Kesekit Check
cdppcorp/KESE-KIT
Run a pre-deployment security compliance checklist based on KISA guidelines.
Comprehensive developer workstation security audit — scans for exposed credentials, compromised application data, persistence mechanisms, and supply chain attack indicators.
The automated check flagged lines worth reading first. See the safety section below.
$ npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install sd0xdev/sd0x-harness dev-security-audit --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/sd0xdev/sd0x-harness.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/dev-security-audit .claude/skills/dev-security-audit && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "dev-security-audit" agent skill from https://github.com/sd0xdev/sd0x-harness/tree/main/skills/dev-security-audit into .claude/skills/dev-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "dev-security-audit", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/sd0xdev/sd0x-harness/tree/main/skills/dev-security-auditType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install sd0xdev/sd0x-harness dev-security-audit --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sd0xdev/sd0x-harness.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/dev-security-audit .agents/skills/dev-security-audit && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "dev-security-audit" agent skill from https://github.com/sd0xdev/sd0x-harness/tree/main/skills/dev-security-audit into .agents/skills/dev-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "dev-security-audit", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install sd0xdev/sd0x-harness dev-security-audit --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sd0xdev/sd0x-harness.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/dev-security-audit .cursor/skills/dev-security-audit && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "dev-security-audit" agent skill from https://github.com/sd0xdev/sd0x-harness/tree/main/skills/dev-security-audit into .cursor/skills/dev-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "dev-security-audit", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/sd0xdev/sd0x-harness.git --path skills/dev-security-audit--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install sd0xdev/sd0x-harness dev-security-audit --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sd0xdev/sd0x-harness.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/dev-security-audit .gemini/skills/dev-security-audit && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "dev-security-audit" agent skill from https://github.com/sd0xdev/sd0x-harness/tree/main/skills/dev-security-audit into .gemini/skills/dev-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "dev-security-audit", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install sd0xdev/sd0x-harness dev-security-auditInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/sd0xdev/sd0x-harness.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/dev-security-audit .github/skills/dev-security-audit && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "dev-security-audit" agent skill from https://github.com/sd0xdev/sd0x-harness/tree/main/skills/dev-security-audit into .github/skills/dev-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "dev-security-audit", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install sd0xdev/sd0x-harness dev-security-audit --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sd0xdev/sd0x-harness.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/dev-security-audit .opencode/skills/dev-security-audit && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "dev-security-audit" agent skill from https://github.com/sd0xdev/sd0x-harness/tree/main/skills/dev-security-audit into .opencode/skills/dev-security-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "dev-security-audit", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
dev-security-auditComprehensive developer workstation security audit — scans for exposed credentials, compromised application data, persistence mechanisms, and supply chain attack indicators.
Dev Security Audit is an agent skill from sd0xdev/sd0x-harness. Comprehensive developer workstation security audit — scans for exposed credentials, compromised application data, persistence mechanisms, and supply chain attack indicators. Use this skill whenever the user suspects their machine may be compromised, wants to check for exposed secrets, asks about supply chain attacks, or wants a full security audit of their development environment. Also triggers on: 'am I compromised', 'check my security', 'scan for leaked keys', 'credential audit', 'supply chain attack', 'supply…
Its SKILL.md is about 3.6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including reference files (for example `references/cases/README.md`, `references/cases/apifox-2026-03.md` and `references/cases/axios-2026-03.md`).
It sits in Security, covering Security review and Supply chain security. The repository describes itself as: The harness layer for Claude Code — a reference implementation of harness engineering with hook-enforced dual review, state-machine gates that survive context compaction, and… The licence is MIT.
5 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit c9a2036. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
awsdockerosascriptFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use aws and docker, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Dev Security Audit loads about 3.6k tokens when it runs, and up to ~14k if it reads all its reference files. Until then it costs about 144 tokens; SKILL.md has 1,195 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found patterns that need a careful read before installing.
- AWS (`~/.aws/credentials`, `~/.aws/config`)- Kubernetes (`~/.kube/config`, `~/.kube/custom-contexts/`)- Docker (`~/.docker/config.json`)- SSH keys (`~/.ssh/`)- npm (`~/.npmrc`)- GPG keys (`~/.gnupg/private-keys-v1.d/`)- `.env` files (`find ~ -maxdepth 5 \( -name ".env" -o -name ".env.*" \) 2>/dev/null | grep -v node_modules | grep -v .gto extract tokens from shell history and .env files:Browsers store Login Data, Cookies, and Local Storage accessible to user-space processes:Note: Chrome's Login Data is encrypted via macOS Keychain. Under RCE, the attacker could potentially decrypt it during aAutomated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from sd0xdev/sd0x-harness at commit c9a2036, republished under its MIT licence (© sd0xdev). 1,195 words, ~3,553 tokens.
.claude/skills/dev-security-audit/SKILL.md (or your agent's skills folder). This skill also uses 5 other files; get the full folder from GitHub.A systematic, multi-phase security audit for developer workstations. Checks for supply chain compromise indicators (via case-based IoC library at references/cases/), scans for exposed credentials across 20+ categories, and generates a prioritized remediation plan.
/codex-security or /security-review)/dep-audit)/codex-security)sequenceDiagram
participant U as User
participant C as Claude
participant S as System
C->>S: Phase 0: Supply Chain IoC Dispatch (case-driven)
C->>S: Phase 1: Credential & Secret Exposure Scan
C->>S: Phase 2: Application & Browser Data Scan
C->>S: Phase 3: Persistence & Backdoor Check
C->>U: Phase 4: Report Generation & Remediation PlanRun phases sequentially. Each phase produces findings that feed into the final report. Use the reference files for detailed scan targets and IoC lists.
Evidence preservation: Before any cleanup or deletion, always copy/archive artifacts for forensic analysis. Never destroy evidence before the report is generated.
Check for known supply chain compromises using the case library (references/cases/). This phase is conditional — it runs only when matching cases are found.
references/cases/README.md for active cases| Condition | Action |
|---|---|
| No matching case (product not installed) | Skip Phase 0, proceed to Phase 1 |
| Single match | Load case file, run detection + interpretation |
| Multiple matches | Iterate: execute each case sequentially |
For each matched case, report:
| Field | Description |
|---|---|
case_id | From case frontmatter (e.g., PRODUCT-YYYY-MM) |
status | COMPROMISED / INCONCLUSIVE / CLEAN / NOT_INSTALLED |
confidence | From case frontmatter + detection result |
If any case returns COMPROMISED, execute evidence preservation per case file instructions before proceeding.
Scan for ALL sensitive files an attacker with user-space read access could have exfiltrated. This scan reveals credential hygiene issues regardless of supply chain compromise status.
Read references/scan-targets.md for the complete list. Below is the execution strategy.
Run scans in parallel where possible (use subagents for independent categories). Group into 3 parallel tracks:
Track A — Cloud & Infrastructure Credentials:
~/.aws/credentials, ~/.aws/config)~/.config/gcloud/ — credentials.db, access_tokens.db, application_default_credentials.json)~/.azure/)~/.kube/config, ~/.kube/custom-contexts/)~/.terraform.d/credentials.tfrc.json)~/.docker/config.json)Track B — Development Tool Tokens:
~/.ssh/)~/.git-credentials, ~/.gitconfig)~/.config/gh/)~/.config/glab-cli/)~/.npmrc)~/.gnupg/private-keys-v1.d/)Track C — Application Secrets & History:
.env files (find ~ -maxdepth 5 \( -name ".env" -o -name ".env.*" \) 2>/dev/null | grep -v node_modules | grep -v .git)*.ovpn, WireGuard)| # | Rule | Description |
|---|---|---|
| 1 | Subagent parallel | Tracks A/B/C may run via subagents in parallel for speed |
| 2 | Unified output schema | All tracks emit: Category | Path | Severity | Redacted Sample | Action |
| 3 | Dedup by key | Merge results using (Path + Indicator Type + Token Prefix) as dedup key |
| 4 | Critical bubble-up | Critical/Critical+ findings surface immediately — do not wait for full scan |
Use these regex patterns to extract tokens from shell history and .env files:
OpenAI: sk-[a-zA-Z0-9_-]{20,}
Anthropic: sk-ant-[a-zA-Z0-9_-]{20,}
GitHub Classic: gh[posur]_[a-zA-Z0-9]{20,}
GitHub Fine-grain: github_pat_[a-zA-Z0-9_]{20,}
GitLab PAT: glpat-[a-zA-Z0-9_-]{20,}
AWS Access: AKIA[A-Z0-9]{16}
AWS Temp: ASIA[A-Z0-9]{16}
HuggingFace: hf_[a-zA-Z0-9]{20,}
npm: npm_[a-zA-Z0-9]{20,}
Docker Hub: dckr_pat_[a-zA-Z0-9_-]{20,}
Slack: xox[bsrp]-[a-zA-Z0-9-]{20,}
Stripe: [rs]k_live_[a-zA-Z0-9]{20,}
Firebase: AIza[a-zA-Z0-9_-]{30,}
JWT: eyJ[a-zA-Z0-9_-]+\.eyJ[a-zA-Z0-9_-]+\.[a-zA-Z0-9_-]+
Vercel: vercel_[a-zA-Z0-9_-]{20,}
Supabase: sbp_[a-zA-Z0-9]{20,}When displaying found tokens to the user, always partially redact them (show first 8 and last 4 chars) so they can identify which token it is without fully exposing it in conversation history.
Crypto wallets deserve special urgency — asset theft is irreversible:
| Wallet | Path | Key Storage |
|---|---|---|
| Solana CLI | ~/.config/solana/id.json | Plaintext 64-byte keypair |
| Electrum | ~/.electrum/wallets/ | Encrypted (but copyable for offline brute force) |
| OneKey | ~/Library/Application Support/@onekeyhq/desktop/ | Encrypted in LevelDB |
| Ledger Live | ~/Library/Application Support/Ledger Live/ | Hardware key (safe), but addresses exposed |
| Tonkeeper | ~/Library/Application Support/@tonkeeper/desktop/ | Check LevelDB |
For plaintext keys (Solana), immediately check balance via RPC. For encrypted wallets (Electrum), the wallet files could have been copied for offline cracking — advise transferring funds to a new wallet.
User-space RCE can read any application's local data. Electron apps are especially vulnerable because they store data in unencrypted LevelDB.
List all Electron apps by checking for LevelDB in Local Storage:
find ~/Library/Application\ Support/*/Local\ Storage/leveldb -maxdepth 0 2>/dev/nullHigh-priority Electron apps to check:
For each, run strings on the LevelDB files and grep for token, secret, password, auth, session. Always pipe through redaction before output: sed -E 's/(.{8}).{4,}(.{4})/\1****\2/g'. Never print raw secrets to conversation or report — redact at the pipeline level, not as an afterthought.
Browsers store Login Data, Cookies, and Local Storage accessible to user-space processes:
# Chrome profiles
ls ~/Library/Application\ Support/Google/Chrome/*/Login\ Data 2>/dev/null
# Firefox
ls ~/Library/Application\ Support/Firefox/Profiles/*/logins.json 2>/dev/null
# Arc
ls ~/Library/Application\ Support/Arc/*/Login\ Data 2>/dev/nullNote: Chrome's Login Data is encrypted via macOS Keychain. Under RCE, the attacker could potentially decrypt it during an active user session via the security CLI or Chrome DevTools Protocol.
ls ~/Library/Keychains/ 2>/dev/nullKeychain files are encrypted, but during an active session with RCE, the attacker could use security dump-keychain or security find-generic-password to extract individual items. This is a medium risk — it requires the keychain to be unlocked (which it usually is during a user session).
Check whether the attacker established any persistence mechanisms to survive application removal. Case-specific persistence indicators (e.g., known backdoor binaries) are checked in Phase 0 via case files.
# User LaunchAgents (most common persistence vector)
ls ~/Library/LaunchAgents/
# System LaunchDaemons (requires root, less likely for user-space attack)
ls /Library/LaunchDaemons/
# Non-Apple launchctl services
launchctl list | grep -v com.apple
# Cron jobs
crontab -l
# Login items
osascript -e 'tell application "System Events" to get the name of every login item' 2>/dev/nullcrontab -l
ls /etc/cron.d/
systemctl list-unit-files --type=service | grep -v disabledschtasks /query /fo LIST /v
sc query type=service state=all | findstr /v /i "Microsoft Windows"
reg query "HKCU\Software\Microsoft\Windows\CurrentVersion\Run"Scan common binary locations for unsigned or unexpected executables:
ls -la /usr/local/bin/ | head -30
# List executables modified within a suspected attack window
# Use dates from Phase 0 case match (attack_window.start/end) or user-provided window
WINDOW_START="${ATTACK_WINDOW_START:?Set ATTACK_WINDOW_START from Phase 0 case match}"
WINDOW_END="${ATTACK_WINDOW_END:?Set ATTACK_WINDOW_END from Phase 0 case match}"
find /usr/local/bin -type f -newermt "$WINDOW_START" ! -newermt "$WINDOW_END" 2>/dev/null | while read f; do
file "$f" 2>/dev/null | grep -q "executable" && echo "SUSPECT: $f ($(stat -f '%Sm' "$f" 2>/dev/null || stat -c '%y' "$f" 2>/dev/null))"
doneAfter all scans complete, generate a prioritized report and save to /tmp/.
Write the report to a secure temp file via mktemp. This keeps the report outside the repo (no accidental commit of sensitive findings) and accessible for the user to review, copy, or forward.
umask 077
REPORT_PATH="${TMPDIR:-/tmp}/security-audit-$(hostname -s)-$(date +%Y%m%d-%H%M%S).md"
touch "$REPORT_PATH" && chmod 600 "$REPORT_PATH"
# Write report content to $REPORT_PATH
echo "Report saved to: $REPORT_PATH"Example output: /tmp/security-audit-macbook-pro-20260325-143052.md
| Severity | Criteria | Examples |
|---|---|---|
| Critical+ | Immediate asset loss risk | Crypto wallet private keys, plaintext |
| Critical | Full account/infrastructure takeover | AWS keys, GCP refresh tokens, K8s admin tokens |
| High | Account access or data theft | Git tokens, npm tokens, API keys, VPN configs |
| Medium | Encrypted/protected but potentially exposed | Keychain, encrypted wallets, browser Login Data |
| Low | Information disclosure only | known_hosts, directory structure, git config |
# Security Audit Report
## Summary
- Scan date: YYYY-MM-DD
- Platform: macOS/Linux/Windows
- Supply Chain IoC: [per-case status from Phase 0, or "No active cases matched"]
- Total findings: N (N critical, N high, N medium, N low)
## Supply Chain Status
[Per-case results table: case_id | status | confidence]
## Critical Findings (Immediate Action Required)
| # | Category | Item | Path | Action |
## High Findings (Action Within 24h)
| # | Category | Item | Path | Action |
## Medium Findings (Evaluate & Monitor)
| # | Category | Item | Path | Action |
## Recommended Action Plan
### Tier 0 — Immediately (minutes)
### Tier 1 — Today (hours)
### Tier 2 — This Week
### Tier 3 — Contingency Triggers
## What Was NOT Found (Good News)
[List of categories that came back clean]| File | Purpose |
|---|---|
references/scan-targets.md | Complete list of file paths to scan per platform |
references/remediation.md | Detailed remediation procedures per category |
references/cases/ | Supply chain incident case library (IoC + detection + cleanup per case) |
© sd0xdev, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 5 other files (references) in skills/dev-security-audit of sd0xdev/sd0x-harness.
Open the folder on GitHubat commit c9a2036
Dev Security Audit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Dev Security Audit this skillsd0xdev/sd0x-harness | 192 | — | ~3.6k | Automated safety check: Warn | MIT | |
| Kesekit Checkcdppcorp/KESE-KIT | 359 | — | ~1.3k | Automated safety check: Pass | MIT | |
| EdgeOne ClawScanTencent/AI-Infra-Guard | 6.8k | — | ~9.5k | Automated safety check: Pass | MIT | |
| Security Reviewvalory-xyz/open-autonomy | 129 | — | ~11k | Automated safety check: Notes | Apache-2.0 | |
| Container Security Hardeningsickn33/agentic-awesome-skills | 47k | 1 repos | ~1k | Automated safety check: Notes | MIT | |
| Securitynotque/vexjoy-agent | 435 | — | ~2.6k | Automated safety check: Notes | MIT |
cdppcorp/KESE-KIT
Run a pre-deployment security compliance checklist based on KISA guidelines.
Tencent/AI-Infra-Guard
Runs a security health check on an OpenClaw environment and audits skills before or after installation for supply-chain and data-leak risks.
valory-xyz/open-autonomy
Security review of an open-autonomy agent service — cryptographic key handling, dynamic code execution, ABCI authentication and replay, secret exposure, dependency supply chain, and deployment…
sickn33/agentic-awesome-skills
Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernetes pod security controls.
notque/vexjoy-agent
Security: review git changes for vulnerabilities, threat-model a system's attack surface, audit supply-chain risks.
getsentry/skills
GitHub Actions security review for workflow exploitation vulnerabilities.
sd0xdev/sd0x-harness
Write an Architecture Decision Record (ADR) for a feature — Context / Decision / Status / Consequences / Alternatives, filed as docs/features/<feature/adr-<NNN-<title.md with a 3-digit zero-padded…
sd0xdev/sd0x-harness
Load GitHub PR review comments into AI session — analyze, triage, plan.
sd0xdev/sd0x-harness
Change-aware next step advisor. An agent skill from sd0xdev/sd0x-harness.
sd0xdev/sd0x-harness
Obsidian vault integration via official CLI. An agent skill from sd0xdev/sd0x-harness.
sd0xdev/sd0x-harness
Agent-driven workflow orchestration (v1 report-only). An agent skill from sd0xdev/sd0x-harness.
sd0xdev/sd0x-harness
Post friendly review comments to a GitHub PR — prepare locally, preview, then submit as atomic review.
Categories
Comprehensive developer workstation security audit — scans for exposed credentials, compromised application data, persistence mechanisms, and supply chain attack indicators. Dev Security Audit is an agent skill from sd0xdev/sd0x-harness. Comprehensive developer workstation security audit — scans for exposed credentials, compromised application data, persistence mechanisms, and supply chain attack indicators.
Dev Security Audit fits situations like: the user suspects their machine may be compromised; wants to check for exposed secrets; asks about supply chain attacks; wants a full security audit of their development environment.
Run `npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a claude-code`. Or copy the skill folder (skills/dev-security-audit in sd0xdev/sd0x-harness) into .claude/skills/dev-security-audit in your project. Claude Code loads it when a task matches its description.
Run `npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a codex`. Or copy the skill folder (skills/dev-security-audit in sd0xdev/sd0x-harness) into .agents/skills/dev-security-audit in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add sd0xdev/sd0x-harness --skill dev-security-audit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/dev-security-audit, .gemini/skills/dev-security-audit, .github/skills/dev-security-audit and .opencode/skills/dev-security-audit in your project.
Going by SKILL.md and its folder, Dev Security Audit needs the command-line tools its instructions call (aws, docker and osascript). Our summary lists: Docker.
SKILL.md contains no URLs. Its commands use docker, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md flagged 8 warning(s): mentions a credentials file (ssh keys, cloud or package-manager tokens). Read the flagged lines before installing; the check is not a guarantee either way.
Dev Security Audit is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 3.6k tokens (SKILL.md is roughly 14k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 10k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Dev Security Audit: Kesekit Check (cdppcorp/KESE-KIT, 359 stars), EdgeOne ClawScan (Tencent/AI-Infra-Guard, 6.8k stars), Security Review (valory-xyz/open-autonomy, 129 stars) and Container Security Hardening (sickn33/agentic-awesome-skills, 47k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
sd0xdev (a GitHub user) maintains it in sd0xdev/sd0x-harness, which has 192 GitHub stars. The repository holds 91 skills in this directory. The repository was last updated on October 6, 2026.
Source: sd0xdev/sd0x-harness on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.