Back to search
medium
claude-code-templates / production-code-audit
https://skillshield.dev/scan/github.com/davila7/claude-code-templates/production-code-auditLow Risk
Autonomously deep-scan entire codebase line-by-line, understand architecture and patterns, then systematically transform it to production-grade, corporate-level professional quality with optimizations
Findings (6)
Findings Preview
Automated persistence via CI/CD modification
The skill instructs the agent to automatically create or modify CI/CD pipelines. This allows for the insertion of malicious scripts into the build process, establishing long-term persistence in the software supply chain.
cli-tool/components/skills/development/production-code-audit:222Category Breakdown
Malware & Backdoors
10030%
Prompt Injection
10025%
Data Exfiltration
10020%
Encoding & Obfuscation
10010%
Excessive Permissions
1008%
Secret Exposure
1005%
Supply Chain
100–
Behavioral Manip.
1002%