Performs a comprehensive security audit of a specific directory or file using automated scanning tools (like Semgrep, Snyk, or Trivy). Use when the user needs to identify vulnerabilities, secrets leakage, or misconfigurations. Handles tool discovery, state-based risk assessment, and structured reporting.