Security Best Practices

Perform language and framework specific security best-practice reviews and suggest improvements. Trigger only when the user explicitly requests security best practices guidance, a security review/report, or secure-by-default coding help.…

About this skill

Perform language and framework specific security best-practice reviews and suggest improvements. Trigger only when the user explicitly requests security best practices guidance, a security review/report, or secure-by-default coding help. Trigger only for supported languages (python, javascript/typescript, go). Do not

Maintained by OpenAI. The source includes the instructions and any supporting files needed to use this skill.

Inside the instructions

  • 01Overview
  • 02Workflow
  • 03Workflow Decision Tree
  • 04Avoid Using Incrementing IDs for Public IDs of Resources
  • 05A note on TLS

Before you start

  1. Read the instructions and check tool or account requirements.
  2. Install the complete folder when the skill references scripts or other files.
  3. Provide your task context, then review the agent's output.

Source

openai/skills / security-best-practices

Source reviewed October 2, 2026 · Apache-2.0