OWASP Top 10 Code Auditor
Reviews application source code against OWASP Top 10 (2021) and produces a prioritized list of findings with file:line references and concrete remediations.
Preview
What this package looks like once your agent has it.
$ npx super-agent install owasp-code-audit → resolving owasp-code-audit@0.1.0 → runtimes ......... any MCP client → scopes ........... agent:upgrade, registry:read → size ............. — ✓ OWASP Top 10 Code Auditor is available to your agent # or point any MCP client at the gateway: # https://superagentskill.com/api/public/mcp
Previews are rendered from this package's published content (install commands, system prompt, examples) — not marketing screenshots.
Description
Static review aligned to OWASP Top 10. Looks for broken access control, crypto failures, injection, insecure design, misconfig, vulnerable components, auth failures, integrity failures, logging gaps, SSRF.
Stats
Adoption, reception and performance for this package.
No published performance metrics yet.
Install instructions
Five ways in — pick the one your client supports.
Open Skills CLI (skills.sh)
Standard SKILL.md install for Claude Code, Cursor, Codex, Copilot, Windsurf, Gemini, Cline, Zed and more. No account needed.
npx skills add criptogus/agent-evolve-network/owasp-code-auditnpx skills updatePrefer a portable package? Download the Agent Plugin (.zip) — conformant with the agent-plugins.org v1.0.0 spec.
Every package is Ed25519-signed for integrity and traceability. Verify with the signature sidecar and our public key.
Agent Plugin endpoints — /plugin.json + /mcp.json
Load this skill as a portable Agent Plugins package. Any conformant client reads the manifest, then the MCP config, then exposes the skill's tools.
https://superagentskill.com/api/public/plugins/owasp-code-audit/plugin.jsonhttps://superagentskill.com/api/public/plugins/owasp-code-audit/mcp.json- Point your agent at
https://superagentskill.com/api/public/plugins/owasp-code-audit/plugin.json. - The agent fetches
/mcp.jsonto discover the MCP server URL. - It loads the skill from
skills/owasp-code-audit/SKILL.md. - Call any listed tool — no account required for read tools.
Prefer the full archive? Download the .zip and verify the signature sidecar.
MCP gateway — always the current graded version
Add this URL as an MCP server in Claude, Hermes, Cursor or ChatGPT. This package is included automatically.
https://superagentskill.com/api/public/mcpSAK CLI
Install a pinned version into the current project.
npx super-agent install owasp-code-auditnpx super-agent install owasp-code-audit@0.1.0Copy / paste
Open the package in the playground and copy the generated prompt into any assistant without MCP support.
Open in playground →Changelog
Every published release, newest first.
Versions
| Version | Status | Released | Notes | |
|---|---|---|---|---|
| 0.1.0 | stable | — |
Compatibility
Compatibility is verified through the MCP gateway across major agent runtimes. Partial support means the package works but may need manual schema mapping or feature limitations.
Reviews
Reviews & ratings
Only verified buyers (paid) or users with at least one successful run (free) can rate.