security-audit — Cursor AI Agent
    Neura MarketNeura Market/Cursor
    ChatGPTChatGPTClaudeClaudeGeminiGeminiCursorCursorGrokGrokPerplexityPerplexityDeepSeekDeepSeek
    CoPilotCoPilotStable DiffusionStable DiffusionMidjourneyMidjourney
    View All Directories
    OverviewRulesPromptsMCPsAgentsGamesBlogVideosGuidesCoursesCommunityExtensionsTrending
    CursorAgentssecurity-audit
    Back to Agents
    security-audit

    security-audit

    YangKuoshih March 9, 2026
    3 copies 0 downloads

    Universal security scanning skill for AI agents - finds hardcoded secrets, API keys, and vulnerabilities in any codebase. 44 patterns validated against GitLeaks, OWASP Top 10 mapping, Markdown/SARIF/JSON reports. Works across Claude Code, Cursor, Windsurf, and any agentic platform.

    <div align="center"> <picture> <source media="(prefers-color-scheme: dark)" srcset="assets/header-dark.svg"> <img alt="security-audit — Find secrets before attackers do." src="assets/header.svg" width="680"> </picture>

    License Tests Patterns

    </div>

    Why

    Every leaked secret starts the same way — a key hardcoded "just for testing" that makes it to production. Existing tools catch some of these, but they're standalone binaries that don't understand your code's context.

    security-audit combines deterministic pattern scanning with LLM-powered reasoning. The scanner finds candidates fast. The AI filters false positives, understands context, and writes remediation steps tailored to your stack.

    What It Catches

    <table> <tr> <td width="50%">

    Secrets — 50 patterns validated against GitLeaks

    • AWS, GCP, Azure credentials
    • GitHub, GitLab, Slack tokens
    • Stripe, Twilio, SendGrid API keys
    • Database connection strings
    • Private keys (RSA, SSH, PGP)
    • OpenAI, Heroku, NPM, PyPI tokens
    • DigitalOcean, HashiCorp Vault, Terraform Cloud
    • Grafana, Shopify, Anthropic, Docker Hub
    • JWT tokens and signing secrets
    • High-entropy strings (charset-aware: hex, base64, generic)
    </td> <td width="50%">

    Vulnerabilities — 15 patterns mapped to OWASP Top 10

    • SQL injection sinks
    • XSS vectors (innerHTML, dangerouslySetInnerHTML)
    • Command injection
    • Server-side request forgery (SSRF)
    • Insecure deserialization (pickle, yaml.load)
    • Weak cryptography (MD5, SHA1, DES)
    • Disabled SSL verification
    • Debug mode in production
    </td> </tr> <tr> <td colspan="2">

    Dangerous File Types — 15 file patterns checked via git ls-files

    Files that

    Tags

    agent-skillsagentskillsai-agentantigravityclaude-codecode-securitycursorhardcoded-secretsowaspsarif

    Comments

    More Agents

    View all
    Emuloagent-memory

    Emulo

    Mine your Claude Code and Codex logs into a local you.md agent profile.

    O
    ohad6k
    193
    Nyx Local Ailm-studio

    Nyx Local Ai

    Local-first AI coding agent for VS Code & Cursor. Ollama, LM Studio & your inference fleet. Cursor-grade agent UX — offline, private, zero token cost.

    S
    sthamann
    248
    Self Learning Skills

    Self Learning Skills

    A self-improving skill for AI coding agents (Claude Code, Cursor, AGENTS.md): recognize a hard-won golden path in a session and harvest it into a reusable skill/rule for next time.

    K
    Kulaxyz
    895
    FDEOpsagentic-ai

    FDEOps

    Second brain for Forward Deployed Engineers. Engagement memory + 35 skills across 6 domains, all behind one @fde... Works with any AI coding agent.

    S
    suboss87
    303
    Awesome Gamedev Agent Skillsagent-skills

    Awesome Gamedev Agent Skills

    Game-development Agent Skills for AI coding agents: install once and a master router loads the right skill for your engine and task. 66 original, version-pinned skills (plus a master router) in the portable SKILL.md format that runs across Claude Code, Cursor, Codex, Copilot, Gemini CLI and more, for Godot, Unity, Unreal, web and beyond.

    G
    gamedev-skills
    301
    Honey For Devsagents

    Honey For Devs

    Honey (I Shrunk the AI) by GreenPT: a cross-tool coding skill that cuts AI coding-agent token usage and LLM API costs — write less code, less prose, and denser agent-to-agent handoffs (−53%, lossless in benchmarks) with no loss of quality. Works with Claude Code, Cursor, GitHub Copilot, Codex, Gemini CLI, Windsurf, Cline & Kiro.

    G
    Green-PT
    177

    Stay up to date

    Get the latest Cursor prompts, rules, and resources delivered to your inbox weekly.

    Neura Market LogoNeura Market

    Discover the best AI prompts, plugins, and resources for Cursor and more.

    Content Types

    • Rules
    • Prompts
    • MCPs
    • Agents
    • Guides

    Platforms

    • ChatGPT Directory
    • Claude Directory
    • Gemini Directory
    • Cursor Directory
    • Grok Directory
    • Perplexity Directory
    • DeepSeek Directory
    • CoPilot Directory
    • Stable Diffusion Directory
    • Midjourney Directory
    • All Directories

    Resources

    • Blog
    • Documentation
    • Help Center
    • Marketplace

    Legal

    • Privacy Policy
    • Terms of Service

    © 2026 Neura Market. All rights reserved.

    |

    Not affiliated with any AI platform vendors.

    Neura Market

    Custom AI Systems & Services

    Our team of experienced AI builders will help build custom AI systems, workflows, and solutions for your business.

    Request custom work

    Ready-made automations for this

    Workflows from the Neura Market marketplace related to this Cursor resource

    • Build AI Agents with Think-Plan-Act Architecture Using Llama-4 Reasoningn8n · $24.99 · Related topic
    • GitHub Automation Hub: Complete API Controls for AI Agentsn8n · $24.99 · Related topic
    • Extract Text from Images & PDFs via Telegram with Mistral OCR to Markdownn8n · $24.99 · Related topic
    • AI Privacy-Minded Router: PII Detection for Privacy, Security, & Compliancen8n · $14.99 · Related topic
    Browse all workflows