General
PromptBeginner5 minmarkdown
- Use `bcrypt` or `argon2-cffi` for password hashing
never `hashlib` directly.
0
Explore
115,641 skills indexed with the new KISS metadata standard.
never `hashlib` directly.
trusted domains only.
never hardcoded in settings.
`Function()`
`zod`
not just direct imports.
`yarn audit`
not vague recommendations.
JavaScript
TLS 1.2+).
API keys
SHA1 are never acceptable).
verify:
X-Frame-Options
stored
HTTPS enforcement
API keys
scrypt
missing expiration
proof of concept
context-aware encoding
session
OWASP guidelines
# Security Vulnerability Auditor