security-review
Heuristics and a checklist for the Argus Security Reviewer — taint tracing, and detection patterns for auth/authz, injection, IDOR/BOLA, SSRF, path traversal, deserialization, secrets, crypto misuse, and unsafe IO. Load when reviewing changed code for security, or when acting as argus-security.
Pinned to revision 1d7f2b25d9a6, so it is the text this page describes rather than whatever the author pushed since.
Files
Every link opens the file at its source, pinned to the revision this page describes.