An autonomous AI Security Co-developer skill for Google Antigravity and the Gemini Enterprise Agent Platform, powered by the CodeMender CLI (cm).
This skill equips Antigravity agents to autonomously discover AST and taint security vulnerabilities, synthesize and execute live exploit Proof-of-Concepts (PoCs), perform Root Cause Analysis (RCA), synthesize context-aware remediation patches validated against local test suites, and generate enterprise compliance reports in SARIF and HTML formats.
Note
Access Allowlist & Availability: CodeMender is currently available to a limited set of customers in Public Preview (Pre-GA) and requires Google Cloud project allowlisting. Contact your Google Cloud sales or account team to request access to the CodeMender CLI artifact repository and backend APIs.
Warning
Pre-GA & Public Preview Notice: Pre-GA products are in various stages of internal testing and review. As such, customers should closely supervise the use of CodeMender, and not use CodeMender in situations where serious errors cannot be corrected. This product is made available solely for limited testing and evaluation, and may not be used for commercial or production purposes.
Caution
Safety Filters & Human Confirmation Notice: When disabling human confirmation of write and tool execution actions (as configured in ~/.codemender/config.yaml or non-interactive CLI flags like -y and --bypass-warning), Customer is responsible for such modification under Section 20(j) ("Modifying, Disregarding, or Disabling Safety Filters") of the Google Cloud Service Specific Terms. Customers agree not to automatically bypass or circumvent other responses requiring human confirmation.
CodeMender operates through an autonomous, State-Aware State Machine designed for real-world multi-turn development workflows:
┌──────────────────────────────┐
│ Phase 0: Rapid State Probing │
│ (Zero-Token CWD Probe) │
└──────────────┬───────────────┘
│
┌────────────────────────────┼────────────────────────────┐
▼ ▼ ▼
[Condition A: Clean Workspace] [Condition B: Dirty Working Tree] [Condition C: Interrupted Task]
Run Initial Full Scan Run Incremental Reconcile Resume Active Session
(cm find . -y) (cm find --diff-only -y) (cm session resume <id>)
│ │ │
└────────────────────────────┼────────────────────────────┘
▼
┌──────────────────────────────┐
│ Phase 1: Contextual Triage │
│ (Read .exploit/ or Verify) │
└──────────────┬───────────────┘
▼
┌──────────────────────────────┐
│ Phase 2: Patch & Test Loop │
│ cm fix ➔ npm test ➔ Status │
└──────────────┬───────────────┘
▼
┌──────────────────────────────┐
│ Phase 3: Session Retention │
│ (Preserve state / Clean only │
│ when explicitly asked) │
└──────────────────────────────┘
- State-Aware Entry Probing (
cm report&git status): Rapidly evaluates workspace status to avoid redundant full scans, leveraging cached AST states and incremental analysis. - AST & Taint Discovery (
cm find): Headless full-codebase AST and data-flow taint analysis powered bygemini-3.7-flashwith automated severity prioritization. - Autonomous Exploit Verification (
cm verify): Synthesizes and executes dynamic PoC exploit payloads under.exploit/(e.g.,poc.js,exploit.py,REPORT.md) inside process-level isolation to eliminate false positives. - Patch Synthesis & Regression Testing (
cm fix): Synthesizes language-aware patches and automatically executes configured test suites (npm test,pytest,cargo test) to ensure zero behavioral regression. - Enterprise SARIF & HTML Reporting (
cm report): Exports standard OASIS SARIF v2.1.0 reports for GitHub Advanced Security / CI/CD pipelines, or interactive standalone HTML audit dashboards.
.
├── SKILL.md # Primary agent skill definition and rules of engagement
├── README.md # Repository documentation, disclaimers, and setup guide
├── LICENSE # Apache 2.0 open-source license
├── .gitignore # Ignore rules for OS, cache, and temporary exploit files
├── references/ # Deep reference documentation
│ ├── cli_reference.md # Advanced command catalog, sandboxing, and session matrix
│ ├── config_schema.md # Complete schema reference for .codemender/config.yaml
│ └── vibe_coding_pitfalls.md # Top GenAI & Vibe Coding security vulnerability patterns
└── scripts/
└── install_cm.sh # Cross-platform automated installer for the cm CLI binary
You can ask Antigravity directly inside your IDE or agy CLI session:
"Install the CodeMender security skill from
https://github.com/edwardc-gcp/codemender-security"
Antigravity will automatically clone the repository into your global skills directory (~/.gemini/config/skills/codemender-security) and index the skill immediately.
git clone https://github.com/edwardc-gcp/codemender-security.git ~/.gemini/config/skills/codemender-security# Clone directly into project customization directory
git clone https://github.com/edwardc-gcp/codemender-security.git .agents/skills/codemender-security
# Or add as a Git Submodule for team collaboration
git submodule add https://github.com/edwardc-gcp/codemender-security.git .agents/skills/codemender-security-
Google Cloud Authentication: Ensure your environment has Application Default Credentials (ADC) configured and the Vertex AI API enabled:
gcloud auth application-default login gcloud services enable aiplatform.googleapis.com -
Install the CodeMender CLI (
cm):[!IMPORTANT] Downloading the binary requires project allowlisting on the Google Cloud Artifact Registry repository.
bash scripts/install_cm.sh export PATH="$HOME/bin:$PATH"
-
Verify Environment Setup:
cm --version gcloud auth application-default print-access-token >/dev/null && echo "GCP ADC: OK"
| Operation | Command | Description |
|---|---|---|
| Full Codebase Scan | cm find . -y --unrestricted --model gemini-3.7-flash |
Scans entire repository for AST/taint vulnerabilities (Gemini 3.7 Flash default). |
| Scan PR / Diff Only | cm find . -y --diff-only --unrestricted |
Analyzes only modified files or uncommitted Git diffs (Incremental reconciliation). |
| Severity Filter | cm find . -y --severity CRITICAL,HIGH --unrestricted |
Filters discovery to high-impact findings only. |
| Live Token Counter | cm find . -y --compact --unrestricted |
Displays rolling token counter (Tokens: 40k in / 12k out / 60k total). |
| Verify Finding (PoC) | cm verify <finding-id> --unrestricted --bypass-warning -y |
Generates and executes live exploit PoC under .exploit/. |
| Guided Remediation | cm fix <finding-id> -c "<guidance>" --unrestricted -y |
Generates patch guided by context (e.g., -c "Use Secret Manager"). |
| Inspect Patch Diff | cm vcs diff |
Displays unified diff synthesized by the remediation agent. |
| Rollback Patch | cm vcs revert |
Reverts patch changes if test validation fails. |
| Export SARIF for CI/CD | cm report -f sarif > results.sarif |
Outputs OASIS SARIF v2.1.0 for GitHub Code Scanning / CI. |
| Interactive HTML Report | cm report -f html > report.html |
Generates self-contained HTML vulnerability dashboard. |
| Update CodeMender CLI | cm update |
Checks for updates and performs atomic CLI upgrade. |
| View Token Statistics | cm stats |
Summarizes token usage (input, output, cached, thought, tool-use). |
CodeMender can be customized on a per-project basis via .codemender/config.yaml:
version: 1
team_id: "secops-team"
model: "gemini-3.7-flash"
scan:
extensions:
include: [".py", ".java", ".go", ".js", ".ts", ".c", ".cc", ".cpp", ".rs"]
exclude: ["node_modules", "vendor", ".git", "dist", "build", "bin", "*.min.js"]
max_file_size_kb: 500
incremental: true
build:
# Executed automatically by `cm fix` to verify zero regressions before applying patches
command: "npm test" # Alternatives: "pytest", "go test ./...", "cargo test", "make build && make test"
sandbox:
enabled: true # Runs local tool execution inside process-level sandbox
mounts:
target_dir: "."
network:
profile: "permissive-closed" # Options: "permissive-closed" (isolated) | "permissive-open"
security:
protected_files:
- "~/.ssh/*"
- "~/.gnupg/*"
project_paths: []
tools:
human_confirmation: true
confirm_commands: false
confirm_writes: false
vcs:
type: "git"For full details on configuration options, see the Configuration Schema Reference.
- CLI Advanced Reference & Troubleshooting: Detailed parameter specifications, OS sandboxing architecture, session resume lifecycle, and error matrix.
- Configuration Schema: Complete specification for
.codemender/config.yaml. - GenAI & Vibe Coding Pitfalls: Top 5 vulnerability patterns in LLM-generated code and remediation strategies.
Distributed under the Apache 2.0 License. See LICENSE for details.