From b6af626d719497089119657cf32b5b3356bb158c Mon Sep 17 00:00:00 2001 From: Jean-Paul van Ravensberg <14926452+DevSecNinja@users.noreply.github.com> Date: Wed, 23 Sep 2026 09:30:48 +0200 Subject: [PATCH] fix(agents): pin security analyzer to Sonnet 5 Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> --- .github/agents/sast-sca-security-analyzer.agent.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/agents/sast-sca-security-analyzer.agent.md b/.github/agents/sast-sca-security-analyzer.agent.md index 258bbac..0837329 100644 --- a/.github/agents/sast-sca-security-analyzer.agent.md +++ b/.github/agents/sast-sca-security-analyzer.agent.md @@ -2,7 +2,7 @@ description: "Use when: performing SAST (Static Application Security Testing), SCA (Software Composition Analysis), scanning source code or binaries for security flaws, auditing third-party dependency vulnerabilities, checking policy compliance, generating structured security reports, identifying CWE-mapped flaws with file/line precision, reviewing open-source license risk, or producing CI/CD-gate security findings." name: "sast-sca-security-analyzer" tools: ["search/codebase", "search", "edit/editFiles", "web/fetch", "read/terminalLastCommand"] -model: "Claude Sonnet 4.6" +model: "Claude Sonnet 5" argument-hint: "Describe what to scan (e.g. 'scan src/ for SAST flaws', 'SCA audit of package.json', 'full SAST+SCA on the authentication module', 'policy compliance check for PCI-DSS')" ---