Security Checklist (Grade A) logo

Security Checklist (Grade A)Security-tested development skill for Claude AI. Grade A. Pre-deployment security audit for web applications, organized by OWASP Top 10:2025 categories. Use when reviewing code before shipping, auditi

(0)
Daniel NikulshynReviewed by Daniel Nikulshyn·Updated July 2026

Overview

Pre-deployment security audit for web applications, organized by OWASP Top 10:2025 categories. This security checklist is used when reviewing code before shipping, auditing an existing application, or when users mention "security review," "ready to deploy," "going to production," or express concern about vulnerabilities. It covers access control, supply chain, cryptography, injection, auth, integrity, logging, and exception handling. The checklist is a baseline that prevents obvious disasters and is not a substitute for a real penetration test or threat model. For deeper verification, see OWASP ASVS 5.0 and OWASP API Security Top 10:2023 for API-specific scope.

Key features

  • OWASP Top 10:2025 categories coverage
  • Pre-deployment security audit
  • Access control review
  • Supply chain assessment
  • Cryptography evaluation
  • Injection vulnerability check

Pricing

Model
Free
Category
Skills
Rating
No reviews yet

Use cases

Code Review Before Deployment

Use the security checklist during code reviews to ensure the application is secure before deployment, covering OWASP Top 10:2025 categories.

Existing Application Audit

Apply the security checklist to existing applications to identify potential security vulnerabilities and ensure compliance with current security standards.

Security Concern Assessment

Utilize the checklist when users express concerns about security vulnerabilities or when the terms "security review," "ready to deploy," or "going to production" are mentioned.

Pros & Cons

Pros

  • Provides a comprehensive security audit based on the latest OWASP Top 10:2025 categories
  • Helps identify and prevent common security vulnerabilities
  • Serves as a baseline for security review before deployment
  • Includes coverage of access control, supply chain, cryptography, and more
  • Encourages up-to-date security knowledge with a research step

Cons

  • Requires research into current security landscape before application, which may add time to the process
  • May not be a substitute for a full penetration test or threat model
  • The default-on research requirement might be skipped under specific conditions, but valid reasons are limited

Reviews

Sign in to leave a review.

No reviews yet. Be the first!

Q&A

Is any research required before using the checklist?

Yes, users must stay current with the latest security landscape, as the default-on research step may be skipped only in limited, valid circumstances, which could add time to the review process.

Asked by Mireille Dupont · Jan 19, 2026

How do I integrate the checklist into my code review workflow?

Use it when reviewing code before shipping, auditing an existing application, or when stakeholders mention readiness for deployment or security review; it serves as a quick, structured check before deeper analysis.

Asked by Nadia Benali · Dec 24, 2025

Can this checklist replace a penetration test?

No. It is a baseline audit for pre-deployment reviews but should not substitute a full penetration test or a formal threat model.

Asked by Xiomara Delgado · Dec 20, 2025

What security aspects does the Security Checklist cover?

It covers all OWASP Top 10:2025 categories, including access control, supply chain, cryptography, injection, authentication, integrity, logging, and exception handling.

Asked by Tobias Hartmann · Dec 10, 2025

Ask a question

Skills alternatives

Using Git Worktrees (Grade A) logo
Using Git Worktrees (Grade A)Skills

Security-tested data-ai skill for Claude AI. Grade A. Use when starting feature work that needs isolation from current workspace or before executing implementation plans - creates isolated git worktre

(0)
Free
Ga4 Bigquery Schema (Grade A) logo
Ga4 Bigquery Schema (Grade A)Skills

Security-tested data-ai skill for Claude AI. Grade A. GA4 BigQuery Export Schema Reference — complete field reference, nested structures, query patterns, and performance tips

(0)
Free
Meta Capi (Grade A) logo
Meta Capi (Grade A)Skills

Security-tested data-ai skill for Claude AI. Grade A. Meta Conversions API (CAPI) Setup Reference — architecture, event types, customer information hashing, deduplication, implementation examples, AEM

(0)
Free
Callees (Grade A) logo
Callees (Grade A)Skills

Security-tested development skill for Claude AI. Grade A. Lista o que uma funcao/metodo chama (call graph direto)

(0)
Free
Test Module Name (Grade A) logo
Test Module Name (Grade A)Skills

Security-tested data-ai skill for Claude AI. Grade A. Name Haskell test modules after the module under test with a Spec suffix in the same namespace. Use when writing or reviewing Haskell test module

(0)
Free
Board Of Directors (Grade A) logo
Board Of Directors (Grade A)Skills

Security-tested data-ai skill for Claude AI. Grade A. Simulate a 5-member expert board deliberation for major decisions. Use when evaluating plans, architecture choices, feature designs, or any decisi

(0)
Free
Advpl Mvc Avancado (Grade A) logo
Advpl Mvc Avancado (Grade A)Skills

Security-tested development skill for Claude AI. Grade A. MVC avançado via PE (Pontos de Entrada) — adicionar grids customizadas em telas MVC padrão (CNTA300/MATA070/MATA440/MATA460/FINA040 via *STRU)

(0)
Free
D
Docs Writer (Grade A)Skills

Security-tested devops skill for Claude AI. Grade A. **WORKFLOW SKILL** — Maintains repository documentation accuracy and freshness across the docs site, agent files, and changelog. WHEN: "update docs

(0)
Free