shakacode

Security Review — Security skill for Claude Code

Security community

Review code for security vulnerabilities (OWASP Top 10).

How to install Security Review

Installs to ~/.claude/skills/shakacode-claude-code-commands-skills-agents-security-review/SKILL.md

Terminal
mkdir -p ~/.claude/skills/shakacode-claude-code-commands-skills-agents-security-review && curl -fsSL https://raw.githubusercontent.com/shakacode/claude-code-commands-skills-agents/HEAD/commands/security-review.md -o ~/.claude/skills/shakacode-claude-code-commands-skills-agents-security-review/SKILL.md

Restart Claude Code, or start a new session, for it to be picked up.

What Security Review does


description: Review code for security vulnerabilities (OWASP Top 10)

Review the specified code for security vulnerabilities.

Instructions

  1. **Identify the target**: The user will specify a file, directory, or feature to review. If not specified, ask what to review.

  2. **Read the code** and analyze against these categories:

Injection (SQLi, XSS, Command Injection)

  • User input used in SQL queries without parameterization
  • User input rendered in HTML without escaping
  • User in

Alternatives in Security

  • Security Best Practices — Review code for language-specific security vulnerabilities 14.6k ★
  • Deepsec — Deepsec is a security harness for finding vulnerabilities in your codebase powered by coding agents 7.8k ★
  • Claude Code Security Review — An AI-powered security review GitHub Action using Claude to analyze code changes for security vulnerabilities 3.9k ★

Full documentation available on GitHub

View Source Repository