Review code security; scan secrets and vulnerabilities with Gitleaks and Trivy.
Pro scans all 10 files and shows the line behind each finding
Scanned 10/7/2026
npx -y skills add fmind/dot --skill code-security --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Code Security?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/fmind-code-security)More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.
---
name: code-security
description: "Review code security; scan secrets and vulnerabilities with Gitleaks and Trivy."
license: MIT
metadata:
kind: task
author: Médéric HURIER (Fmind)
source: github.com/fmind/dot/tree/main/skills/code-security
created: "2026-07-04"
updated: "2026-10-07"
---
# Code Security
Investigate and fix security defects with evidence. Choose code review, secret scanning, or vulnerability scanning from the task; findings need verification and scanners do not replace reasoning. The name deliberately avoids `security-review`, which Claude Code and Copilot CLI ship as a built-in command.
## Workflow
Read only the matching guide and its required resources. Use a known guide directly when shared prerequisites are not needed.
## Task guides
<!-- guides:start -->
- [code-review](references/code-review/GUIDE.md): Assess code and repository security; verify findings and repairs.
- [gitleaks](references/gitleaks.md): Scan the working tree and history for secrets; handle confirmed exposure.
- [trivy](references/trivy/GUIDE.md): Scan dependencies, IaC, images, and licenses; generate SBOMs.
<!-- guides:end -->
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!