Agent skill

Expert Security

by ReJeCtAll in ReJeCtAll/ExpertTeam-Codex

安全专家入口。用于 Codex CLI 的 $expert-security 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex.

MITAuto-check passedSecurity

Install Expert Security

skills CLI
$ npx skills add ReJeCtAll/ExpertTeam-Codex --skill expert-security -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ReJeCtAll/ExpertTeam-Codex expert-security --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ReJeCtAll/ExpertTeam-Codex.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.codex/skills/expert-security .claude/skills/expert-security && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
expert-security
GitHub stars
113
Token cost
~780 tokens
SKILL.md length
127 words
Files
2
Skills in repo
12
Repo updated
First seen
Licence
MIT

At a glance

安全专家入口。用于 Codex CLI 的 $expert-security 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex.

  • Works in 7 steps: 明确范围与授权:确认目标系统、代码库、业务场景、授权边界、敏感数据范围和交付形式。 → 建立事实基线:读取代码、依赖、配置、架构、日志、运行环境和现有安全控制;缺少证据时… → 划定攻击面:识别资产、入口、身份流、数据流、信任边界、第三方依赖和部署边界。 → …
  • Tasks that involve Privacy and GDPR
  • SKILL.md covers 定位, Codex CLI 调用方式, Agent and 参数化路由, plus 4 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Expert Security is an agent skill from ReJeCtAll/ExpertTeam-Codex. 安全专家入口。用于 Codex CLI 的 $expert-security 调用。 适用于威胁建模、漏洞评估、安全代码审查、安全架构设计、DevSecOps、安全运营、事件响应、合规审计和完整安全健康评估。 触发词:安全专家、威胁建模、STRIDE、OWASP、SAST、DAST、SBOM、漏洞评估、代码审计、事件响应、合规审计、SOC、等保、GDPR、PIPL、隐私政策审查

Its SKILL.md is about 780 tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `agents/openai.yaml`).

It sits in Security, covering Privacy and GDPR, Web application vulnerabilities and Threat modeling. The repository describes itself as: 一套可直接安装到 ~/.codex 的专家配置,面向 Codex CLI / Codex App 桌面版的 Skill 调用方式 提供 3 个专家团、3 个单专家与 1 个总路由入口。 The licence is MIT.

When your agent uses it

  • Tasks that involve Privacy and GDPR
  • Tasks that involve Web application vulnerabilities
  • Tasks that involve Threat modeling

Example prompts

  • “/expert-security”

Workflow steps

7 steps, taken from the first numbered list in SKILL.md.

  1. 明确范围与授权:确认目标系统、代码库、业务场景、授权边界、敏感数据范围和交付形式。
  2. 建立事实基线:读取代码、依赖、配置、架构、日志、运行环境和现有安全控制;缺少证据时明确假设。
  3. 划定攻击面:识别资产、入口、身份流、数据流、信任边界、第三方依赖和部署边界。
  4. 执行专项分析:按参数选择威胁建模、漏洞评估、代码审计、架构审查、事件响应或合规映射。
  5. 排序与修复建议:按影响、可利用性、暴露面、检测难度和修复成本标记 Critical / High / Medium / Low / Info。
  6. 验证闭环:为每条建议提供验证命令、测试用例、检查项、监控指标或审计证据。
  7. 形成报告:输出结论、证据、行动项、风险接受建议和 7/30/90 天路线图。

What it can do on your machine

Read from SKILL.md and the folder at commit 59c573b. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Expert Security loads about 780 tokens when it runs. Until then it costs about 52 tokens; SKILL.md has 127 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~52
When it runs · the whole SKILL.md, loaded when a task matches
~780

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from ReJeCtAll/ExpertTeam-Codex at commit 59c573b, republished under its MIT licence (© ReJeCtAll). 127 words, ~780 tokens.

Download SKILL.mdSave it as .claude/skills/expert-security/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
expert-security
description
安全专家入口。用于 Codex CLI 的 $expert-security 调用。 适用于威胁建模、漏洞评估、安全代码审查、安全架构设计、DevSecOps、安全运营、事件响应、合规审计和完整安全健康评估。 触发词:安全专家、威胁建模、STRIDE、OWASP、SAST、DAST、SBOM、漏洞评估、代码审计、事件响应、合规审计、SOC、等保、GDPR、PIPL、隐私政策审查

Expert Security - 安全专家

你现在启动单专家模式的 安全专家,Agent ID 为 security-expert。

定位

面向产品、代码、架构和运营全链路的安全问题,输出可验证、可排序、可落地的安全结论。该入口专注应用安全、威胁建模、安全审计、事件响应和合规治理;基础设施变更落地由 $expert-ops 承接,代码修复由 $expert-software 承接。

Codex CLI 调用方式

text
$expert-security <security request>
$expert-security --protect <security architecture or preventive control request>
$expert-security --detect <vulnerability assessment or threat detection request>
$expert-security --ops <security operations or governance request>
$expert-security --audit <full security audit request>
$expert-security --threat <STRIDE threat modeling request>
$expert-security --incident <incident response planning request>
$expert-security --code-review <secure code review request>
$expert-security --compliance <compliance gap analysis request>
$expert-security --full <complete security health assessment>

注意:Codex CLI 当前使用 $skill-name 调用 Skill,不一定识别 /expert-security Slash Command。

Agent

如环境支持 Agents,优先读取并采用:

  • ~/.codex/agents/security-expert.md

如环境不支持独立 Agent 调度,则由当前会话按本 Skill 的规则执行。

参数化路由

  • --protect:安全防护方向,覆盖威胁建模、零信任、安全架构、DevSecOps、数据安全、IAM 和安全基线。
  • --detect:威胁检测方向,覆盖 OWASP Top 10、API 安全、容器安全、依赖漏洞、SBOM、代码审计、入侵检测、WAF 和 RASP。
  • --ops:安全运营方向,覆盖事件响应、根因分析、SOC 建设、漏洞管理生命周期、等保、SOC 2、ISO 27001、GDPR 和个人信息保护法。
  • --audit:对目标系统或代码库进行全面安全审计,输出结构化评估报告。
  • --threat:对系统、功能或数据流做 STRIDE 威胁建模,输出威胁矩阵和缓解措施。
  • --incident:制定事件响应预案,包含分类定级、升级路径、取证保全、恢复流程和复盘机制。
  • --code-review:对源代码进行安全代码审查,按 OWASP、CWE 和语言生态风险给出漏洞清单与修复建议。
  • --compliance:进行合规差距分析,覆盖等保 2.0、ISO 27001、SOC 2、GDPR、个人信息保护法或 PCI-DSS。
  • --full:完整安全健康评估,覆盖防护、检测、运营、代码、架构和合规。

当用户要求审查隐私政策、隐私协议或个人信息处理规则的 PIPL 合规性时,优先加载并使用 $privacy-policy-pipl-audit 的 18 维审查框架。

未提供参数时,根据用户意图选择单一方向;同时涉及三个及以上方向时使用完整安全健康评估。

执行流程

  1. 明确范围与授权:确认目标系统、代码库、业务场景、授权边界、敏感数据范围和交付形式。
  2. 建立事实基线:读取代码、依赖、配置、架构、日志、运行环境和现有安全控制;缺少证据时明确假设。
  3. 划定攻击面:识别资产、入口、身份流、数据流、信任边界、第三方依赖和部署边界。
  4. 执行专项分析:按参数选择威胁建模、漏洞评估、代码审计、架构审查、事件响应或合规映射。
  5. 排序与修复建议:按影响、可利用性、暴露面、检测难度和修复成本标记 Critical / High / Medium / Low / Info。
  6. 验证闭环:为每条建议提供验证命令、测试用例、检查项、监控指标或审计证据。
  7. 形成报告:输出结论、证据、行动项、风险接受建议和 7/30/90 天路线图。

安全边界

  • 默认只做授权范围内的分析;未经明确授权,不探测第三方系统,不绕过访问控制,不执行破坏性攻击。
  • 不直接修改生产代码或基础设施;需要修复时给出具体建议,并建议转交 $expert-software 或 $expert-ops。
  • 不编造漏洞、CVE、日志、指标或合规证据;无法验证时明确标注假设和证据缺口。
  • 合规结论只能描述控制项覆盖、证据质量和差距,不能仅凭清单宣称通过认证。
  • 真实凭证、Token、私钥、支付数据和个人敏感信息必须脱敏;示例配置使用占位变量。
  • 安全建议必须包含验证方式,否则视为未闭环建议。

交付要求

最终输出应包含:

  • TL;DR:核心结论、最高优先级风险和推荐下一步。
  • 评估范围:目标对象、技术栈、授权边界、方法和时间范围。
  • 发现摘要:严重等级、类别、问题、影响、状态和负责人建议。
  • 详细发现:位置、描述、影响、复现条件、修复建议、验证方式和参考标准。
  • 整体评分:安全成熟度 A/B/C/D/F 及评分依据。
  • 行动项:P0/P1/P2、预计工时、依赖、风险接受条件和验证方式。
  • 路线图:适用时给出 7/30/90 天安全改进计划。

协作边界

  • 需要修复业务代码、补测试或改应用架构时,转交 $expert-software。
  • 需要落地基础设施安全基线、云权限、WAF、SIEM、备份或生产变更时,转交 $expert-ops。
  • 需要将隐私、安全或合规要求前置到产品需求时,转交 $expert-product。
  • 需要安全控制台、审计报表或运营大屏设计时,转交 $expert-design。

请使用与用户原始需求一致的语言输出。

© ReJeCtAll, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file in .codex/skills/expert-security of ReJeCtAll/ExpertTeam-Codex.

  • SKILL.md
  • agents/openai.yaml

Open the folder on GitHubat commit 59c573b

Compare with similar skills

Expert Security next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Expert Security compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Expert Security this skillReJeCtAll/ExpertTeam-Codex113—~780Automated safety check: PassMIT
Security and Hardeningaddyosmani/agent-skills103k1 repos~4.4kAutomated safety check: NotesMIT
Cyber NeoHainrixz/cyber-neo281—~5.9kAutomated safety check: WarnMIT
Vulnerability ScannerxenitV1/Antigravity-Workflows1307 repos~1.8kAutomated safety check: NotesMIT
Csono-session/pstack134—~12kAutomated safety check: NotesMIT
Golang Securityunxed/f42412 repos~3.6kAutomated safety check: PassMIT

Similar skills

  • Security and Hardening

    addyosmani/agent-skills

    Applies a threat-model-first approach to web code that handles untrusted input, authentication, data storage, dependencies or personal data.

    103k GitHub starsUsed in 1 repo~4.4k tokens
    SecurityAuto-check: notes
  • Cyber Neo

    Hainrixz/cyber-neo

    Comprehensive cybersecurity analysis for any local project. An agent skill from Hainrixz/cyber-neo.

    281 GitHub stars~5.9k tokensUpdated 2 mo ago
    SecurityAuto-check: warnings
  • Vulnerability Scanner

    xenitV1/Antigravity-Workflows

    Advanced vulnerability analysis principles. An agent skill from xenitV1/Antigravity-Workflows.

    130 GitHub starsUsed in 7 repos~1.8k tokens
    SecurityAuto-check: notes
  • Cso

    no-session/pstack

    Chief Security Officer mode. An agent skill from no-session/pstack.

    134 GitHub stars~12k tokensUpdated 6 mo ago
    SecurityAuto-check: notes
  • Security best practices and vulnerability prevention for Golang — injection (SQL, command, XSS), cryptography, path traversal, SSRF and HTTP security headers, cookies, secrets management, memory…

    241 GitHub starsUsed in 2 repos~3.6k tokens
    SecurityAuto-check passed
  • Securing AI Systems

    trilwu/secskills

    Assess and harden LLM applications and agentic systems against prompt injection, tool misuse, excessive agency, memory poisoning, RAG data leakage, and model supply-chain risk, mapped to the OWASP…

    156 GitHub stars~2.9k tokensUpdated 1 mo ago
    SecurityAuto-check passed

More from ReJeCtAll/ExpertTeam-Codex

All 12 skills in this repo
  • Product Playbook

    ReJeCtAll/ExpertTeam-Codex

    产品战略团队完整手册。覆盖需求文档撰写、路线图管理、竞品分析、用户研究综合、指标评审、Sprint规划、干系人沟通和产品头脑风暴全流程。当涉及任何产品管理相关的请求时自动触发。

    113 GitHub starsUsed in 1 repo~998 tokens
    Auto-check passed
  • Expert Database

    ReJeCtAll/ExpertTeam-Codex

    数据库优化专家入口。用于 Codex CLI 的 $expert-database 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex.

    113 GitHub stars~692 tokensUpdated 3 mo ago
    Auto-check passed
  • Expert Design

    ReJeCtAll/ExpertTeam-Codex

    设计原型专家团入口。用于 Codex CLI 的 $expert-design 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex.

    113 GitHub stars~441 tokensUpdated 3 mo ago
    Auto-check passed
  • Expert Ops

    ReJeCtAll/ExpertTeam-Codex

    基础设施运维专家入口。用于 Codex CLI 的 $expert-ops 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex.

    113 GitHub stars~625 tokensUpdated 3 mo ago
    Auto-check passed
  • Expert Product

    ReJeCtAll/ExpertTeam-Codex

    产品战略团队专家团入口。用于 Codex CLI 的 $expert-product 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex.

    113 GitHub stars~430 tokensUpdated 3 mo ago
    Auto-check passed
  • Expert Software

    ReJeCtAll/ExpertTeam-Codex

    软件开发团队专家团入口。用于 Codex CLI 的 $expert-software 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex.

    113 GitHub stars~467 tokensUpdated 3 mo ago
    Auto-check passed

Categories

Questions about Expert Security

What does Expert Security do?

安全专家入口。用于 Codex CLI 的 $expert-security 调用. An agent skill from ReJeCtAll/ExpertTeam-Codex. Expert Security is an agent skill from ReJeCtAll/ExpertTeam-Codex.

When should I use Expert Security?

Expert Security fits situations like: tasks that involve Privacy and GDPR; tasks that involve Web application vulnerabilities; tasks that involve Threat modeling.

How do I install Expert Security in Claude Code?

Run `npx skills add ReJeCtAll/ExpertTeam-Codex --skill expert-security -a claude-code`. Or copy the skill folder (.codex/skills/expert-security in ReJeCtAll/ExpertTeam-Codex) into .claude/skills/expert-security in your project. Claude Code loads it when a task matches its description.

How do I install Expert Security in Codex?

Run `npx skills add ReJeCtAll/ExpertTeam-Codex --skill expert-security -a codex`. Or copy the skill folder (.codex/skills/expert-security in ReJeCtAll/ExpertTeam-Codex) into .agents/skills/expert-security in your project. Codex loads it when a task matches its description.

Can I use Expert Security in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ReJeCtAll/ExpertTeam-Codex --skill expert-security -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/expert-security, .gemini/skills/expert-security, .github/skills/expert-security and .opencode/skills/expert-security in your project.

What does Expert Security need to run?

SKILL.md names no scripts, command-line tools or credentials: Expert Security is instructions for the agent only.

Does Expert Security access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Expert Security safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Expert Security use?

Expert Security is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Expert Security use?

About 780 tokens (SKILL.md is roughly 3.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Expert Security?

Skills that share tags, products or a category with Expert Security: Security and Hardening (addyosmani/agent-skills, 103k stars), Cyber Neo (Hainrixz/cyber-neo, 281 stars), Vulnerability Scanner (xenitV1/Antigravity-Workflows, 130 stars) and Cso (no-session/pstack, 134 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Expert Security?

ReJeCtAll (a GitHub user) maintains it in ReJeCtAll/ExpertTeam-Codex, which has 113 GitHub stars. The repository holds 12 skills in this directory. The repository was last updated on July 8, 2026.

Source: ReJeCtAll/ExpertTeam-Codex on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.