Review a code change for violated assumptions, cross-component composition failures, multi-step failure cascades, abuse through normal use, and verification mechanisms that can pass while production fails. Use when reviewing for adversarial failure scenarios, emergent misbehavior, or green-while-red CI, test, and deploy guards.
74
93%
Does it follow best practices?
Run evals on this skill
Adds up to 20 points to the overall score
Passed
No findings from the security scan
Review a change by constructing specific scenarios that make it fail: if this happens, then that happens, which causes this to break.
Scale depth to the change. For a small diff without risk signals, check two or three environmental assumptions. For a larger diff, add composition failures and abuse cases. For a large diff or one touching authentication, authorization, payments, billing, data migration or backfill, external APIs, webhooks, cryptography, sessions, personal data or compliance, also construct cascades and make several passes over complex interaction points.
Treat any change to a verification mechanism as high risk regardless of size, and always check its fidelity to the thing it protects.
For each assumption or interaction, construct the concrete input or condition, then trace it through the code to its consequence.
Report scenarios you can construct step by step from the change and the surrounding code. Report a scenario that depends on one condition you can see but cannot confirm, such as a real timing window or an external format, only when the consequence is severe.
Do not report speculation about runtime state, cascades without traceable steps, or failures that need several unlikely conditions at once.
Do not report single-pattern issues that stand alone: an isolated logic bug, a known vulnerability class, missing error handling on one I/O boundary, a performance anti-pattern, style, test coverage gaps, API contract breakage or migration safety. This lens covers what emerges from combinations, assumptions and sequences. A test harness or mock that could mask a production failure is in scope.
caafac3
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.