insecure-defaults
trailofbits/skills
Detects fail-open insecure defaults such as hardcoded secrets, weak auth, or permissive security that allow production apps to run unsafely, guiding auditors through discovery, verification, confirmation, and reporting steps during security reviews or deployment validation.