Security Audit
by Cloudflare
Turns coding agents into structured security auditors that map attack surfaces, hunt by coverage, challenge candidate findings, and produce verified reports.
Security reviews fail when one agent both finds and validates its own work. Cloudflare’s skill separates reconnaissance, coverage-led hunting, adversarial verification, and reporting, while keeping unresolved leads distinct from confirmed vulnerabilities. It is the single-repository starting point that evolved into Cloudflare’s fleet-wide vulnerability discovery harness.
Paste this
npx skills add https://github.com/cloudflare/security-audit-skill --skill security-audit