Agent skill

Backend Security Coder

by aiskillstore in aiskillstore/marketplace

Expert in secure backend coding practices specializing in input validation, authentication, and API security.

No licenceAuto-check passedDevelopment

Install Backend Security Coder

skills CLI
$ npx skills add aiskillstore/marketplace --skill backend-security-coder -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install aiskillstore/marketplace backend-security-coder --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/aiskillstore/marketplace.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/sickn33/backend-security-coder .claude/skills/backend-security-coder && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
backend-security-coder
GitHub stars
430
Used in
6 other repos
Token cost
~2.6k tokens
SKILL.md length
1,113 words
Files
2
Skills in repo
1,085
Repo updated
First seen
Licence
None found

At a glance

Expert in secure backend coding practices specializing in input validation, authentication, and API security.

  • Works in 9 steps: Assess security requirements including… → Implement input validation with… → Configure secure authentication with… → …
  • Tasks that involve Code review
  • SKILL.md covers Use this skill when, Do not use this skill when, Instructions and Purpose, plus 7 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Backend Security Coder is an agent skill from aiskillstore/marketplace. Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security implementations or security code reviews.

Its SKILL.md is about 2.6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 1 other file (for example `skill-report.json`).

It sits in Development, covering Code review, Authentication and Secure coding. The repository describes itself as: Security-audited skills for Claude, Codex & Claude Code. One-click install, quality verified.

When your agent uses it

  • Tasks that involve Code review
  • Tasks that involve Authentication
  • Tasks that involve Secure coding

Example prompts

  • “/backend-security-coder”

Requirements

  • Docker

Workflow steps

9 steps, taken from the first numbered list in SKILL.md.

  1. Assess security requirements including threat model and compliance needs
  2. Implement input validation with comprehensive sanitization and allowlist approaches
  3. Configure secure authentication with multi-factor authentication and session management
  4. Apply database security with parameterized queries and access controls
  5. Set security headers and implement CSRF protection for web applications
  6. Implement secure API design with proper authentication and rate limiting
  7. Configure secure external requests with allowlists and validation
  8. Set up security logging and monitoring for threat detection
  9. Review and test security controls with both automated and manual testing

What it can do on your machine

Read from SKILL.md and the folder at commit 4ac52da. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Backend Security Coder loads about 2.6k tokens when it runs. Until then it costs about 53 tokens; SKILL.md has 1,113 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~53
When it runs · the whole SKILL.md, loaded when a task matches
~2.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 1,113 words (~2,551 tokens).

“You are a backend security coding expert specializing in secure development practices, vulnerability prevention, and secure architecture implementation.”

— opening of SKILL.md by aiskillstore
name
backend-security-coder
risk
critical
source
community
date_added
2026-02-27

Read the full SKILL.md on GitHub

Files

SKILL.md and 1 other file in skills/sickn33/backend-security-coder of aiskillstore/marketplace.

  • SKILL.md
  • skill-report.json

Open the folder on GitHubat commit 4ac52da

Used in 6 other repositories

We found 21 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 6 other GitHub owners. This page covers the copy in aiskillstore/marketplace, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Backend Security Coder next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Backend Security Coder compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Backend Security Coder this skillaiskillstore/marketplace4306 repos~2.6kAutomated safety check: PassNone
Thorough Code Reviewpretend1111/claude-desktop-app4941 repos~502Automated safety check: PassCustom licence
WordPress Code GuardamElnagdy/guard-skills1.3k—~2.4kAutomated safety check: PassMIT
ReviewdogAgentSecOps/SecOpsAgentKit2191 repos~3kAutomated safety check: PassCustom licence
ONNX Runtime Shape Inference Safety Auditmicrosoft/onnxruntime22k—~3.3kAutomated safety check: PassMIT
Security Review ChecklistZeroDeng01/sublinkPro1.7k—~2.3kAutomated safety check: PassMIT

Similar skills

  • Thorough Code Review

    pretend1111/claude-desktop-app

    Reviews code or recent changes for bugs, security issues, performance problems and maintainability, reporting findings by severity with the reason and a fix.

    494 GitHub starsUsed in 1 repo~502 tokens
    DevelopmentAuto-check passed
  • WordPress Code Guard

    amElnagdy/guard-skills

    Reviews WordPress plugin, theme and block code after an agent writes or edits it, catching missing escaping, nonces, capability checks and unprepared queries.

    1.3k GitHub stars~2.4k tokensUpdated 3 mo ago
    DevelopmentAuto-check passed
  • Reviewdog

    AgentSecOps/SecOpsAgentKit

    Automated code review and security linting integration for CI/CD pipelines using reviewdog.

    219 GitHub starsUsed in 1 repo~3k tokens
    DevelopmentAuto-check passed
  • Official

    Finds and fixes out-of-range output writes in ONNX Runtime operator shape-inference functions where a getNumOutputs guard admits too few outputs.

    22k GitHub stars~3.3k tokensUpdated yesterday
    SecurityAuto-check passed
  • Security Review Checklist

    ZeroDeng01/sublinkPro

    Checklist-driven security review for changes to authentication, authorization, MFA, secrets, input validation and other security-critical code.

    1.7k GitHub stars~2.3k tokensUpdated 3 days ago
    SecurityAuto-check passed
  • Code Review

    coderabbitai/skills

    Run CodeRabbit CLI reviews, retrieve saved local or GitHub PR fix prompts, and interpret CodeRabbit authentication and review output.

    188 GitHub stars~1.9k tokensUpdated today
    DevelopmentAuto-check passed

More from aiskillstore/marketplace

All 1,085 skills in this repo
  • Code Stats

    aiskillstore/marketplace

    Analyze codebase with tokei (fast line counts by language) and difft (semantic AST-aware diffs).

    430 GitHub starsUsed in 2 repos~697 tokens
    Auto-check: notes
  • Data Processing

    aiskillstore/marketplace

    Process JSON with jq and YAML/TOML with yq. An agent skill from aiskillstore/marketplace.

    430 GitHub starsUsed in 1 repo~720 tokens
    Auto-check: notes
  • Doc Scanner

    aiskillstore/marketplace

    Scans for project documentation files (AGENTS.md, CLAUDE.md, GEMINI.md, COPILOT.md, CURSOR.md, WARP.md, and 15+ other formats) and synthesizes guidance.

    430 GitHub starsUsed in 1 repo~644 tokens
    Auto-check: notes
  • File Search

    aiskillstore/marketplace

    Modern file and content search using fd, ripgrep (rg), and fzf.

    430 GitHub starsUsed in 1 repo~598 tokens
    Auto-check: notes
  • Find Replace

    aiskillstore/marketplace

    Modern find-and-replace using sd (simpler than sed) and batch replacement patterns.

    430 GitHub starsUsed in 1 repo~527 tokens
    Auto-check: notes
  • Investigating Codebases

    aiskillstore/marketplace

    Automatically activated when user asks how something works, wants to understand unfamiliar code, needs to explore a new codebase, or asks questions like "where is X implemented?", "how does Y…

    430 GitHub starsUsed in 1 repo~2.7k tokens
    Auto-check: notes

Questions about Backend Security Coder

What does Backend Security Coder do?

Expert in secure backend coding practices specializing in input validation, authentication, and API security. Backend Security Coder is an agent skill from aiskillstore/marketplace. Expert in secure backend coding practices specializing in input validation, authentication, and API security.

When should I use Backend Security Coder?

Backend Security Coder fits situations like: tasks that involve Code review; tasks that involve Authentication; tasks that involve Secure coding.

How do I install Backend Security Coder in Claude Code?

Run `npx skills add aiskillstore/marketplace --skill backend-security-coder -a claude-code`. Or copy the skill folder (skills/sickn33/backend-security-coder in aiskillstore/marketplace) into .claude/skills/backend-security-coder in your project. Claude Code loads it when a task matches its description.

How do I install Backend Security Coder in Codex?

Run `npx skills add aiskillstore/marketplace --skill backend-security-coder -a codex`. Or copy the skill folder (skills/sickn33/backend-security-coder in aiskillstore/marketplace) into .agents/skills/backend-security-coder in your project. Codex loads it when a task matches its description.

Can I use Backend Security Coder in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add aiskillstore/marketplace --skill backend-security-coder -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/backend-security-coder, .gemini/skills/backend-security-coder, .github/skills/backend-security-coder and .opencode/skills/backend-security-coder in your project.

What does Backend Security Coder need to run?

SKILL.md names no scripts, command-line tools or credentials: Backend Security Coder is instructions for the agent only. Our summary lists: Docker.

Does Backend Security Coder access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Backend Security Coder safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Backend Security Coder use?

No licence was found for Backend Security Coder or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Backend Security Coder use?

About 2.6k tokens (SKILL.md is roughly 10k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Backend Security Coder?

Skills that share tags, products or a category with Backend Security Coder: Thorough Code Review (pretend1111/claude-desktop-app, 494 stars), WordPress Code Guard (amElnagdy/guard-skills, 1.3k stars), Reviewdog (AgentSecOps/SecOpsAgentKit, 219 stars) and ONNX Runtime Shape Inference Safety Audit (microsoft/onnxruntime, 22k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Backend Security Coder?

aiskillstore (a GitHub organization) maintains it in aiskillstore/marketplace, which has 430 GitHub stars. The repository holds 1,085 skills in this directory. The repository was last updated on October 7, 2026.

Source: aiskillstore/marketplace on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.