Workflow file (JSON / YAML)
name: security-review-flow
description: "A layered security review of a feature: map, threats, code checks, dependencies and fixes."
inputs:
- "feature description"
- "code access"
steps:
- id: 1
name: "Map"
do: "List inputs, data and trust boundaries."
- id: 2
name: "Threats"
do: "List what could go wrong."
- id: 3
name: "Code"
do: "Check for injection, access control and secrets."
- id: 4
name: "Dependencies"
do: "Check for known vulnerabilities."
- id: 5
name: "Fix"
do: "Prioritise and propose fixes."
output: "A prioritised security report."
How to use it
- Copy or download the file.
- Give it to your AI assistant with your inputs, or follow the steps yourself.
- Check the result of each step before moving to the next.
Try it
Review the new file upload feature.
A layered security review of a feature: map, threats, code checks, dependencies and fixes.