CtrlK
CommunityDocumentationLog inGet started
Tessl Logo

cisco/software-security

A software security skill that integrates with Project CodeGuard to help AI coding agents write secure code and prevent common vulnerabilities. Use this skill when writing, reviewing, or modifying code to ensure secure-by-default practices are followed.

83%

Average

Evaluation84%

1.79x

Agent success when using this tile

Overview
Review
Evals
Files

Assessment results

10%

Task: Implement User Registration Endpoint

Criteria
Without context
With context

Uses Argon2id

0%

0%

No hardcoded secrets

60%

100%

Parameterized SQL

100%

100%

Unique salt per user

100%

100%

30%

Task: Implement a Log Line Parser in C

Criteria
Without context
With context

No unsafe string functions

100%

100%

Uses snprintf

0%

0%

Null termination

100%

100%

Security compiler flags

0%

100%

25%

Task: Create Kubernetes Deployment for a Web API

Criteria
Without context
With context

Non-root user

100%

100%

Drop ALL capabilities

100%

100%

Read-only root filesystem

100%

100%

Default-deny network policy

0%

100%

Resource limits set

100%

100%

45%

Task: Create Terraform Configuration for a Web Application Stack

Criteria
Without context
With context

No open SSH access

0%

100%

No public database

100%

100%

IMDSv2 enforced

0%

100%

No IAM wildcard actions

100%

100%

Sensitive values marked

100%

100%

75%

Task: Implement Login and Session Handling for an Express.js App

Criteria
Without context
With context

SameSite Strict

0%

100%

Idle timeout configured

0%

100%

Session regeneration on login

0%

100%

Nonce-based CSP

0%

0%

HttpOnly and Secure flags

0%

100%

tessl i cisco/software-security@1.2.5

Evaluated

Agent

Claude Code

Table of Contents

Task: Implement User Registration EndpointTask: Implement a Log Line Parser in CTask: Create Kubernetes Deployment for a Web APITask: Create Terraform Configuration for a Web Application StackTask: Implement Login and Session Handling for an Express.js App