KevinZai

Ccc Audit — Security skill for Claude Code

Security community

Run npm audit + bundle size check + lint scan.

How to install Ccc Audit

Installs to ~/.claude/skills/kevinzai-commander-ccc-audit/SKILL.md

Terminal
mkdir -p ~/.claude/skills/kevinzai-commander-ccc-audit && curl -fsSL https://raw.githubusercontent.com/KevinZai/commander/HEAD/commands/ccc-audit.md -o ~/.claude/skills/kevinzai-commander-ccc-audit/SKILL.md

Restart Claude Code, or start a new session, for it to be picked up.

What Ccc Audit does


description: "Run npm audit + bundle size check + lint scan. Returns vulnerabilities, oversized bundles, and lint errors."

Run a comprehensive audit of the current project.

Steps:

  1. Dependencies: npm audit / pnpm audit — check for vulnerabilities
  2. Bundle size: Check build output sizes, flag anything >500KB
  3. TypeScript: tsc --noEmit — zero errors required
  4. Dead code: Scan for unused exports, unreferenced files
  5. Secrets: Scan for hardcoded API keys, tok

Alternatives in Security

  • Brooks Audit — Run a Brooks-Lint architecture audit 1.5k ★
  • Engage.Threatmodel — Materialize, lint, and drift-check the engagement threat model 348 ★
  • Security Check — Scan project for security issues — exposed secrets, missing .gitignore entries, unsafe patterns 335 ★

Full documentation available on GitHub

View Source Repository