Security Scan
Description
--- allowed-tools: Read, Bash, Grep, Glob argument-hint: [backend|ios|android|all] description: Run security scan for specified platform - checks for secrets, vulnerabilities, and security best practices model: sonnet --- # Security Scan Security scan for: $ARGUMENTS --- ## Scan Scope ### Backend (Go) Security Checks 1. **Hardcoded Secrets**: Search for API keys, tokens, passwords in code 2. **SQL/NoSQL Injection**: Check database queries for unsafe inputs 3. **Auth Bypass**: Verify authen
Installation
Installs to ~/.claude/commands/muyen-vibe-to-prod-security-scan.md
mkdir -p ~/.claude/commands && curl -fsSL https://raw.githubusercontent.com/muyen/vibe-to-prod/HEAD/.claude/commands/security-scan.md -o ~/.claude/commands/muyen-vibe-to-prod-security-scan.md Restart Claude Code, or start a new session, for it to be picked up.
Full documentation available on GitHub
View Source RepositoryRelated Skills
Defense in Depth
Implement multi-layered testing and security best practices.
Security SecLists Official Repository
[OWASP Testing Guide](https://owasp.org/www-project-web-security-testing-guide/)
Security Threat Hunting with Sigma Rules
Use Sigma detection rules to hunt for threats and analyze security events
Security Maintenance Walkthrough - 2026-03-29
- Re-triaged the full 2026-03-15 security finding set against current `main` and wrote a fresh current-head re
Security Google Workspace Model Armor
Filter user-generated content for safety
Security Google Workspace Alert Center
Manage security alerts
Security Related Agents
Token Auditor
Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d
Gitnexus Security Boundary Reviewer
GitNexus security and trust-boundary reviewer. Use for auth, permissions, secrets, injection, unsafe parsing,
Accessibility Audit
| You are an accessibility expert specializing in WCAG compliance, inclusive design, and assistive tec... | -