code-security-audit

Category: Development & Coding | Uploader: ssrsecssrsec | Downloads: 0 | Version: v1.0(Latest)

面向有源码白盒场景的 LLM 代码安全审计总控协议。输出项目架构画像,按 OWASP/ASVS/WSTG/CWE/CVSS 建立覆盖矩阵,执行候选发现、反向审查、PoC/测试验证和合规报告。

Changelog: Source: GitHub https://github.com/ssrsec/code-security-audit

Directory Structure

Current level: tree/main/

  • 📁 .claude-plugin/
    • 📄 plugin.json 291 B
  • 📁 .cursor-plugin/
    • 📄 plugin.json 338 B
  • 📁 agents/
    • 📄 audit-composer-agent.md 5.6 KB
    • 📄 audit-control-agent.md 6.2 KB
    • 📄 audit-orchestrator.md 5.6 KB
    • 📄 audit-recon-agent.md 6.4 KB
    • 📄 audit-report-agent.md 6.6 KB
    • 📄 audit-sink-agent.md 5.4 KB
    • 📄 audit-validate-agent.md 7.1 KB
  • 📁 docs/
    • 📁 superpowers/
      • 📁 plans/
        • 📄 2026-04-29-primitive-composition.md 35.5 KB
      • 📁 specs/
        • 📄 2026-04-29-primitive-composition-design.md 15.2 KB
  • 📁 rules/
    • 📄 audit-quality.mdc 2.7 KB
    • 📄 audit-report.mdc 4.4 KB
    • 📄 audit-workflow.mdc 3.6 KB
  • 📁 scripts/
    • 📄 coverage_diff.py 5.4 KB
    • 📄 tier_classify.py 6.2 KB
  • 📁 shared/
    • 📁 config/
      • 📄 file_scope.json 1.3 KB
      • 📄 priority_keywords.json 948 B
      • 📄 tier_rules.json 4.2 KB
    • 📁 tools/
      • 📄 phase2_autopilot.py 11.2 KB
    • 📄 anti_hallucination.md 2.4 KB
    • 📄 architecture_design.md 5.1 KB
    • 📄 audit_output_layout.md 3.7 KB
    • 📄 composite_vulnerability_analysis.md 3.5 KB
    • 📄 coverage_matrix_template.md 4.5 KB
    • 📄 coverage_policy.md 5.9 KB
    • 📄 decompilation.md 14.1 KB
    • 📄 dimensions.md 995 B
    • 📄 framework_authz_checklist.md 3.9 KB
    • 📄 large_project_audit.md 4.1 KB
    • 📄 phase_definitions.md 11.9 KB
    • 📄 poc_evidence_integrity.md 2.3 KB
    • 📄 poc_safety_policy.md 2.8 KB
    • 📄 primitive_chain_catalog.md 8.9 KB
    • 📄 report_fields.md 14.2 KB
    • 📄 research_basis.md 8.2 KB
    • 📄 scope_policy.md 3.2 KB
    • 📄 secret_detection.md 4.0 KB
    • 📄 state_schema.md 2.4 KB
    • 📄 verification_principles.md 12.9 KB
    • 📄 whitebox_audit_schema.md 6.1 KB
  • 📁 skills/
    • 📁 audit-control/
      • 📄 SKILL.md 11.1 KB
    • 📁 audit-primitives/
      • 📄 SKILL.md 4.7 KB
    • 📁 audit-recon/
      • 📄 SKILL.md 7.8 KB
    • 📁 audit-report/
      • 📁 resources/
        • 📄 report_template.md 5.8 KB
      • 📄 SKILL.md 7.9 KB
    • 📁 audit-sink/
      • 📄 SKILL.md 11.8 KB
    • 📁 audit-validate/
      • 📁 resources/
        • 📁 knowledge/
          • 📄 auth_failures.md 3.4 KB
          • 📄 authorization_model.md 9.0 KB
          • 📄 command_os_injection_conditions.md 1.9 KB
          • 📄 cryptographic_failures.md 2.1 KB
          • 📄 dependency_version_check.md 2.3 KB
          • 📄 dotnet_deserialization_conditions.md 848 B
          • 📄 fastjson_conditions.md 3.2 KB
          • 📄 file_upload_conditions.md 2.7 KB
          • 📄 insecure_deserialization.md 2.5 KB
          • 📄 jackson_conditions.md 1003 B
          • 📄 java_native_deserialization_conditions.md 835 B
          • 📄 jndi_conditions.md 944 B
          • 📄 parameter_and_business_logic.md 3.5 KB
          • 📄 php_unserialize_conditions.md 797 B
          • 📄 python_pickle_conditions.md 826 B
          • 📄 README.md 5.4 KB
          • 📄 security_misconfiguration.md 2.4 KB
          • 📄 shiro_deserialization_conditions.md 820 B
          • 📄 snakeyaml_conditions.md 832 B
          • 📄 sql_injection_conditions.md 2.3 KB
          • 📄 ssrf_conditions.md 1.8 KB
          • 📄 velocity_ssti_conditions.md 919 B
          • 📄 xstream_conditions.md 1008 B
      • 📄 SKILL.md 15.5 KB
    • 📁 code-security-audit/
      • 📄 SKILL.md 12.6 KB
  • 📄 .gitignore 1.3 KB
  • 📄 README.md 4.2 KB
  • 📄 SKILL.md 13.9 KB

SKILL.md

Login to download/like/favorite ❤ 8 | ★ 0
Comments 0

Please login before commenting.

Loading comments...