skills/shivamsinghchahar/rails-skills/rails-security-audits

rails-security-audits

SKILL.md

Rails Security Audits

Identify and fix security vulnerabilities in Rails applications. This skill covers vulnerability scanning, dependency auditing, and security best practices.

Quick Start

Add security gems:

group :development, :test do
  gem 'brakeman', require: false
  gem 'bundler-audit', require: false
end

Run security scans:

# Scan for Rails vulnerabilities
bundle exec brakeman

# Audit dependencies for known vulnerabilities
bundle exec bundler-audit check --update

# Update vulnerability database
bundle exec bundler-audit update

Setup security headers in Rails:

# config/initializers/content_security_policy.rb
Rails.application.configure do
  config.content_security_policy do |policy|
    policy.default_src :self
    policy.script_src :self, :unsafe_inline
    policy.style_src :self, :unsafe_inline
  end
end

Core Topics

Brakeman Security: See brakeman-security.md for static analysis and common vulnerabilities.

Bundler Audit: See bundler-audit.md for dependency vulnerability tracking.

Security Headers: See csp-headers.md for content security policy and headers.

Patterns: See patterns.md for common vulnerabilities and fixes.

Examples

See examples.md for configurations.

Weekly Installs
3
First Seen
Feb 15, 2026
Installed on
amp3
github-copilot3
codex3
gemini-cli3
cursor3
opencode3