home/categories/security/trailofbits-skills-plugins-insecure-defaults-skills-insecure-defaults-skill-md
securitytesting-security

insecure-defaults

Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurely in production. Use when auditing security, reviewing config management, or analyzing environment variable handling.

trailofbits
maintainer
trailofbits
更新於 1/28/2026
星標
4466
分支
385
quick start

Installation and usage

Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurely in production. Use when auditing security, reviewing config management, or analyzing environment variable handling.

安裝
$ install --globalskills.sh
使用

安裝後,您可以透過在終端機執行以下指令來使用此技能:

skills use insecure-defaults