J Audit — Security skill for Claude Code
Security threat model and vulnerability scan — STRIDE analysis, SAST patterns, and compliance mapping.
How to install J Audit
Installs to ~/.claude/commands/jlaws-dotfiles-j-audit.md
mkdir -p ~/.claude/commands && curl -fsSL https://raw.githubusercontent.com/jlaws/dotfiles/HEAD/.claude/commands/j-audit.md -o ~/.claude/commands/jlaws-dotfiles-j-audit.md Restart Claude Code, or start a new session, for it to be picked up.
What J Audit does
name: j-audit description: "Security threat model and vulnerability scan — STRIDE analysis, SAST patterns, and compliance mapping. Use when reviewing code for vulnerabilities, conducting threat modeling, or mapping compliance controls. Do NOT use for quick security questions (ask directly instead)." argument-hint: "" model: opus effort: xhigh
Load skill `analysis-output-patterns` for output structure rules. Load skill `code-review-patterns` for severity labeling an
Alternatives in Security
- Security Threat Model — Generate repo-specific threat models identifying trust boundaries 14.6k ★
- Engage.Threatmodel — Materialize, lint, and drift-check the engagement threat model 348 ★
- Security Check — Scan project for security issues — exposed secrets, missing .gitignore entries, unsafe patterns 335 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Modern Threat Model
STRIDE threat-modeling skill for Claude. Turns an idea, diagram, or code repo into a DFD, threat ledger, score
Skill Threat Modeling
Code-First Deep Risk Analysis Skill for Claude Code - 8-Phase Workflow with Security design review, STRIDE Thr
Security Engineer
Expert application security engineer specializing in threat modeling, vulnerability assessment, secure code re
Heeler Threat Modeling
Resolve a service id, gather threat model context, and build a concrete prompt for threat modeling workflows.
Threat Report Killchain
Claude skill to convert CTI reports into cyber kill chain, Diamond Model views and create a TTP-to-ATT&CK/ATLA
Harness Audit
Audit an existing Claude Code harness for configuration integrity (4-scope scan, JSON validity, anti-patterns,
Related Agents
Sec
Security review, vulnerability analysis, threat modeling using STRIDE+DREAD. Use PROACTIVELY when reviewing au
Sec Security Auditor
Security auditor who performs vulnerability scanning, security reviews, and threat assessments. Use this agent
Security Auditor
Security auditor for DevSecOps, OWASP compliance, vulnerability assessment, and threat modeling