delimit_security_audit
Audit a repository for dependency vulnerabilities, hardcoded secrets, dangerous patterns, and tracked .env files. Automatically collect evidence and create governance tasks for critical findings.
Instructions
Audit security: dependency vulnerabilities, anti-patterns, and secret detection. Auto-chains: evidence collection on all findings, governance task + notification on critical findings.
Scans for:
Dependency vulnerabilities (pip-audit, npm audit)
Hardcoded secrets (API keys, tokens, passwords)
Dangerous patterns (eval, exec, SQL injection, XSS)
.env files tracked in git
Optional: Set SNYK_TOKEN or install Trivy for enhanced scanning.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| target | No | Repository or file path to audit. | . |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||