Reviews Java backend for secrets, input validation, authZ, IDOR, data exposure, dependency safety. TRIGGER: HIGH-risk delivery or auth/data changes. NOT FOR: secret scanning (use security-sentinel).
$npx -y skills add listener-he/java-harness-agent --skill security-review-checklistInstalls into the current project.
Run `npx skills use "https://github.com/listener-he/java-harness-agent" --skill "listener-he/java-harness-agent/security-review-checklist"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/listener-he/java-harness-agent" that are relevant to the current task. Run `npx skills add "https://github.com/listener-he/java-harness-agent"` and select the relevant skills, then follow their instructions.