Performs a white-box security review of Atlassian Forge apps using structured, Forge-specific security rules and evidence-driven reporting. Use when the user asks for a Forge security review, security audit, vuln assessment, pentest-style code review, authz review, tenant isolation analysis, web trigger hardening, or static analysis execution for a Forge app.
$npx -y skills add atlassian/forge-skills --skill forge-security-reviewInstalls into the current project.
Run `npx skills use "https://github.com/atlassian/forge-skills" --skill "atlassian/forge-skills/forge-security-review"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/atlassian/forge-skills" that are relevant to the current task. Run `npx skills add "https://github.com/atlassian/forge-skills"` and select the relevant skills, then follow their instructions.