validate_code_change
Validates code diffs for security regressions, dangerous patterns, secrets, and AI defense issues to prevent problems before landing.
Instructions
Validate a code diff for security regressions and issues before it lands.
Takes a unified diff and checks for:
Security control regressions (auth, CSRF, TLS, rate limiting removal)
New dangerous patterns (eval, exec, SQL injection, etc.)
Secrets in added code
AI defense issues in added code
Returns pass/fail with findings.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| diff | Yes | ||
| path | No | . | |
| policy | No |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| result | Yes |