Perform security-focused review and hardening of code, configurations, and designs. Use when reviewing authentication, authorization, input handling, secrets, dependencies, or any security-sensitive change. Also trigger on requests involving OWASP, threat modeling, secure coding, or vulnerability concerns.