Sec Scan Injection — Data skill for Claude Code
SQL Injection, OS Command Injection, SSI Injection 정적 진단 — scan_injection_enhanced.py + LLM 교차검증.
How to install Sec Scan Injection
Installs to ~/.claude/commands/hssg1109-palantir-sec-scan-injection.md
mkdir -p ~/.claude/commands && curl -fsSL https://raw.githubusercontent.com/hssg1109/palantir/HEAD/.claude/commands/sec-scan-injection.md -o ~/.claude/commands/hssg1109-palantir-sec-scan-injection.md Restart Claude Code, or start a new session, for it to be picked up.
What Sec Scan Injection does
allowed-tools: Read, Glob, Grep, Bash, Edit, Write, Agent, WebFetch description: SQL Injection, OS Command Injection, SSI Injection 정적 진단 — scan_injection_enhanced.py + LLM 교차검증
Sec Scan Injection
대상: $ARGUMENTS (미입력 시 testbed/ 내 대상 목록을 먼저 확인)
실행 절차
`sec-scan-injection/SKILL.md` 전체 내용을 읽고 절차대로 실행할 것.
sec-scan-injection/SKILL.md읽기shared/references/task_prompts/task_11_asset_identification.md읽기- `sec-scan-injection/references/task_prompts/task_22_injection_review.m
Alternatives in Data
- LLM Redteam — LLM red-team corpus runner — fires categorized prompt-injection / jailbreak / system-prompt-leak / data-exfil 4.5k ★
- Global Stock Data — US stock market data for AI coding assistants — zero-auth, official sources 1.5k ★
- Vibesec — Helps write secure code by preventing common vulnerabilities including IDOR, XSS, SQL injection, SSRF, and wea 687 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Sec Scan Data
데이터 보호 취약점 진단 — CORS / Secrets / JWT / Cryptography / PII Logging — scan_data_protection.py + LLM 교차검증
Yotta Agent Hardening
YuanSafe (元安全) — defensive hardening workflow for AI agents: static config-facing scan of an agent's own runti
Axguard SQL
SQL injection sinks — f-string/format/concat queries, ORM raw helpers. Usage: /axguard-sql [path]
Hunt Sqli
Active SQL injection hunt for an ingested program. Consumes webvuln-surface seeds + optional auth-context, tes
Mem Gate
Hard write-rules quality gate — scan existing memory for junk entries that violate the data-quality canon, or
Token Usage
Local LLM token usage analytics for Claude, Codex, OpenCode, ZCode, WorkBuddy, and Zhipu-AutoClaw — build your
Related Agents
Sec Auditor
Real-time PII protection and SQL/NoSQL injection blocking during data processing. Invoke when working with use
LLM Sec Review
LLM/agent security review specialist — prompt injection, the Agents Rule of Two, tool-call authorization, mode
Sec Orchestrator
Coordinates multi-agent ClaudeSec security workflows — triages scan findings by severity, assigns work to sec-