Skip to main content
Back to the directory
ghostsecurity/skillsSoftware EngineeringFrontend and Design

ghost-scan-code

Static analysis security scanner that identifies OWASP vulnerabilities across backend, frontend, mobile, and library code.

SkillJury keeps community verdicts, source metadata, and external repository signals in separate lanes so ranking data never pretends to be a review.

SkillJury verdict
Pending

No approved reviews yet

Would recommend
Pending

Waiting on enough review volume

Install signal
1

Weekly or total install activity from catalog data

Sign in to review
0 review requests
Install command
npx skills add https://github.com/ghostsecurity/skills --skill ghost-scan-code
SkillJury does not have enough approved reviews to publish a community verdict yet. Source metadata and repository proof are still available above.
SkillJury Signal Summary

As of May 1, 2026, ghost-scan-code has 1 weekly installs, 0 community reviews on SkillJury. Community votes currently stand at 0 upvotes and 0 downvotes. Source: ghostsecurity/skills. Canonical URL: https://skills.sh/ghostsecurity/skills/ghost-scan-code.

Security audits
Gen Agent Trust HubPASS
SocketPASS
SnykPASS
About this skill
Static analysis security scanner that identifies OWASP vulnerabilities across backend, frontend, mobile, and library code. You find security issues in a repository. This skill plans which vulnerability vectors to scan, then executes those scans against each project. $ARGUMENTS Note: Arguments passed can be used to customize the scan workflow if provided. For example, if the user specifies a specific set of vectors, count of vectors, specific candidate files, areas to focus on, count of candidate files, etc., ensure the relevant details are passed to the relevant steps in the skill. Compute the repo-specific output directory: If $scan_dir/plan.md already exists, skip to the next step. Otherwise, run the planner using scripts/loop.sh : Use a 10-minute timeout. If the command times out, re-run it — the script resumes from where it left off. If it fails 3 times consecutively with the same error, stop and report the failure.

Source description provided by the upstream listing. Community review signal and install context stay separate from this narrative layer.

Community reviews

Latest reviews

No community reviews yet. Be the first to review.

Browse this skill in context
FAQ
What does ghost-scan-code do?

Static analysis security scanner that identifies OWASP vulnerabilities across backend, frontend, mobile, and library code.

Is ghost-scan-code good?

ghost-scan-code does not have approved reviews yet, so SkillJury cannot publish a community verdict.

Which AI agents support ghost-scan-code?

ghost-scan-code currently lists compatibility with Cline, Skills CLI.

Is ghost-scan-code safe to install?

ghost-scan-code has been scanned by security audit providers tracked on SkillJury. Check the security audits section on this page for detailed results from Socket.dev and Snyk.

What are alternatives to ghost-scan-code?

Skills in the same category include review-management, conversation-memory, coverage, grimoire-aave.

How do I install ghost-scan-code?

Run the following command to install ghost-scan-code: npx skills add https://github.com/ghostsecurity/skills --skill ghost-scan-code

Related skills

More from ghostsecurity/skills

Related skills

Alternatives in Software Engineering