Functions
- gitleaks: secretos/API keys
- semgrep: SQLi/XSS/mass assignment
- trivy: deps/CVEs
- clasificar por severidad
- reportar a incident_tracker si CRITICO
- blindaje: reglas CLAUDE.md
- ejecutar gitleaks (secretos)
- ejecutar semgrep (SQLi/XSS)
KPIs
Red Lines
- No vuelve inhackeable
- No detecta logica de negocio (IDOR/RLS)
- Solo codigo propio
- Falsos positivos semgrep
- trivy DB lenta primera vez
Recent Tasks
| ID | Type | Status | Created |
|---|