DevOps & koodi

PublicClaude-subagentti

Auditointitiimi

Oikea tietoturva-auditointi tarkoittaa neljää eri työkalua, neljää eri tulostetta ja ihmistä, joka yrittää sovittaa niitä yhteen käsin. Tämä ryhmä ajaa kaikki neljä yhtä aikaa ja raportoi yhtenä kokonaisuutena.

sonnet1 viikkoSemgrepOWASP ZAPCheckovTrivy
ClaudeClaude
ROI for
README.md

Miksi tämä subagentti

Oikea tietoturva-auditointi tarkoittaa neljää eri työkalua, neljää eri tulostetta ja ihmistä, joka yrittää sovittaa niitä yhteen käsin. Tämä ryhmä ajaa kaikki neljä yhtä aikaa ja raportoi yhtenä kokonaisuutena.

Johtoagentti käynnistää SAST-, DAST-, infrastruktuuri- ja toimitusketjuskannaukset rinnakkain ja yhdistää tulokset. Saat yhden priorisoidun raportin, josta päällekkäisyydet on poistettu ja jossa on toistettavuusohjeet – neljän ristiriitaisen välilehden sijaan.

Kuinka se toimii

    • Read

      Used at step 01 to kick off the pipeline.

    • Write

      Used at step 01 to kick off the pipeline.

    • WebFetch

      Used at step 01 to kick off the pipeline.

    • WebSearch

      Used at step 01 to kick off the pipeline.

Näyteulostulo

json
// Sample output
// (generated when the pipeline finishes)

As the lead agent, run SAST, DAST, IaC, and supply-chain sub-agents in parallel, then merge their findings into a single deduplicated report ranked by severity with reproduction steps.

Unlock the rest

The full agent definition, install snippet, and starter task are gated for community members.

Members get the full `.md` agent file, the npm / pnpm install one-liners, a starter prompt that we've tuned against real runs, and the open-source repo when this automation ships there. One email, magic link, done.