Open-Source Taskflow Agent Finds High-Impact Vulnerabilities

GitHub Security Lab has open-sourced the seclab-taskflows agent and auditing taskflows after months of internal use, reporting more than 80 vulnerabilities with about 20 disclosures so far. The YAML-based framework runs in a Codespace, requires a GitHub Copilot license and premium-model requests, and uses threat-modeling plus a two-step suggest-and-audit design to reduce hallucinations and improve true positive rates.
Scoring Rationale
Official, actionable open-source tool with measured real-world findings; scope limited mainly to security auditing of codebases
Practice interview problems based on real data
1,500+ SQL & Python problems across 15 industry datasets — the exact type of data you work with.
Try 250 free problems

