Security risk review
Skill ligyDt/ai-ide-init-template/cursor/.cursor/skills/security-risk-review
面向 Codex、Cursor、CodeBuddy、TRAE 的中文 AI IDE 项目初始化模板,内置多角色协作、Skills、MCP、Hooks 与安全验证。
npx -y skills add ligyDt/ai-ide-init-template --skill security-risk-reviewAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
One thing to look at
- 3 stars3 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.
What its author says it does
Copied from the file, not written here
审查凭据、隐私、外部访问、真实数据、支付、发布和生产操作风险。用于任何高风险外部动作之前。
SKILL.md
0.5 KB, 131 tokens by cl100k_base, as published. Nobody here has run it
安全风险审查
列出资产、数据类别、信任边界、主体、环境和权限范围,检查凭据保存、最小权限、审计、脱敏、保留和撤销能力。真实数据、生产读写、支付、账号自动化和不可逆外部写入都必须明确批准。输出风险、控制措施、证据要求与阻断结论。
What ships with it
Read from the repository
Just SKILL.md. No reference files, no scripts.