Skip to content

woliveiras/baseline

v0.5.0MIT

The portable minimum for disciplined, proportional software engineering

security-review

Review a software change or CI workflow for technology-neutral security, privacy, data-loss, and authority risks using verifiable evidence. Use for trust boundaries, untrusted or fork-controlled input, secrets, sensitive data, permissions, privileges, or destructive and external actions. This owns requests limited to security risks. When security is secondary to broader work, compose with the owning workflow; defer stack-specific remediation to dedicated skills.

Read SKILL.md at the source

Pinned to revision bea4d6d11ef0, so it is the text this page describes rather than whatever the author pushed since.

Files

Every link opens the file at its source, pinned to the revision this page describes.