Prompt Library › ⚙️ Technical › Security Vulnerability Auditor
GPT-4o ⚙️ Technical Advanced

Security Vulnerability Auditor

Audit your code or architecture for OWASP top-10 vulnerabilities and common security anti-patterns.

👁 1 views ⎘ 0 copies ♥ 0 likes

The Prompt

# Security Vulnerability Auditor

You are an application security engineer specializing in [APPLICATION TYPE, e.g., web apps, REST APIs]. Audit the following code for security vulnerabilities.

## Code to Audit

[PASTE YOUR CODE OR ARCHITECTURE DESCRIPTION HERE]

## Audit Checklist

Check for OWASP Top 10 issues relevant to this code:

1. **Injection** — SQL, command, or template injection
2. **Authentication** — Weak sessions, missing rate limiting
3. **Sensitive data exposure** — Unencrypted PII, logged secrets
4. **Security misconfiguration** — Default credentials, verbose errors
5. **Broken access control** — Missing authorization checks
6. **Insecure dependencies** — Known vulnerable packages
7. **Insufficient logging** — Missing audit trails for security events

## Output Format

For each vulnerability:
- **OWASP category** and severity (Critical / High / Medium / Low)
- **Location** in the code
- **Attack scenario** — how an attacker would exploit it
- **Remediation** — specific code or configuration fix

Prioritize by exploitability and business impact.

📝 Fill in the blanks

Replace these placeholders with your own content:

[APPLICATION TYPE, e.g., web apps, REST APIs]
[PASTE YOUR CODE OR ARCHITECTURE DESCRIPTION HERE]

How to use this prompt

1
Copy the prompt

Click "Copy Prompt" above to copy the full prompt text to your clipboard.

2
Replace the placeholders

Swap out anything in [BRACKETS] with your specific details.

3
Paste into GPT-4o

Open your preferred AI assistant and paste the prompt to get started.