Static Application Security Testing · seb1n/awesome-ai-agent-skills

Scan source code for security vulnerabilities

Runs static analysis tools like Semgrep, CodeQL, and Bandit across a codebase to find issues such as SQL injection, XSS, hardcoded secrets, and insecure deserialization, then triages findings and suggests fixes for code review or CI pipelines.

Good for

  • Detect SQL injection and XSS vulnerabilities
  • Find hardcoded secrets and credentials in code
  • Set up automated security scanning in CI/CD
Category
Coding

Open-source skills are maintained by their authors and listed as published, with attribution. Results depend on how well the skill fits your task and material.

A good place to start

Run a static security scan on this repository and report critical vulnerabilities with suggested fixes.

Make your next great thing.

Bring a question, a file, or an idea that’s not quite there yet.