Skip to main content
Back to registry

owasp-top-10

nickcrew/claude-ctx-plugin

Expert guidance for identifying, preventing, and remediating the most critical web application security risks based on OWASP Top 10 2021.

Installs254
Install command
npx skills add https://github.com/nickcrew/claude-ctx-plugin --skill owasp-top-10
Security audits
Gen Agent Trust HubPASS
SocketPASS
SnykPASS
About this skill
Expert guidance for identifying, preventing, and remediating the most critical web application security risks based on OWASP Top 10 2021. Ranked by Risk Severity: Load detailed guidance for each vulnerability: SAST (Static) : SonarQube, Semgrep, ESLint security plugins DAST (Dynamic) : OWASP ZAP, Burp Suite SCA (Dependencies) : npm audit, Snyk, Dependabot Secrets Scanning : GitGuardian, TruffleHog Penetration Testing : Metasploit, Kali Linux tools - Conducting security audits and code reviews - Implementing secure coding practices in new features - Reviewing authentication and authorization systems - Assessing input validation and sanitization - Evaluating third-party dependencies for vulnerabilities - Designing security controls and defense-in-depth strategies - Preparing for security certifications or compliance audits - Investigating security incidents or suspicious behavior - A01 - Broken Access Control (↑ from #5) - A02 - Cryptographic Failures (formerly Sensitive Data Exposure) - A03 - Injection (↓ from #1) - A04 - Insecure Design (NEW) - A05 - Security Misconfiguration - A06 - Vulnerable and Outdated Components - A07 - Identification and Authentication Failures - A08 - Software and Data Integrity Failures (NEW) - A09 - Security Logging and Monitoring Failures - A10 - Server-Side Request Forgery (SSRF) (NEW) - Identify Scope : Determine application components and attack...

Source description provided by the upstream skill listing. Community reviews and install context appear in the sections below.

Community Reviews

Latest reviews

Sign in to review

No community reviews yet. Be the first to review.

Browse this skill in context
FAQ
What does owasp-top-10 do?

Expert guidance for identifying, preventing, and remediating the most critical web application security risks based on OWASP Top 10 2021.

Is owasp-top-10 good?

owasp-top-10 does not have approved reviews yet, so SkillJury cannot publish a community verdict.

What agent does owasp-top-10 work with?

owasp-top-10 currently lists compatibility with codex, gemini-cli, opencode, cursor, github-copilot, claude-code.

What are alternatives to owasp-top-10?

Skills in the same category include telegram-bot-builder, flutter-app-size, sharp-edges, iterative-retrieval.

How do I install owasp-top-10?

npx skills add https://github.com/nickcrew/claude-ctx-plugin --skill owasp-top-10

Related skills

More from nickcrew/claude-ctx-plugin

Related skills

Alternatives in Software Engineering