Run real SAST and secret-scanning tools locally (semgrep, bandit, gitleaks, trivy). Use when auditing a codebase for vulnerabilities, exposed secrets, or vulnerable dependencies before shipping or on demand.
$npx -y skills add jnotsknab/mux-swarm --skill security-scanInstalls into the current project.
Run `npx skills use "https://github.com/jnotsknab/mux-swarm" --skill "jnotsknab/mux-swarm/security-scan"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/jnotsknab/mux-swarm" that are relevant to the current task. Run `npx skills add "https://github.com/jnotsknab/mux-swarm"` and select the relevant skills, then follow their instructions.