Security Check — Security skill for Claude Code
Scan project for security issues — exposed secrets, missing .gitignore entries, unsafe patterns.
How to install Security Check
Installs to ~/.claude/commands/thedecipherist-claude-code-mastery-project-starter-kit-security-check.md
mkdir -p ~/.claude/commands && curl -fsSL https://raw.githubusercontent.com/TheDecipherist/claude-code-mastery-project-starter-kit/HEAD/.claude/commands/security-check.md -o ~/.claude/commands/thedecipherist-claude-code-mastery-project-starter-kit-security-check.md Restart Claude Code, or start a new session, for it to be picked up.
What Security Check does
Scan project for security issues — exposed secrets, missing .gitignore entries, unsafe patterns.
Alternatives in Security
- Security Guidance — Hook that warns about command injection, XSS, and unsafe patterns 14k ★
- Portaljs Check Data Quality — Audit a local or remote tabular file (CSV/TSV) for common data quality issues 2.3k ★
- Claude Leaked Files — Mirrored snapshot of Claude Code's source (exposed 2026-03-31) preserved for educational purposes, defensive s 256 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Security Audit Web App
Use when auditing a web app frontend/edge layer for common security mistakes — server vs client boundary leaks
Hygiene Audit
Audit repository hygiene — check for stale branches, worktrees, large files, missing metadata, CI health, and
Customer Changelog Check
Audit whether user-visible changes in the current session have matching CHANGELOG.md entries; report MISSING w
Skill Quality Suite
Quality, security, compatibility and publishing toolkit for AI Agent Skills - lint and validate SKILL.md, scan
Pbi Audit Fix
Autonomous audit-then-fix pipeline — scan the TMDL/TMSL model, auto-fix WARN-level issues (missing description
Skill Auditor Seguranca
Executable security and LGPD gate for AI-built projects. Scans for exposed secrets, .env leaks, Supabase servi
Related Agents
Tp Audit Scanner
Use this when the user asks for a security / quality audit, pre-release sweep, or "scan this for issues". Find
Seraph
Static security audit of a repo's code and config (exposed secrets, missing authorisation, injection surfaces,
Salesforce Security Reviewer
Checks sharing declarations, CRUD/FLS enforcement, and scans for exposed secrets, hardcoded Ids, or non-synthe