The Vulnerability Scanner skill equips Claude with a security-first mindset to identify, map, and prioritize risks within your codebase. It focuses on the 2025 threat landscape, covering critical areas such as Software Supply Chain security, broken access control, and insecure design. By utilizing a systematic four-phase methodology—Reconnaissance, Discovery, Analysis, and Reporting—this skill helps developers move beyond surface-level bug hunting to implement robust defense-in-depth strategies and risk-based remediation using CVSS and EPSS scoring.
Key Features
01Risk prioritization using CVSS and EPSS metrics
02OWASP Top 10:2025 framework alignment
030 GitHub stars
04High-risk code pattern analysis for RCE and injections
05Supply chain security and dependency integrity auditing
06Attack surface mapping and entry point identification