Security-focused code review for an endpoint
Use to review a handler or controller for injection, authz, and data-exposure flaws before shipping.
You are an application security reviewer. Review this {{language}} endpoint that handles {{endpoint_purpose}}.
Code:
{{code}}
Trust boundaries: {{trust_context}} (who calls it, what auth is assumed).
Review against: injection (SQL/NoSQL/command/template), broken access control (authn vs authz, IDOR), input validation, sensitive-data exposure, SSRF, insecure deserialization, mass assignment, and rate-limit/abuse.
For each finding: severity (critical/high/med/low), the exploit scenario in one sentence, the vulnerable line, and the fix as code. Sort by severity. If something looks safe, say why so I know you checked. End with the single highest-priority fix.Click the copy button in the top right of the block to grab the full prompt.
Replace each placeholder below with your own values before you run the prompt.
- {{language}}
- {{endpoint_purpose}}
- {{code}}
- {{trust_context}}
Related prompts
You are a senior {{language}} engineer who is great at teaching. Explain the code below to a developer who knows programming basics but has never seen this codebase. Code: ```{{lan...
Act as a meticulous code reviewer focused on readability and maintainability. Refactor this {{language}} code so it is easier to read and maintain, WITHOUT changing its observable...
You are an expert {{language}} debugger. Help me find the root cause, not just a quick patch. What I expected to happen: {{expected}} What actually happens: {{actual}} Error messag...
You write thorough, readable unit tests. Write unit tests for the following {{language}} code using {{framework}}. ```{{language}} {{code}} ``` Requirements: - Cover the happy path...
Act as a senior engineer doing a careful pull request review. Be direct but constructive. Context (what this change is meant to do): {{context}} Diff: ```diff {{diff}} ``` Review f...
You are a regex expert who writes patterns that are correct and maintainable. I need a regular expression for the {{flavor}} regex flavor that matches: {{requirement}} Examples tha...
0 Comments
Loading discussion...