- Jinbe — Final Superloopy gate reviewer that integrates implementation, QA, review, and audit evidence into an APPROVE/ 109 ★
- Adversary — Pre-implementation red-team analysis 85 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Spec Readiness Reviewer
Read-only audit of specs under a target topic for downstream readiness along three dimensions: contradictions
Solutions Architect
Enterprise and solutions architect. Use to derive non-functional requirements and quality attribute targets (p
Mermaid Diagram Reviewer
Read-only static audit of every Mermaid block in docs/ / against spec/project/mermaid-diagrams/ plus the MkDoc
Methodology Auditor
Audits coherence and completeness of the GSE-One methodology repository across spec, design, and implementatio
ADR Auditor
Use to audit the Architecture Decision Records (ADRs) in a repository managed by adrplus — checks structural c
Wh Constraint Auditor
Design-phase agent. Audits spec.md, plan.md and brief.md against the security baseline, the client's complianc
Related Skills
I Built A Claude Code Skill That Turns Claude Into A Professional Project Architect - Generate Complete Requirements, Design Docs, And Implementation Plans In Minutes (Built With Claude)
Productivity Ever start a project and realize 3 days in that you should have planned better? Or tried to get C
Requirements Review Skill
Problem — requirement reviews were inconsistent and depended on the reviewer's mood/experience Solution — form
Project Workflow
Spec-driven AI development workflow — methodology docs, starter templates, and Claude Code/Codex plugins with