Sota Audit — Security skill for Claude Code
Audit this codebase against the library — agree the scope first, route from the surfaces rather than from whatever happened to get loaded, walk each skill's Audit checklist item by item, ask the quest.
How to install Sota Audit
Installs to ~/.claude/skills/martinholovsky-sota-skills-sota-audit/SKILL.md
mkdir -p ~/.claude/skills/martinholovsky-sota-skills-sota-audit && curl -fsSL https://raw.githubusercontent.com/martinholovsky/SOTA-skills/HEAD/commands/sota-audit.md -o ~/.claude/skills/martinholovsky-sota-skills-sota-audit/SKILL.md Restart Claude Code, or start a new session, for it to be picked up.
What Sota Audit does
description: Audit this codebase against the library — agree the scope first, route from the surfaces rather than from whatever happened to get loaded, walk each skill's Audit checklist item by item, ask the questions that need a decision, then fix what you agree to. Run it when a piece of work is finished, or on arriving in a codebase you did not write.
Audit this codebase against the library's rules — how far they were applied, not how good the code feels.
It is the third position in
Alternatives in Security
- Skills Audit Report — Date: 2026-02-15 Auditor: Automated Skill Quality Audit Scope: Recently added skills in business-growth/, fina 5.3k ★
- MCP Security Checklist (SlowMist) — Comprehensive checklist: input validation, rate limiting, RBAC, credential management, container hardening 819 ★
- OpenTag — Open-source, channel-native agent gateway for Slack 499 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Jared Audit
Skeptical kanban-manager audit — walk the backlog oldest-first, verdict per item (close / reshape / leave-alon
Pfm
MANDATORY — route every change to CLAUDE.md, .claude/, the .codex/ mirror or templates/ here. /pfm {change req
Reflect Skill Claude
3-phase /reflect skill for Claude Code: extract session learnings, audit your config against what actually hap
Oversight
User-in-the-loop — brief, ask, apply, commit. The ONLY interactive skill. audit mode is read-only.
Maintainer Audit
Proactively review a skill or plugin against source-of-truth and the open-issue signal, logging gaps as issues
AWS Findings Triage Skill
Triage AWS Security Hub, GuardDuty, Inspector, and Config findings for the MacMountain account by real exploit
Related Agents
Sol Implementer
High-complexity implementation lane running GPT-5.6 Sol via the OpenAI Codex CLI (codex exec), at whatever rea
Gear Master
D&D 5e equipment, armor, weapons, and magic items expert. Use PROACTIVELY when players shop for gear, ask abou
Compliance Checker
Reads the formatted output markdown, loads the journal requirements YAML, and systematically verifies complian