wheels security
Base command for security management and vulnerability scanning.
Synopsis
Description
The wheels security
command provides comprehensive security tools for Wheels applications. It scans for vulnerabilities, checks security configurations, and helps implement security best practices.
Subcommands
scan
Scan for security vulnerabilities
Options
--help
Show help information
--version
Show version information
Direct Usage
When called without subcommands, performs a quick security check:
Output:
Examples
Quick security check
Check security status
Generate security report
Check specific area
Security Areas
Code Security
SQL injection detection
XSS vulnerability scanning
Path traversal checks
Command injection risks
Configuration
Security headers
CORS settings
Authentication config
Session management
Dependencies
Vulnerable packages
Outdated libraries
License compliance
Supply chain risks
Infrastructure
SSL/TLS configuration
Port exposure
File permissions
Environment secrets
Security Configuration
Configure via .wheels-security.json
:
Security Policies
Define Policies
Create .wheels-security-policy.yml
:
Policy Enforcement
Integration
Git Hooks
.git/hooks/pre-commit
:
CI/CD Pipeline
IDE Integration
Security Headers
Check Headers
Configure Headers
Dependency Scanning
Check Dependencies
Update Vulnerable Dependencies
License Compliance
Security Fixes
Automatic Fixes
Manual Fixes
The command provides guidance:
Security Reports
Generate Reports
Report Contents
Executive summary
Detailed findings
Remediation steps
Compliance status
Trend analysis
Compliance
Standards
Check compliance with standards:
Security Monitoring
Continuous Monitoring
Alert Configuration
Security Best Practices
Regular Scans: Schedule automated scans
Fix Quickly: Address high-severity issues immediately
Update Dependencies: Keep libraries current
Security Training: Educate development team
Defense in Depth: Layer security measures
Common Vulnerabilities
SQL Injection
XSS
Emergency Response
Incident Detection
Lockdown Mode
Notes
Security scans may take time on large codebases
Some checks require running application
False positives should be documented
Regular updates improve detection accuracy
See Also
wheels security scan - Detailed security scanning
wheels analyze security - Security analysis (deprecated)
Last updated
Was this helpful?