Setup & Installation
What This Skill Does
Runs security-focused differential reviews on PRs, commits, and diffs. Scales analysis depth to codebase size, calculates blast radius for high-risk changes, checks test coverage gaps, and writes a markdown report file. Detects security regressions by tracing git history on removed code.
Manual diff review skips git blame on removed code and rarely quantifies how many callers a changed function has, so regressions slip through without the structured blast radius and adversarial modeling this skill enforces.
When to use it
- Reviewing an auth system rewrite before merging to main
- Tracing blast radius when a widely-called validation function is removed
- Flagging access control modifier changes (e.g., internal to external) in smart contracts
- Running triage on a 5-file PR to identify which files need deep analysis
- Generating an evidence-backed report tied to specific line numbers and commits