backend-architect
78バックエンドアーキテクチャレビューを改善する
バックエンドチームは、設計が複雑化しコード品質が低下したときに、一貫したガイダンスを必要とします。このスキルは Claude、Codex、Claude Code に、構造化されたアーキテクチャレビュー、リファクタリングガイダンス、バックエンド向けチェックリストを提供します。
アプリケーションのセキュリティリスクをレビュー
セキュリティレビューでは、認証、入力処理、API、シークレットに関する問題が見落とされることがあります。このスキルは、アプリケーションセキュリティ業務のための体系的なガイダンス、チェックリスト、修正パターンを提供します。
このリクエストをエージェントにコピーしてください。正規の Skill ページとマニフェストが含まれています。
Review the Skillstore skill "security-guardian" from https://skillstore.io/skills/bikach-security-guardian.md and its manifest at https://skillstore.io/api/skills/bikach-security-guardian/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.エージェントは引き続き計画を提示し、セキュリティポリシーで必要な確認を求める必要があります。
AI エージェント、クローラー、スクリプトがページ全体ではなく整理されたコンテキストを必要とする場合は、これらのリンクを使ってください。
「security-guardian」を使用しています。 ファイルアップロード用エンドポイントをレビューしてください。
期待される結果:
「security-guardian」を使用しています。 JWTセッション設計をレビューしてください。
期待される結果:
All 400 static matches are false positives in a French-language application-security reference skill. The flagged strings appear in educational examples, checklists, or defensive detection guidance, and no executable code, credential access, or outbound network behavior was found. No prompt-injection text was found in the reviewed skill instructions.
バージョン付き評価レポート、中立的なバッジ、埋め込みカード、引用を共有できます。Skillstore は証拠を報告しますが、この Skill が安全かどうかは判断しません。
https://skillstore.io/skills/bikach-security-guardian/audits/11?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report[](https://skillstore.io/skills/bikach-security-guardian?utm_source=security_passport_badge)<a href="https://skillstore.io/skills/bikach-security-guardian?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/bikach-security-guardian/security.svg" alt="Skillstore security assessment" loading="lazy"></a><iframe src="https://skillstore.io/embed/skills/bikach-security-guardian.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Bikach. (2026). security-guardian security audit report (audit version 11) [Author version unspecified]. Skillstore. https://skillstore.io/skills/bikach-security-guardian/audits/11@techreport{bikach-bikach-security-guardian-2026,
author = {Bikach},
title = {security-guardian security audit report (audit version 11)},
institution = {Skillstore},
year = {2026},
number = {11},
url = {https://skillstore.io/skills/bikach-security-guardian/audits/11},
note = {Author version unspecified}
}cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "security-guardian security audit report (audit version 11)"
version: "unspecified"
type: report
authors:
- name: "Bikach"
date-released: "2026-07-21"
url: "https://skillstore.io/skills/bikach-security-guardian/audits/11"
identifiers:
- type: other
value: "skillstore:bikach-security-guardian:audit:11"
description: "Skillstore immutable audit report identifier"
対象を絞ったコード変更から、セキュリティ上の潜在的な弱点を特定し、実用的な修正案を提示します。
実装前に、ログイン、決済、ユーザーデータ、API、ファイルアップロードに関する対策を計画します。
OWASPリスク、シークレット、ログ、デプロイ時の制御に関する体系的なレビュープランを作成します。
このコードについて、一般的なアプリケーションセキュリティ上の問題をレビューしてください。検出事項を重大度別に一覧化し、最も安全な次のステップを説明してください。
この認証フローについて、パスワード、セッション、JWT、MFA、認可に関する弱点をレビューしてください。優先順位を付けた修正案を提示してください。
このAPIの変更について、入力検証、CORS、レート制限、SSRF、認可、機密データの露出を評価してください。修正を検証するためのテストケースも含めてください。
このアーキテクチャとデータフローを使用して、脅威情報に基づくセキュリティレビューを作成してください。信頼境界、悪用ケース、代替コントロール、修正順序を網羅してください。
作成者
Bikachライセンス
MIT
Skillstore リビジョン
r2
バージョンに関する注意
作者はバージョンを宣言していません。
参照
26ee580b1dc4b5aed6b30c1dd62b327556bac8d8
メンテナンスの新しさ
2026/7/22
利用状況
7 ダウンロード · 180 閲覧
OWASP チェックリストでアプリケーションセキュリティを監査する
作成者 ArieGoldkin
セキュリティレビューでは、一般的な Web アプリケーションのリスクを見落とすことがあります。このスキルは Claude、Codex、Claude Code に、構造化された OWASP チェック、スキャナーワークフロー、修復ガイダンスを提供します。
Harden Applications Against Security Risks
作成者 addyosmani
Security reviews can miss trust boundaries and unsafe data flows. This skill supplies threat-modeling prompts, OWASP patterns, and practical review checklists.
一般的なWeb脆弱性を評価する
作成者 sickn33
Webチームには、一般的なアプリケーションリスクを一貫して認識する方法が必要です。このスキルは、原因、影響、緩和策を含む構造化された脆弱性リファレンスを提供します。
Top 100リファレンスでWeb脆弱性を評価
作成者 sickn33
チームには、一般的なWebセキュリティ上の欠陥について一貫した言語が必要です。このスキルは、原因、影響、緩和策を含む、OWASPに沿った構造化リファレンスを提供します。
Audit Python Web Apps Before Release
作成者 glenskii
Python teams need repeatable checks for common application security controls. This skill provides configurable pytest coverage with clear evidence, boundaries, and release decisions.
アプリケーションセキュリティレビューを強化する
作成者 alirezarezvani
セキュリティレビューでは、一貫したチェックリストや再利用可能なワークフローが不足しがちです。このスキルは、Claude、Codex、Claude Code 向けに、セキュリティレビューのひな形、参照ガイダンス、シンプルなレポート作成スクリプトを提供します。