BrowseFull catalogOutcomesSolve a specific problemRolesStack by teamTrustFilter by risk tier
← Back to the Claude Observatory

security-audit-skill

Skill Security Poor
Works inClaude Code
Poor Scanned — metadata only

Reduces security remediation cycles by identifying OWASP-class vulnerabilities in PHP codebases before they reach production.

Agent Skill for PHP security audits - OWASP patterns, vulnerability detection | Claude Code compatible

30 starsFreeQuick setup
Below standard — Significant caveats apply. Not recommended without careful review of the security and evaluation sections.

Reduces security remediation cycles by identifying OWASP-class vulnerabilities in PHP codebases before they reach production. Shifts vulnerability detection left, lowering breach risk and compliance audit friction.

PHP development teams and security engineers who need automated pre-deployment vulnerability scanning aligned with common compliance frameworks.

Claude Code Claude Cowork Claude Chat

https://github.com/netresearch/security-audit-skill

By netresearch

How to Get It

Option 1: Claude Desktop App (Code Mode)Click the + button next to the prompt box → PluginsAdd plugin. Search and click Install. Skills work in Claude Code only.
Option 2: Paste into Claude CodeCopy the command below and paste it into your conversation. Claude will install it.
Command
claude plugins install netresearch/security-audit-skill

Tip: Paste this into a Claude Code conversation. Verify command matches your Claude Code version.

Auto-generated from the tool's public listing — not hands-on verified. Cross-check against the source repo's README before running.

First thing to try

After installing, paste this into Claude:

Help me scan legacy PHP applications for SQL injection and XSS vulnerabilities
CostFree

Trust Signals Auto-scanned

Stars30Contributors4Last updated2026-07-25Known CVEsNone foundSources: GitHub Advisory Database + OSV.dev · Scanned 2026-07-25 · scanner v1

Community Pulse Growing

Discussed on Reddit

2 mentions across 1 sources

Reviewer notes

Auto-scanned review. These are observations, not a security certification.

Scored from trust signals (evidence-eval-v1): 30 GitHub stars; 4 contributors; last commit 0d ago; license no license.

Things to check

  • Scanned, not hands-on tested — this entry was auto-scanned from public metadata (GitHub metrics, license, security flags). No reviewer has run it, and no tool-specific limitations have been documented yet.

How to evaluate tools before deploying →

Data shown here comes from public APIs and automated scanning. Reviewer notes reflect one person's experience. This is not a security certification or legal recommendation. Always evaluate tools according to your own organization's policies.

Evaluation

Ease of Use
1/5
Versatility
2/5
Reliability
4/5
Security
4/5
Overall score2.45 / 5.00 PoorEvaluatedJul 2026
Scored from trust signals (evidence-eval-v1): 30 GitHub stars; 4 contributors; last commit 0d ago; license no license.

← Back to the Claude Observatory

Rolling Claude out in your org? Let's talk.

Start a conversation →