Deepsec Documentation Guide
vercel-labs/deepsec
Points the agent at deepsec's own docs to answer questions about initializing, configuring, resuming, scanning with and extending the vulnerability scanner.
Repository または subsystem を対象に、source-only で明示的なセキュリティ監査を行う entry skill。
$ npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install hashgraph-online/awesome-codex-plugins river-review-security-audit --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/hashgraph-online/awesome-codex-plugins.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit .claude/skills/river-review-security-audit && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "river-review-security-audit" agent skill from https://github.com/hashgraph-online/awesome-codex-plugins/tree/main/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit into .claude/skills/river-review-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "river-review-security-audit", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/hashgraph-online/awesome-codex-plugins/tree/main/plugins/s977043/river-review/skills/agent-skills/river-review-security-auditType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install hashgraph-online/awesome-codex-plugins river-review-security-audit --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hashgraph-online/awesome-codex-plugins.git skills-src && mkdir -p .agents/skills && cp -r skills-src/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit .agents/skills/river-review-security-audit && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "river-review-security-audit" agent skill from https://github.com/hashgraph-online/awesome-codex-plugins/tree/main/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit into .agents/skills/river-review-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "river-review-security-audit", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install hashgraph-online/awesome-codex-plugins river-review-security-audit --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hashgraph-online/awesome-codex-plugins.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit .cursor/skills/river-review-security-audit && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "river-review-security-audit" agent skill from https://github.com/hashgraph-online/awesome-codex-plugins/tree/main/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit into .cursor/skills/river-review-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "river-review-security-audit", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/hashgraph-online/awesome-codex-plugins.git --path plugins/s977043/river-review/skills/agent-skills/river-review-security-audit--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install hashgraph-online/awesome-codex-plugins river-review-security-audit --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hashgraph-online/awesome-codex-plugins.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit .gemini/skills/river-review-security-audit && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "river-review-security-audit" agent skill from https://github.com/hashgraph-online/awesome-codex-plugins/tree/main/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit into .gemini/skills/river-review-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "river-review-security-audit", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install hashgraph-online/awesome-codex-plugins river-review-security-auditInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/hashgraph-online/awesome-codex-plugins.git skills-src && mkdir -p .github/skills && cp -r skills-src/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit .github/skills/river-review-security-audit && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "river-review-security-audit" agent skill from https://github.com/hashgraph-online/awesome-codex-plugins/tree/main/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit into .github/skills/river-review-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "river-review-security-audit", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install hashgraph-online/awesome-codex-plugins river-review-security-audit --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hashgraph-online/awesome-codex-plugins.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit .opencode/skills/river-review-security-audit && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "river-review-security-audit" agent skill from https://github.com/hashgraph-online/awesome-codex-plugins/tree/main/plugins/s977043/river-review/skills/agent-skills/river-review-security-audit into .opencode/skills/river-review-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "river-review-security-audit", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
river-review-security-auditRepository または subsystem を対象に、source-only で明示的なセキュリティ監査を行う entry skill。
River Review Security Audit is an agent skill from hashgraph-online/awesome-codex-plugins. Repository または subsystem を対象に、source-only で明示的なセキュリティ監査を行う entry skill。 通常の PR セキュリティレビューとは分離し、reconnaissance、scope 固定、既存 security skill への委譲、 evidence と unresolved hypothesis、observe-only SecurityAuditCoverage、coverage critic、 structured audit artifact と repeat-run coverage を扱う。target-controlled code は実行しない。
Its SKILL.md is about 4.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/attack-classes.json`).
It sits in Security, covering Security review. The repository describes itself as: A curated list of awesome OpenAI Codex / ChatGPT plugins, skills, and resources. The 1 Codex Marketplace. See live plugins at: https://hol.org/plugins/best-codex-plugins. The licence is MIT.
12 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 3e1456a. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md.
From the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
github.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
River Review Security Audit loads about 4.2k tokens when it runs, and up to ~6.9k if it reads all its reference files. Until then it costs about 85 tokens; SKILL.md has 1,740 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from hashgraph-online/awesome-codex-plugins at commit 3e1456a, republished under its MIT licence (© hashgraph-online). 1,740 words, ~4,172 tokens.
.claude/skills/river-review-security-audit/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.Inspired by Cloudflare's security-audit-skill, but implemented as a River Review-native entry skill rather than a vendored audit engine.
This skill is the explicit entry point for repository or subsystem security audit work.
It does not replace river-review-security, the normal diff-oriented security review entry.
Use this skill only when the user explicitly asks for a security audit beyond an ordinary PR review. Typical requests include repository-wide security audit, subsystem security audit, security assessment, or a bounded source review of a security-sensitive surface.
Do not select this skill for a generic request such as "review this PR for security".
Route that request to river-review-security.
Select exactly one mode before reviewing.
guidance: use when the user wants methodology, planning, or an audit approach. Explain the method and constraints. Do not claim that audit work was executed.focused: use when the user names a bounded subsystem, path, component, or security surface. Freeze that scope and review only source evidence inside the boundary.full-audit: use only when the user explicitly requests repository-wide audit coverage. Perform repository reconnaissance and source review across the repository. Semantic coverage is observe-only and never a safety guarantee.If the request does not clearly justify full-audit, use focused or guidance.
Version 0.5.0 is source-only.
Allowed evidence collection:
Prohibited execution:
If runtime evidence is required but safe execution is unavailable, keep the hypothesis unresolved. Record the blocker and the minimum validation plan instead of executing target-controlled code.
This skill performs entry-level audit coordination only. It must reuse existing River Review capabilities instead of creating a second workflow engine.
Explicit audit request
-> mode selection
-> scope freeze
-> source reconnaissance
-> attack-class planning
-> existing security skills
-> candidate findings / unresolved hypotheses
-> existing finding verification path when available
-> observe-only SecurityAuditCoverage ledger
-> unknown-coverage-review (security-audit profile)
-> repeat-run coverage reconciliation (when a prior run exists)
-> structured audit artifact set
-> audit summaryThe following responsibilities remain outside this skill:
river-review-securityfinding-critic.mjsState the selected mode and the audit boundary before collecting findings.
For focused, name the bounded path, subsystem, component, or trust boundary.
For full-audit, state that the scope is repository-wide and source-only.
Do not silently broaden a focused audit into a repository-wide audit.
Build a compact source map before hunting for issues. At minimum identify, when present:
Reconnaissance is an investigation plan, not proof of safety.
Use references/attack-classes.json as the taxonomy SSoT for audit planning.
Select only classes supported by reconnaissance evidence; do not run all classes mechanically.
For every applicable class, preserve the registry evidence contract:
principal
-> input or action
-> control or missing control
-> trust boundary
-> affected resource or principal
-> concrete security outcomeAn attack class is an investigation hypothesis, not a checklist completion badge. A class with zero findings is not automatically covered, and a non-applicable class must be explained rather than silently omitted.
Use existing River Review skills when their domain applies.
security-basic: application security patterns such as injection, unsafe sinks, secrets, validation, and common application risks.security-privacy-design: privacy and sensitive-data design such as retention, deletion, encryption, residency, and privacy rights.trust-boundaries-authz: trust boundaries and authorization responsibilities, claims propagation, and tenant boundaries.river-review-security: ordinary changed-code security review. Use only when the task is actually diff-oriented rather than an audit.adversarial-review: optional complementary attack-path exploration. It is not a finding verifier.Do not duplicate the guidance of these skills inside this entry skill.
Every reported candidate must identify concrete source evidence. Require enough information to answer:
principal
-> input or action
-> control or missing control
-> trust boundary
-> affected resource or principal
-> concrete security outcomeA missing best practice is not automatically a vulnerability. A candidate without a concrete boundary failure or security outcome remains an open question or unresolved hypothesis.
This entry skill does not claim independent adversarial verification unless the existing #1978 path actually ran with an independent verifier.
If only source review ran, report the result as candidate-level evidence. Do not relabel reviewer agreement as correctness. Do not introduce a new validation enum in this skill.
For every unresolved hypothesis, provide:
Do not assign severity solely from an unresolved runtime assumption.
Use schemas/security-audit-coverage.schema.json and src/lib/security-audit-coverage.mjs as the semantic coverage contract.
The unit is:
subsystem × trustBoundary × attackClassIdUse only the closed unit state vocabulary:
planned | covered | blocked | deferred | out_of_scopeRules:
covered requires traceable reviewedPaths and structured evidenceRefs.relatedFindingIds is traceability only and never determines coverage state.blocked and deferred require an explanation plus a concrete validation plan.out_of_scope requires an explicit reason and explanation.covered.covered.openUnitIds, not a security-complete verdict.Do not merge this ledger with #2212 ReviewCoverage.
The Phase 3 schema/runtime validator owns shape, taxonomy, duplicate, and summary invariants.
Before finalizing a focused or full-audit report, invoke unknown-coverage-review with its explicit security-audit profile.
Use:
SecurityAuditCoverage ledgerThe critic evaluates evidence sufficiency only. It checks for:
covered claims whose evidence does not support the claimed scopeDo not use the critic to re-run Phase 3 deterministic validation. Do not require every attack class mechanically. Do not convert critic output into a vulnerability verdict. Do not wire critic output into deterministic Gate behavior in Phase 4.
If the audit context or coverage ledger is missing, do not guess. Record that the critic could not run and keep the limitation explicit.
When a prior audit run of the same target exists, reconcile before reporting.
Use src/lib/security-audit-repeat-run.mjs.
prior covered != current safe. A prior covered unit is carried over only when the source it
reviewed is byte-identical to the source in front of you now. Supply the current
path -> content digest map; any path whose digest is missing, changed, or replaced returns the unit
to planned and appears in revalidationRequired.
Validate the prior record before trusting it. A prior run's coverage is untrusted input: check it
against schemas/security-audit-coverage.schema.json and
validateSecurityAuditCoverageSemantics from src/lib/security-audit-coverage.mjs before feeding it
to reconciliation. A covered unit with no reviewedPaths is invalid, not a free carry-over.
Rules:
blocked, deferred, or out_of_scope unit through carry-overFor focused and full-audit runs, build the machine-readable record with
src/lib/security-audit-report.mjs and emit .river/security-audit/:
run-metadata.json
architecture.md
audit-coverage.json
candidates.json
findings.json
REPORT.md
NEEDS-VALIDATION.mdThe record is the SSoT. REPORT.md and NEEDS-VALIDATION.md are projections of it.
Validate before emitting. The generated record must pass
schemas/security-audit-run-record.schema.json, and its embedded coverage must pass both
schemas/security-audit-coverage.schema.json and validateSecurityAuditCoverageSemantics.
A coverage block whose counters disagree with its own units must never be recorded as the SSoT.
Rules:
executionPolicy: source-only.river/A full-audit run means repository-wide source investigation was attempted.
It does not mean all security attack classes were proven safe.
Never translate coverage counters, an empty openUnitIds, zero findings, or a critic pass into secure, safe, no vulnerabilities, or an equivalent guarantee.
Start with this header:
Audit mode: guidance | focused | full-audit
Execution policy: source-only
Scope: <repository | subsystem | path | trust boundary>
SecurityAuditCoverage: observe-onlyThen emit these sections:
unknown-coverage-review security-audit profile; omit only when the profile correctly returns NO_REVIEW and explain why..river/security-audit/ paths written for this run, plus the repeat-run carry-over and revalidation counts when a prior run existed. Omit this section for guidance mode.For findings, preserve the existing River Review finding shape where possible:
<file>:<line>: <Finding>
Evidence: <source-backed evidence>
Impact: <concrete security outcome>
Fix: <minimum next action>
Severity: <existing River Review severity when established by evidence>
Confidence: <confidence>
Skill: <originating skill id>Coverage critic observations use the existing Unknown Coverage residual-risk vocabulary rather than inventing a security-specific verdict schema.
0 findings == safe inference.full-audit == complete coverage inference.openUnitIds == safe inference.pass == safe inference.unknown-coverage-review routing change to enable this profile.river-review-security
= normal diff-oriented security review
river-review-security-audit
= explicit repository or subsystem source-only security auditWhen both phrases appear, prefer this audit skill only if the user explicitly asks for an audit scope beyond the current diff.
The unknown-coverage-review security-audit profile is reachable only from this explicit audit flow; normal PR review keeps the existing generic profile behavior.
docs/adr/010-security-audit-harness-integration.mddocs/development/2267-phase0-gap-analysis.mddocs/development/2267-phase3-security-audit-coverage.mddocs/development/2267-phase9-structured-reporting.mdschemas/security-audit-coverage.schema.jsonschemas/security-audit-run-record.schema.jsonsrc/lib/security-audit-coverage.mjssrc/lib/security-audit-report.mjssrc/lib/security-audit-repeat-run.mjsskills/agent-skills/river-review-security-audit/references/attack-classes.jsonskills/agent-skills/unknown-coverage-review/SKILL.mdskills/agent-skills/unknown-coverage-review/references/SECURITY-AUDIT-PROFILE.mdskills/agent-skills/river-review-security/SKILL.mdskills/agent-skills/adversarial-review/SKILL.mdskills/midstream/security-basic/SKILL.mdskills/upstream/security-privacy-design/SKILL.mdskills/upstream/trust-boundaries-authz/SKILL.md© hashgraph-online, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file (references) in plugins/s977043/river-review/skills/agent-skills/river-review-security-audit of hashgraph-online/awesome-codex-plugins.
Open the folder on GitHubat commit 3e1456a
River Review Security Audit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| River Review Security Audit this skillhashgraph-online/awesome-codex-plugins | 1.3k | — | ~4.2k | Automated safety check: Pass | MIT | |
| Deepsec Documentation Guidevercel-labs/deepsec | 8.1k | — | ~956 | Automated safety check: Pass | Apache-2.0 | |
| Kubernetes Network Security Auditkubeshark/kubeshark | 12k | — | ~7.3k | Automated safety check: Notes | Apache-2.0 | |
| Native Dependency Updatemono/SkiaSharp | 5.6k | — | ~4.1k | Automated safety check: Pass | MIT | |
| Semgrep Security Scantrailofbits/skills | 7.5k | — | ~3.7k | Automated safety check: Notes | CC-BY-SA-4.0 | |
| Skillward AuditFangcun-AI/SkillWard | 143 | — | ~2.9k | Automated safety check: Pass | Custom licence |
vercel-labs/deepsec
Points the agent at deepsec's own docs to answer questions about initializing, configuring, resuming, scanning with and extending the vulnerability scanner.
kubeshark/kubeshark
Hunts for compromised workloads and malicious traffic in a Kubernetes cluster by sweeping network data through Kubeshark MCP, mapped to MITRE ATT&CK.
mono/SkiaSharp
Update native dependencies (libpng, libexpat, zlib, libwebp, harfbuzz, freetype, libjpeg-turbo, etc.) in SkiaSharp's Skia fork.
trailofbits/skills
Detects languages, proposes rulesets for approval, then runs the approved Semgrep scan across a codebase and merges the output into one SARIF file.
Fangcun-AI/SkillWard
Security-audit a third-party skill bundle (folder with SKILL.md, or .zip / .tar.gz archive) before installing it, using the SkillWard cloud scanner.
TheDecipherist/claude-code-mastery
Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge.
hashgraph-online/awesome-codex-plugins
Create original anime-style reaction stickers as looping GIFs and MP4 previews, using generated character pose sheets and timed key poses.
hashgraph-online/awesome-codex-plugins
Manage and query Calibre libraries with the calibredb CLI (local paths or Calibre Content server URLs).
hashgraph-online/awesome-codex-plugins
A skill your agent uses when adding, changing, testing, or debugging Rust HTTP APIs and services, especially when Codex needs black-box integration tests, random-port app startup, real database test…
hashgraph-online/awesome-codex-plugins
Make a studio's game look like something at build time — a cover from a real frame of the game (free), painted covers, backdrops, textures and character plates from image models through the…
hashgraph-online/awesome-codex-plugins
Use CALL-E from Codex through the calle CLI. An agent skill from hashgraph-online/awesome-codex-plugins.
hashgraph-online/awesome-codex-plugins
Balance game difficulty, resources, rewards, probability, progression, economies, and dominant strategies.
Categories
Repository または subsystem を対象に、source-only で明示的なセキュリティ監査を行う entry skill。. River Review Security Audit is an agent skill from hashgraph-online/awesome-codex-plugins.
River Review Security Audit fits situations like: tasks that involve Security review.
Run `npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a claude-code`. Or copy the skill folder (plugins/s977043/river-review/skills/agent-skills/river-review-security-audit in hashgraph-online/awesome-codex-plugins) into .claude/skills/river-review-security-audit in your project. Claude Code loads it when a task matches its description.
Run `npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a codex`. Or copy the skill folder (plugins/s977043/river-review/skills/agent-skills/river-review-security-audit in hashgraph-online/awesome-codex-plugins) into .agents/skills/river-review-security-audit in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add hashgraph-online/awesome-codex-plugins --skill river-review-security-audit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/river-review-security-audit, .gemini/skills/river-review-security-audit, .github/skills/river-review-security-audit and .opencode/skills/river-review-security-audit in your project.
SKILL.md names no scripts, command-line tools or credentials: River Review Security Audit is instructions for the agent only.
SKILL.md names 1 domain. As links in the text: github.com. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
River Review Security Audit is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 4.2k tokens (SKILL.md is roughly 17k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 2.7k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with River Review Security Audit: Deepsec Documentation Guide (vercel-labs/deepsec, 8.1k stars), Kubernetes Network Security Audit (kubeshark/kubeshark, 12k stars), Native Dependency Update (mono/SkiaSharp, 5.6k stars) and Semgrep Security Scan (trailofbits/skills, 7.5k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
hashgraph-online (a GitHub organization) maintains it in hashgraph-online/awesome-codex-plugins, which has 1,267 GitHub stars. The repository holds 716 skills in this directory. The repository was last updated on October 10, 2026.
Source: hashgraph-online/awesome-codex-plugins on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.