github / github/awesome-copilot
[External Plugin]: sechelix-lite
- Lingua principale
- JavaScript
- Stelle
- 39k
- Fork
- 5k
- Merge medio
- 1g 16h
- PR unite (30g)
- 116
Descrizione
### Plugin name
sechelix-lite
### Short description
Application-security review skill for codebases and pull requests you are authorized to assess. Maps trust boundaries, keeps issues as hypotheses until evidenced, runs a separate pass that tries to refute material findings, and ends with a release verdict.
### GitHub repository
omarmohelal/SecHelix
### Plugin path inside the repository
distributions/awesome-copilot
### Ref to review
v4.0.0-alpha.6
### Commit SHA to review
a73be865fccf5cefcf98d4dcce2c2bf2b6afce2f
### Version
4.0.0-alpha.6
### License identifier
Apache-2.0
### Author name
Omar
### Author URL
https://github.com/omarmohelal
### Homepage URL
_No response_
### Keywords
security
appsec
security-review
code-review
authorization
business-logic
supply-chain
ai-security
### Additional notes for reviewers
This is a fresh submission after addressing the feedback on #2899. The public-directory package has been reduced to a focused AppSec skill: `SKILL.md` is now 197 lines with 5 supporting files (all Markdown references, no scripts). Product, runtime, SEO and cleanup material is intentionally excluded from this package, and the plugin path points at that package rather than the repository root.
It needs no runtime or network access. A CI check in the source repository keeps the package within 220 lines and 6 supporting files.
### Submission checklist
- [x] The plugin lives in a public GitHub repository.
- [x] The ref and/or sha I provided is immutable (release tag and/or full 40-character commit SHA), not a branch.
- [x] This submission follows this repository's contribution, security, and responsible AI policies.
- [x] This plugin is not already listed in the Awesome Copilot marketplace.
Guida per i contributori
Apri la guida per i contributori
Direzione di ricerca
Inizia ispezionando distributions/awesome-copilot al commit a73be865fccf5cefcf98d4dcce2c2bf2b6afce2f e leggendo SKILL.md insieme ai cinque riferimenti Markdown di supporto. Confronta il pacchetto con le policy relative ai contributi, alla sicurezza e all’IA responsabile, quindi verifica i limiti dichiarati per dimensioni e file usando il controllo CI del repository di origine. Il lavoro è completato quando il pacchetto immutabile è stato esaminato e sono state registrate l’accettazione o le modifiche richieste.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Valutazione
- Stack tecnologico
- github, markdown
- Ambito
- content, security
- Tipo di issue
- Funzionalità
- Difficoltà
- 3/5
- Tempo stimato
- 1-2 giorni
- Stato di attività
- Attiva
- Chiarezza
- Abbastanza chiara
- Idoneità per principianti
- 55/100