Loading...
Loading...
Scan code for security vulnerabilities and secrets. Detect exposed secrets, insecure patterns, and common vulnerabilities.
npx skill4agent add winsorllc/upgraded-carnival security-audit{baseDir}/security-audit.js --scan --path /path/to/code{baseDir}/security-audit.js --vulns --path /path/to/code{baseDir}/security-audit.js --full --path /path/to/code| Option | Description | Required |
|---|---|---|
| Scan for secrets | No |
| Check for vulnerabilities | No |
| Full security audit | No |
| Path to scan | Yes |
| Output format (json, text) | No |
AKIA...ghp_...gho_...{
"secrets": [
{
"file": "config.js",
"line": 10,
"type": "api_key",
"context": "apiKey = '..."
}
],
"vulnerabilities": [
{
"file": "app.js",
"line": 25,
"type": "sql_injection",
"message": "Potential SQL injection"
}
]
}