Test automate security vulnerability testing covering OWASP Top 10, SQL injection, XSS, CSRF, and authentication issues. Use when performing security assessments, penetration tests, or vulnerability scans. Trigger with phrases like "scan for vulnerabilities", "test security", or "run penetration test".
5.8
Rating
0
Installs
Security
Category
This security testing skill provides comprehensive guidance for vulnerability scanning with clear prerequisites, step-by-step instructions covering OWASP Top 10, SQL injection, XSS, and CSRF testing. The structure is mostly logical with good task knowledge including tool references and error handling. However, the skill suffers from redundant sections (multiple 'Overview' headings, duplicate content), and the novelty is limited since a CLI agent with bash access could invoke most security tools directly (ZAP, sqlmap, Burp Suite) without this wrapper. The description is adequate for invocation but could be more specific about what automation this skill adds beyond basic tool execution. The allowed-tools constraint (Bash(test:security-*)) suggests some scoping but the actual value-add over direct tool usage is unclear.
Loading SKILL.md…