security-audit-skill
Reduces security remediation cycles by identifying OWASP-class vulnerabilities in PHP codebases before they reach production.
Agent Skill for PHP security audits - OWASP patterns, vulnerability detection | Claude Code compatible
- Scan legacy PHP applications for SQL injection and XSS vulnerabilities
- Validate custom code against OWASP Top 10 patterns before merge
- Generate security audit reports for compliance checkpoints
Reduces security remediation cycles by identifying OWASP-class vulnerabilities in PHP codebases before they reach production. Shifts vulnerability detection left, lowering breach risk and compliance audit friction.
PHP development teams and security engineers who need automated pre-deployment vulnerability scanning aligned with common compliance frameworks.
https://github.com/netresearch/security-audit-skill
By netresearch
How to Get It
claude plugins install netresearch/security-audit-skill
Tip: Paste this into a Claude Code conversation. Verify command matches your Claude Code version.
Auto-generated from the tool's public listing — not hands-on verified. Cross-check against the source repo's README before running.
After installing, paste this into Claude:
Help me scan legacy PHP applications for SQL injection and XSS vulnerabilities
Trust Signals Auto-scanned
Community Pulse Growing
Discussed on Reddit
- I made an audit-website skill + tool to fix your vibe coded websites for seo, pe — Reddit · 22 pts
- Security Audit - Create a PROMPT that creates a SKILL that creates a PLAN — Reddit · 2 pts
2 mentions across 1 sources
Reviewer notes
Auto-scanned review. These are observations, not a security certification.
Scored from trust signals (evidence-eval-v1): 30 GitHub stars; 4 contributors; last commit 0d ago; license no license.
Things to check
- Scanned, not hands-on tested — this entry was auto-scanned from public metadata (GitHub metrics, license, security flags). No reviewer has run it, and no tool-specific limitations have been documented yet.
How to evaluate tools before deploying →
Data shown here comes from public APIs and automated scanning. Reviewer notes reflect one person's experience. This is not a security certification or legal recommendation. Always evaluate tools according to your own organization's policies.
Evaluation
Scored from trust signals (evidence-eval-v1): 30 GitHub stars; 4 contributors; last commit 0d ago; license no license.