code-security

Provide security guidelines for writing secure code and auditing vulnerabilities.

260|28|Updated Jan 15, 2026
One-click install
npx skills add https://github.com/semgrep/skills --skill code-security
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: code-security
Source: https://github.com/semgrep/skills/tree/main/skills/code-security
Command: npx skills add https://github.com/semgrep/skills --skill code-security

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Security guidelines to help AI agents and developers write secure code and audit code for vulnerabilities across languages and frameworks.

Core Features & Use Cases

  • Comprehensive, category-organized security rules with practical examples.
  • Guidance for secure coding practices and vulnerability reviews across multiple languages.
  • Real-world scenarios to apply secure patterns during development and code reviews.

Quick Start

Review a codebase and consult these guidelines to implement safe patterns and actionable remediation steps.

Frequently Asked Questions about code-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit my codebase for security vulnerabilities?▼

You can audit code for vulnerabilities by reviewing your codebase against comprehensive, category-organized security rules to identify risks and apply actionable remediation steps.

What secure coding practices should I follow to prevent OWASP vulnerabilities?▼

Secure coding practices to prevent OWASP vulnerabilities include applying language-agnostic security rules organized by impact, using concrete examples to guide safe pattern implementation during development and code reviews.

Can I use these security guidelines across different programming languages?▼

Yes, you can use these security guidelines across different programming languages, as they apply language-agnostic rules and secure coding practices to support vulnerability reviews throughout various development workflows.

What is the best way to integrate secure code review into my development workflow?▼

The best way to integrate secure code review into your development workflow is to consult category-organized security guidelines with real-world scenarios, applying safe patterns and actionable remediation during reviews.

How do AI agents use security rules to write secure code?▼

AI agents use security rules to write secure code by consulting comprehensive, category-organized guidelines with concrete examples, applying safe patterns and actionable remediation steps across various languages and frameworks.