What it does
A collection of security-focused skills for code auditing and vulnerability detection. It includes skills for static analysis with CodeQL and Semgrep, variant analysis across codebases, fix verification and differential code review.
Use cases
- 01Run static analysis with CodeQL or Semgrep
- 02Look for variants of a known bug across repos
- 03Verify that a security fix really closes the issue