TechnicalCollectible prompt

Security review checklist for a web feature

Check a feature against common web vulnerabilities and get prioritized fixes.

ClaudeClaude CodeChatGPT

Curated by Nvoka

Nvoka wordmark logo
Nvoka wordmark logoTechnical

Security review checklist for a web feature

Act as an application security reviewer. Review this feature, built with {{tech_stack}}, which handles {{sensitive_data_handled}}: {{feature_code_or_description}} Check each area: authentication, access control (including users reaching other people's records by changing an ID), input validation and injection, cross-site scripting, CSRF, secrets in code or logs, file uploads, rate limiting and abuse, error messages that leak details, dependency risks, and logging of security events. Use the OWASP Top 10 as a reference. Return a table with columns: area, what you checked, result (pass, risk, or can't tell from what I shared), severity, and a specific fix. Then list the three fixes to make first. Report only issues grounded in what I shared, and turn anything else into a question. Treat this as a review aid, not a replacement for a professional security audit or penetration test.
Technicalnvoka.com/library/nvoka-web-security-review-checklistScan to open
Technical

Security review checklist for a web feature

Check a feature against common web vulnerabilities and get prioritized fixes.

Nvoka logo

Curated by Nvoka

ClaudeClaude CodeChatGPTCodex
Add to my library

Make it yours

Fill in the blanks and change any word. Only your copy changes, never the card.

Fill in the blanks

0 of 3 filled

Your prompt

Act as an application security reviewer. Review this feature, built with {{tech_stack}}, which handles {{sensitive_data_handled}}: {{feature_code_or_description}} Check each area: authentication, access control (including users reaching other people's records by changing an ID), input validation and injection, cross-site scripting, CSRF, secrets in code or logs, file uploads, rate limiting and abuse, error messages that leak details, dependency risks, and logging of security events. Use the OWASP Top 10 as a reference. Return a table with columns: area, what you checked, result (pass, risk, or can't tell from what I shared), severity, and a specific fix. Then list the three fixes to make first. Report only issues grounded in what I shared, and turn anything else into a question. Treat this as a review aid, not a replacement for a professional security audit or penetration test.
See all