security-and-hardening
Hardens code against vulnerabilities when handling input, auth, storage, or external integrations.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for security-and-hardening, derived from its capabilities.
These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.
Overview
An addyosmani production-engineering skill that guides security hardening whenever code accepts untrusted input, manages authentication/sessions, stores data, or integrates third-party services. Instruction/reference surface that directly shapes the security-relevant code the agent writes.
Key features and capabilities
- Untrusted-input handling guidance
- Auth and session hardening
- Third-party integration checks
Use cases
- Reviewing a feature that accepts user input
- Hardening authentication code