Agent skill

Strix Code Vulnerability Scan

by usestrix in usestrix/strix

Runs a Strix white-box security review that reads the source, then exploits what it finds in a sandbox so each reported issue has a proof-of-concept.

Apache-2.0Auto-check passedSecurity

Install Strix Code Vulnerability Scan

skills CLI
$ npx skills add usestrix/strix --skill find-security-vulnerabilities-in-code -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install usestrix/strix find-security-vulnerabilities-in-code --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/usestrix/strix.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/find-security-vulnerabilities-in-code .claude/skills/find-security-vulnerabilities-in-code && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
find-security-vulnerabilities-in-code
GitHub stars
67k
Token cost
~1.1k tokens
SKILL.md length
409 words
Files
1
Skills in repo
4
Repo updated
First seen
Licence
Apache-2.0

At a glance

Runs a Strix white-box security review that reads the source, then exploits what it finds in a sandbox so each reported issue has a proof-of-concept.

  • Works in 2 steps: Add a running instance of the app. -t ./… → Scope the review. Point at the risky…
  • Security-reviewing a repository before a release
  • SKILL.md covers Run it, Reviewing a pull request…, Read the results and Complementary tooling, plus 1 more section
  • Reaches github.com

What it does

The agent uses the strix command to build a model of routes, sinks and authorization checks from the source and then attempts real exploitation, so the output is a short list of proven issues rather than a long list of potential pattern-matching hits. It covers injection, XSS, SSRF, broken access control and IDOR, insecure deserialization, secrets in code, unsafe dependencies and business-logic flaws.

A typical run points at the local working tree with a scan mode and a budget. Two things improve results: adding a running instance of the app as a second target, so exploitability is confirmed against live behavior (static-only findings should be called unconfirmed), and scoping the review to the risky subtree with an instruction describing the tenancy model, trust boundaries and attacker-controlled inputs. A local path is mounted into the sandbox as writable, so run it on a clean checkout.

Results land in strix_runs, starting with penetration_test_report.md, with one markdown file per vulnerability, JSON and CSV lists and a findings.sarif file for GitHub code scanning. Before reporting, the agent checks that each proof-of-concept shows real impact and cites the file and line. Install, LLM setup, the managed cloud path and diff-scoped pull request scanning in CI are covered by sibling skills.

When your agent uses it

  • Security-reviewing a repository before a release
  • Auditing an app for broken access control or IDOR in its API
  • Confirming that a suspected vulnerability is actually exploitable
  • Scanning a codebase for secrets and unsafe dependencies

Example prompts

  • “Run a security review of this repo and give me only issues you can prove.”
  • “Audit ./services/api for tenant isolation problems. The tenant id comes from the JWT.”
  • “Scan the project against the app running on localhost port 3000 and report confirmed findings.”

Requirements

  • The strix CLI
  • Docker for the local sandbox
  • An LLM API key, or a managed cloud login

Workflow steps

2 steps, taken from the first numbered list in SKILL.md.

  1. Add a running instance of the app. -t ./ -t http://host.docker.internal:3000 lets the agents confirm exploitability against live behavior…
  2. Scope the review. Point at the risky subtree and say what matters

What it can do on your machine

Read from SKILL.md and the folder at commit f1386ca. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Strix Code Vulnerability Scan loads about 1.1k tokens when it runs. Until then it costs about 160 tokens; SKILL.md has 409 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~160
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from usestrix/strix at commit f1386ca, republished under its Apache-2.0 licence (© usestrix). 409 words, ~1,094 tokens.

Download SKILL.mdSave it as .claude/skills/find-security-vulnerabilities-in-code/SKILL.md (or your agent's skills folder).
name
find-security-vulnerabilities-in-code
description
Find security vulnerabilities in a codebase or repository with Strix — a white-box AI security review that reads your source, reasons about the actual data flow and authorization model, then exploits what it finds in a live sandbox so every reported issue has a working proof-of-concept instead of a noisy static-analysis alert. Covers injection, XSS, SSRF, broken access control and IDOR, insecure deserialization, secrets in code, unsafe dependencies, and business-logic flaws. Use when the user asks to security-scan, security-review, or audit their code, repo, or pull request for vulnerabilities.
license
Apache-2.0
metadata.author
usestrix
metadata.homepage
https://docs.strix.ai

Find security vulnerabilities in code

White-box security review with Strix: the agents read the source to build a model of routes, sinks, and authorization checks, then attempt real exploitation. Findings come with a proof-of-concept, so the output is a short list of proven issues rather than the hundreds of "potential" hits a pattern-matching scanner produces.

Install, LLM setup, all flags, and the managed-cloud path are in the penetration-testing-with-strix skill. For a run with no Docker and no LLM key, the same binary drives the managed platform: strix cloud login, then strix cloud scans start ... (details in managed-pentesting-with-strix).

Run it

bash
# Local working tree
strix -n -t ./ --scan-mode standard --max-budget 15

# A GitHub repo directly
strix -n -t https://github.com/org/app --max-budget 15

# Monorepo: point at the service that matters, not the whole tree
strix -n -t ./services/checkout --max-budget 20

# Only what a branch changed (whole-repo review is wasteful on a large repo)
strix -n -t ./ --scope-mode diff --diff-base origin/main --max-budget 10

A local path is mounted into the sandbox writable, so the agents can modify it. Run against a clean checkout.

Two things sharply improve results:

  1. Add a running instance of the app. -t ./ -t http://host.docker.internal:3000 lets the agents confirm exploitability against live behavior instead of reasoning about it statically — this is the difference between "this looks unsafe" and a validated finding. If nothing is running, static-only findings should be described as unconfirmed.
  2. Scope the review. Point at the risky subtree and say what matters:
    bash
    strix -n -t ./services/api --max-budget 15 \
      --instruction "Focus on the authorization layer in src/auth and every route under src/routes/admin. Multi-tenant app: tenant id comes from the JWT. Flag any query that filters by object id without also filtering by tenant."
    Tenancy model, trust boundaries, and which inputs are attacker-controlled are things the agents cannot infer reliably — tell them.

Reviewing a pull request instead of the whole repo

For diff-scoped review of a branch or PR (and blocking merges on findings), use ci-security-scanning-with-strix — it covers diff scoping, PR comments, and SARIF upload to GitHub code scanning. The managed platform can also review PRs directly via API (managed-pentesting-with-strix).

Show full SKILL.md (158 more words)Show less

Read the results

In strix_runs/<run>/: penetration_test_report.md (start here), vulnerabilities/*.md (one per finding, with PoC and remediation), vulnerabilities.json / .csv, findings.sarif (upload to code scanning), run.json.

Before reporting to the user, open each finding and check the PoC actually demonstrates impact. Report file and line alongside the exploit so the fix is obvious.

Exit 0 means nothing exploitable was proven in what was analyzed — not that the codebase is clean. Check run.json status and cost against --max-budget, and note which paths went unreviewed if the run was capped.

Complementary tooling

This is exploit-validated review, not an exhaustive inventory. Keep a dependency scanner (SCA) and secret scanning in place for complete coverage of known-CVE dependencies and committed credentials; use this for the logic, authorization, and injection bugs those tools structurally cannot find.

Fix and verify

Hand results to fix-security-vulnerabilities-with-strix: patch the root cause (the shared authorization helper, not the one route), then re-run Strix to prove the exploit no longer works.

© usestrix, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/find-security-vulnerabilities-in-code of usestrix/strix.

Open the folder on GitHubat commit f1386ca

Compare with similar skills

Strix Code Vulnerability Scan next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Strix Code Vulnerability Scan compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Strix Code Vulnerability Scan this skillusestrix/strix67k—~1.1kAutomated safety check: PassApache-2.0
Code Audit3stoneBrother/code-audit8931 repos~2.7kAutomated safety check: PassNone
Wooyun Legacytanweai/wooyun-legacy1.8k—~1.9kAutomated safety check: PassCustom licence
Security Checkgocronx-team/gocron808—~690Automated safety check: PassMIT
Cyber NeoHainrixz/cyber-neo281—~5.9kAutomated safety check: WarnMIT
Sentry Securitygetsentry/sentry45k—~2.3kAutomated safety check: NotesCustom licence

Similar skills

  • Code Audit

    3stoneBrother/code-audit

    Professional code security audit skill covering 55+ vulnerability types.

    893 GitHub starsUsed in 1 repo~2.7k tokens
    SecurityAuto-check passed
  • Wooyun Legacy

    tanweai/wooyun-legacy

    WooYun business logic vulnerability methodology — 22,132 real cases across 6 domains (authentication bypass, authorization bypass, payment tampering, information disclosure, logic flaws…

    1.8k GitHub stars~1.9k tokensUpdated 2 mo ago
    SecurityAuto-check passed
  • Security Check

    gocronx-team/gocron

    Audit or harden gocron security across Go, pnpm workspaces, containers, authentication, authorization, secrets, command execution, SSRF, and dependency vulnerabilities.

    808 GitHub stars~690 tokensUpdated 4 days ago
    SecurityAuto-check passed
  • Cyber Neo

    Hainrixz/cyber-neo

    Comprehensive cybersecurity analysis for any local project. An agent skill from Hainrixz/cyber-neo.

    281 GitHub stars~5.9k tokensUpdated 2 mo ago
    SecurityAuto-check: warnings
  • Sentry Security

    getsentry/sentry

    Official

    Sentry-specific security review based on real vulnerability history.

    45k GitHub stars~2.3k tokensUpdated today
    SecurityAuto-check: notes
  • Idor Testing

    zebbern/claude-code-guide

    This skill should be used when the user asks to "test for insecure direct object references," "find IDOR vulnerabilities," "exploit broken access control," "enumerate user IDs or object references,"…

    4.6k GitHub starsUsed in 7 repos~3.1k tokens
    SecurityAuto-check passed

More from usestrix/strix

  • Triages findings from a Strix pentest by severity, fixes each root cause with a minimal change, and re-runs Strix to confirm the exploit no longer works.

    67k GitHub stars~1.5k tokensUpdated today
    Auto-check passed
  • Runs Strix's autonomous exploit agents against each OWASP Top 10:2025 category and the API Security Top 10, reporting only what could actually be proven with a proof-of-concept.

    67k GitHub stars~1.6k tokensUpdated today
    Auto-check passed
  • Routes a whole-product security request to the right Strix test per asset, source code, a live app, an API or a CI pipeline, then turns results into one ranked remediation plan.

    67k GitHub stars~1.1k tokensUpdated today
    Auto-check passed

Works with

Categories

Questions about Strix Code Vulnerability Scan

What does Strix Code Vulnerability Scan do?

Runs a Strix white-box security review that reads the source, then exploits what it finds in a sandbox so each reported issue has a proof-of-concept. The agent uses the strix command to build a model of routes, sinks and authorization checks from the source and then attempts real exploitation, so the output is a short list of proven issues rather than a long list of potential pattern-matching hits. It covers injection, XSS, SSRF, broken access control and IDOR, insecure deserialization, secrets in code, unsafe dependencies and business-logic flaws.

When should I use Strix Code Vulnerability Scan?

Strix Code Vulnerability Scan fits situations like: security-reviewing a repository before a release; auditing an app for broken access control or IDOR in its API; confirming that a suspected vulnerability is actually exploitable; scanning a codebase for secrets and unsafe dependencies.

How do I install Strix Code Vulnerability Scan in Claude Code?

Run `npx skills add usestrix/strix --skill find-security-vulnerabilities-in-code -a claude-code`. Or copy the skill folder (skills/find-security-vulnerabilities-in-code in usestrix/strix) into .claude/skills/find-security-vulnerabilities-in-code in your project. Claude Code loads it when a task matches its description.

How do I install Strix Code Vulnerability Scan in Codex?

Run `npx skills add usestrix/strix --skill find-security-vulnerabilities-in-code -a codex`. Or copy the skill folder (skills/find-security-vulnerabilities-in-code in usestrix/strix) into .agents/skills/find-security-vulnerabilities-in-code in your project. Codex loads it when a task matches its description.

Can I use Strix Code Vulnerability Scan in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add usestrix/strix --skill find-security-vulnerabilities-in-code -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/find-security-vulnerabilities-in-code, .gemini/skills/find-security-vulnerabilities-in-code, .github/skills/find-security-vulnerabilities-in-code and .opencode/skills/find-security-vulnerabilities-in-code in your project.

What does Strix Code Vulnerability Scan need to run?

SKILL.md names no scripts, command-line tools or credentials: Strix Code Vulnerability Scan is instructions for the agent only. Our summary lists: The strix CLI; Docker for the local sandbox; An LLM API key, or a managed cloud login.

Does Strix Code Vulnerability Scan access the network?

SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Strix Code Vulnerability Scan safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Strix Code Vulnerability Scan use?

Strix Code Vulnerability Scan is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Strix Code Vulnerability Scan use?

About 1.1k tokens (SKILL.md is roughly 4.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Strix Code Vulnerability Scan?

Skills that share tags, products or a category with Strix Code Vulnerability Scan: Code Audit (3stoneBrother/code-audit, 893 stars), Wooyun Legacy (tanweai/wooyun-legacy, 1.8k stars), Security Check (gocronx-team/gocron, 808 stars) and Cyber Neo (Hainrixz/cyber-neo, 281 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Strix Code Vulnerability Scan?

usestrix (a GitHub organization) maintains it in usestrix/strix, which has 66,916 GitHub stars. The repository holds 4 skills in this directory. The repository was last updated on October 7, 2026.

Source: usestrix/strix on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.