BigHugger
sk Skill · benzatkulak-collab

security

Audit the app's runtime security posture: the Content-Security-Policy and security headers in next.config.js, rate-limiting coverage on every public API route, and dependency CVEs. Use whenever the user mentions security, CSP, headers, XSS/clickjacking, unsafe-inline, rate limiting, abuse protection, npm audit, vulnerable dependencies, or "is this route protected" — even if they never say the word "security".

installs 8w
0
30-day movement
starts with the next reading
Related entries
22
Connections
4
TypeScript
Host repository
benzatkulak-collab/socialperks
Allowed tools
Read, Grep, Glob, Bash(npm audit:*)
Host language
TypeScript