# Security Scanner · brainit-consulting

> - Performs comprehensive OWASP Top 10:2025 security vulnerability analysis on any codebase. Use this skill whenever the user asks to: review code for security, perform a security audit, scan for vulnerabilities, find security issues, improve application security, check for OWASP compliance, do a penetration test review, assess security posture, look for security flaws, scan for security risks, harden an application, or check code for exploits. Also trigger when the user mentions OWASP, CVEs, CWEs, security hardening, vulnerability assessment, or asks for a security report — even if they don't explicitly say "security scan." This skill works on any codebase in any language (JavaScript, TypeScript, Python, Java, Go, Ruby, C, PHP, etc.).

## Facts
- Page: https://tashan.sh/capability/skill-brainit-consulting-security-scanner
- tashan id: skill:brainit-consulting/security-scanner
- Source: https://github.com/brainit-consulting/DreamForgeSoftwareAgentSkills
- Type: skill
- Category: security
- tashan score: 44.0 / 100
- Adoption: 14.0
- Upkeep: 78.0
- Freshness: 91.0
- Evidence coverage: 84% of the inputs this score can use
- Health: active
- Instruction depth: not yet graded
- License: MIT
- Official: no

## Install

```sh
cp -r security-scanner ~/.claude/skills/
```

## Security audit
Not scanned. We audit npm-published capabilities; this one has no npm package we can resolve, or has not reached the queue. This is not a clean bill of health.

---
Measured 2026-08-25 by tashan (https://tashan.sh) from public evidence. Scorer s5.
