bobmatnyc

security-scanning

"CI security scanning: secrets, deps, SAST, triage, expiring exceptions"

bobmatnyc 47 17 Updated 4mo ago

Resources

2
GitHub

Install

npx skillscat add bobmatnyc/claude-mpm-skills/security-scanning

Install via the SkillsCat registry.

SKILL.md

Security Scanning

Quick Start

  • Secrets: fail fast; rotate on exposure.
  • Dependencies: gate critical/high; automate updates.
  • SAST: start high-signal; ratchet over time.
  • Exceptions: require reason, owner, and expiry.

Load Next (References)

  • references/tooling-matrix.md
  • references/ci-workflows.md
  • references/triage-and-remediation.md
  • references/common-findings-and-fixes.md
  • references/supply-chain-and-sbom.md