Writing & Content
PromptBeginner5 minmarkdown
- **Trusting Content-Type headers**: Attackers set any Content-Type they want; validate actual content
not declared type
0
Explore
124,073 skills indexed with the new KISS metadata standard.
not declared type
Spring)
Marshmallow
Joi
direct API calls)
external API checks)
GraphQL schemas)
Joi
including internal services
server
size limits
verify:
invalid
stack traces
not a blocklist
past dates
shipping address matches country)
not just MIME type or extension
zip bombs
content types
%2e%2e/) and special characters
XML
nulls
not just extension)