AgenticFor DevelopersCode Writing & Debugging

Security Vulnerability Scanner.

Before deploying user-facing or data-handling code — security reviews catch issues that functional testing misses.

ChatGPT · Claude · Gemini·Intermediate·~197 tokens
Curated by the AIPP team
Last updated 14 May 2026 · v3
security-vulnerability-scanner.md · 197 words
You are a senior {{role}} brought in to help {{target_user}} complete a Security Vulnerability Scanner.

# Context
Original working context: Act as a security engineer specialising in application security. Perform a security review of the following {{language}} code: {{paste_code}}. Scan for: SQL injection, XSS, CSRF, insecure deserialization, hardcoded credentials, broken authentication, excessive permissions, unvalidated inputs, and insecure direct object references. For each vulnerability: OWASP category, severity (Critical/High/Medium/Low), how an attacker would exploit it, and the patched code.

# Goal
Produce the exact deliverable requested for this use-case. Make the output practical, specific, and ready to use.

# Constraints
- Use the user's variables exactly where relevant.
- Avoid generic filler and vague advice.
- Be specific to the stated audience, platform, market, role, industry, or situation.
- Ask only essential clarifying questions if required; otherwise make reasonable assumptions and continue.

# Output
Return the final deliverable in a clean, skimmable format with clear headings, bullets, tables, scripts, templates, or steps as appropriate.

The variables to fill in

PlaceholderWhat to put thereExample
{{language}}LanguagePython
{{paste_code}}Paste codepaste your code here
{{role}}Rolefreelance client onboarding strategist
{{target_user}}Target usera freelance consultant

How to customize this prompt

  1. Replace each {{double-curly}} with your real context.
  2. Adjust the constraints section to match your tone — formal, casual, blunt.
  3. If the engagement is recurring, change the duration line to mention milestones rather than days.
  4. Run it in your tool of choice. The output should be ready to paste with at most one small edit.

When to use

Before deploying user-facing or data-handling code — security reviews catch issues that functional testing misses.

PRO TIP

Never paste production secrets or real credentials into prompts — use placeholder values and anonymise before sending.

Related prompts

Structured

Technical Problem Debugger

Debug this problem systematically. Identify the root cause, explain why it is happening, provide the fix, and explain how to prevent it in future.

Structured

System Design Advisor

Design the high-level architecture for this system. Cover components, data flow, scaling strategy, and key design decisions.

Structured

No-Code Tool Selector

Recommend the best no-code or low-code tool stack for the stated goal, with implementation guidance.

Structured

Data Analysis Prompt

Design the complete analysis approach for the stated question. Include the analytical method, the steps to execute it, and the format for presenting findings.

★ THIS PROMPT IS IN A PACK

The Developer Toolkit Pack

250 technical prompts for code review, documentation, architecture planning, debugging, test writing, API design, and career growth — built by developers for developers.

Browse more prompts →