security-review
priyank766/OpenSource-SKILLSecurity-focused review of an open-source pull request or diff. Use when the change touches authentication or authorization, cryptography, token or session…
Scores out of 100 · grade B
2026-08-22Works
40% of the score90/100
- References 1 file that is not in the repo: docs/SECURITY.md.
Maintained
25% of the score92/100
- no commits in the last 12 weeks
Adopted
20% of the score4/100
- 1 stars on the source repo.
Documented
15% of the score90/100
- 3,311 words with worked examples.
- Ships 3 bundled files.
Install
npx skills add priyank766/OpenSource-SKILL/security-reviewWhat the check found
| Finding | What it means |
|---|---|
| Missing files | It points at files that are not in the repository, so those steps will fail. |
Files it references that are not in the repository
What it says it does
Security-focused review of an open-source pull request or diff. Use when the change touches authentication or authorization, cryptography, token or session handling, input parsing, deserialization, subprocess or shell invocation, file path construction, uploads and archive extraction, outbound HTTP built from user input (SSRF), permission and ACL logic, secrets and credential handling, or any code path where untrusted input reaches a sink. Also use when a reviewer explicitly asks for a security pass on a diff. Applies the suite's 10-point filter at a lowered floor of 7.5 and routes exploitable findings through private disclosure instead of a public comment. Language- and ecosystem-agnostic. Do NOT use for offensive security work, writing exploits or proof-of-concept payloads, penetration testing live infrastructure, or license and supply-chain auditing — that belongs to dependency-review.
Also in priyank766/OpenSource-SKILL
| Artifact | Score | What the check found | Type | Reach | Last commit |
|---|---|---|---|---|---|
| contributor-experience-reviewpriyank766/OpenSource-SKILL | clean | Skill | 1 stars | 16 days ago | |
| dependency-reviewpriyank766/OpenSource-SKILL | clean | Skill | 1 stars | 16 days ago | |
| performance-reviewpriyank766/OpenSource-SKILL | clean | Skill | 1 stars | 16 days ago | |
| pr-reviewpriyank766/OpenSource-SKILL | clean | Skill | 1 stars | 16 days ago | |
| test-reviewpriyank766/OpenSource-SKILL | clean | Skill | 1 stars | 16 days ago | |
| docs-reviewpriyank766/OpenSource-SKILL | Missing files | Skill | 1 stars | 16 days ago |
Other code review skills
Browse all| Artifact | Score | What the check found | Category | Reach | Last commit |
|---|---|---|---|---|---|
| receiving-code-reviewobra/superpowers | clean | Code review | 173,412 installs | 2 days ago | |
| scaffold-exercisesmattpocock/skills | clean | Code review | 241,781 installs | today | |
| financial-statementsanthropics/knowledge-work-plugins | clean | Code review | 3,719 installs | today | |
| review-contractanthropics/knowledge-work-plugins | clean | Code review | 3,017 installs | today | |
| backport-prvercel/next.js | clean | Code review | 142k stars | today | |
| create-prvercel/next.js | clean | Code review | 142k stars | today |
Put this measurement in your README
A badge carrying how many listings this index holds from the repository and how many pass every static structural check. It reads from this index every time somebody loads your page, so it changes when the measurement changes and there is nothing to keep up to date. Free, no account, and the value is not something you or we can set by hand.
[](https://skillworks.kynth.studio/?q=priyank766%2FOpenSource-SKILL)Would rather not hotlink us? Every badge is also served in shields.io’s endpoint schema, so shields renders the image and your readers never talk to our domain:
Published by Toolproof, the masthead over this index and eight others. The method behind the number is at toolproof.kynth.studio/methodology, and the whole thing is readable as JSON with no key at /api.
