vibe-security

Audit codebases for security vulnerabilities in AI-generated code.

925|112|Updated Mar 15, 2026
One-click install
npx skills add https://github.com/raroque/vibe-security-skill --skill vibe-security-raroque
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: vibe-security
Source: https://github.com/raroque/vibe-security-skill/tree/main/vibe-security
Command: npx skills add https://github.com/raroque/vibe-security-skill --skill vibe-security-raroque

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Audits codebases for security vulnerabilities commonly introduced by AI-generated code, helping teams identify exposed keys, misconfigurations, and dangerous patterns before shipping.

Core Features & Use Cases

  • Comprehensive security review for vibe-coded apps and AI-assisted development.
  • Threat pattern detection across authentication, authorization, data access, and deployments.
  • Guided remediation with prioritized fixes and actionable recommendations.

Quick Start

Trigger a full security audit on your project to identify critical vulnerabilities and receive prioritized fixes.

Frequently Asked Questions about vibe-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit AI-generated code for security vulnerabilities?▼

To audit AI-generated code for security vulnerabilities, trigger a comprehensive security review that identifies exposed keys, misconfigurations, and dangerous patterns across authentication, payments, and data access before shipping.

What security risks are commonly introduced by AI coding assistants?▼

Common security risks introduced by AI coding include exposed environment secrets, misconfigured access controls, flawed authorization logic, and insecure integration patterns across data access and deployment configurations.

How do I check my codebase for exposed environment secrets and misconfigurations?▼

You can check your codebase for exposed environment secrets by running a full security audit that validates secrets, access controls, and secure integration patterns using built-in reference files.

Can I detect row-level security and authorization flaws in vibe-coded apps?▼

Yes, you can detect row-level security and authorization flaws by applying a security audit workflow designed to identify threat patterns in data access and authentication logic across AI-assisted projects.

Does this security audit work for deployment configurations and payment integrations?▼

Yes, the security audit applies validation checks across deployment configurations and payment integrations, scanning for dangerous patterns and insecure integration logic commonly introduced by AI-generated code.

What is the best way to get prioritized fixes for AI-generated code risks?▼

The best way to get prioritized fixes for AI-generated code risks is to run a guided remediation audit, which provides actionable recommendations and prioritized fixes for detected threat patterns.