adr
無料Create a new Architecture Decision Record (ADR) for a proposed feature or design change.
日本語の概要は準備中です。原文の説明を表示しています。
Scan the codebase for security vulnerabilities. Check OWASP top 10, input validation, auth, crypto, and known BACKLOG security items.
インストールする前に、エージェントに与えられる指示の中身を確認できます。
Scan the codebase for security vulnerabilities and verify that known issues from docs/ai/BACKLOG.md (Security section) are tracked.
__proto__, constructor, prototype are blocked in all code paths that apply external data to objectsinnerHTML, {@html}, document.write, eval usage; verify user-supplied strings are escapedimport(), Function() with user inputvalidateSongData() / validateRecoverySnapshot() are called before casting raw JSON to Songcrypto.getRandomValues(), not Math.random()docs/ai/BACKLOG.md Security section — verify all known vulnerabilities are listedsecurity.test.ts covers each known issuesrc/lib/multiDevice/ — all filessrc/lib/validate.ts — data validationsrc/lib/storage.ts — persistence layersrc/lib/audio/engine.ts — worklet bridgeworkers/signaling/ — signaling server (if present)src/lib/multiDevice/security.test.ts.## Security Audit Report
### Category: [Input Validation / Auth / Crypto / Network / Resources]
#### [Vulnerability name]
- **Severity**: Critical / High / Medium / Low / Info
- **Location**: file:line
- **Description**: what's wrong
- **Status**: Known (in BACKLOG) / New finding / Tested (in security.test.ts)
- **Recommendation**: fix approach
### Summary
- X critical, Y high, Z medium findings
- N known issues tracked in BACKLOG
- M gaps in test coverage
まだレビューはありません。使ってみた感想をお寄せください。
概要と使いどころ
Create a new Architecture Decision Record (ADR) for a proposed feature or design change.
日本語の概要は準備中です。原文の説明を表示しています。
Mark an ADR as Implemented (or Superseded) and archive it, following INDEX.md conventions.
日本語の概要は準備中です。原文の説明を表示しています。
Check docs/ai/ spec files and ADRs for inconsistencies with the actual codebase. Report only, no modifications.
日本語の概要は準備中です。原文の説明を表示しています。
Scan the project for refactoring opportunities, then fix them. No behavior/visual changes.
日本語の概要は準備中です。原文の説明を表示しています。
Check docs/ai/ spec files and ADRs for inconsistencies with the codebase, then fix all discrepancies.
日本語の概要は準備中です。原文の説明を表示しています。