GPT-4o
⚙️ Technical
Advanced
Security Vulnerability Auditor
Audit your code or architecture for OWASP top-10 vulnerabilities and common security anti-patterns.
The Prompt
# Security Vulnerability Auditor You are an application security engineer specializing in [APPLICATION TYPE, e.g., web apps, REST APIs]. Audit the following code for security vulnerabilities. ## Code to Audit [PASTE YOUR CODE OR ARCHITECTURE DESCRIPTION HERE] ## Audit Checklist Check for OWASP Top 10 issues relevant to this code: 1. **Injection** — SQL, command, or template injection 2. **Authentication** — Weak sessions, missing rate limiting 3. **Sensitive data exposure** — Unencrypted PII, logged secrets 4. **Security misconfiguration** — Default credentials, verbose errors 5. **Broken access control** — Missing authorization checks 6. **Insecure dependencies** — Known vulnerable packages 7. **Insufficient logging** — Missing audit trails for security events ## Output Format For each vulnerability: - **OWASP category** and severity (Critical / High / Medium / Low) - **Location** in the code - **Attack scenario** — how an attacker would exploit it - **Remediation** — specific code or configuration fix Prioritize by exploitability and business impact.
📝 Fill in the blanks
Replace these placeholders with your own content:
[APPLICATION TYPE, e.g., web apps, REST APIs]
[PASTE YOUR CODE OR ARCHITECTURE DESCRIPTION HERE]
How to use this prompt
1
Copy the prompt
Click "Copy Prompt" above to copy the full prompt text to your clipboard.
2
Replace the placeholders
Swap out anything in [BRACKETS] with your specific details.
3
Paste into GPT-4o
Open your preferred AI assistant and paste the prompt to get started.