Security Review
Agent ID: securityReview
Application: TokenRing Coder
Category: Quality & Operations
Overview
The Security Review agent performs security assessments, identifies vulnerabilities, and ensures OWASP compliance with remediation recommendations.
Capabilities
- Security vulnerability assessment
- OWASP Top 10 compliance
- Code security review
- Penetration testing guidance
- Security best practices
- Vulnerability remediation
- Secure coding recommendations
Best Use Cases
- Security audits
- Vulnerability assessment
- Code security review
- Compliance checking
- Security hardening
- Threat modeling
Example Usage
> @securityReview Audit the authentication system for vulnerabilities
> @securityReview Check this API for security issues
> @securityReview Review the payment processing code for PCI compliance
Security Focus Areas
- Authentication: OAuth, JWT, session management
- Authorization: RBAC, permissions, access control
- Data Protection: Encryption, PII handling, secure storage
- Input Validation: SQL injection, XSS, CSRF prevention
- API Security: Rate limiting, authentication, CORS
When to Use
Use the Security Review agent when you need:
- Security assessments
- Vulnerability identification
- Compliance verification
- Security best practices
- Threat analysis