General
PromptBeginner5 minmarkdown
- Validate and restrict CORS origins to known
trusted domains only.
0
Explore
95,610 skills indexed with the new KISS metadata standard.
trusted domains only.
never `hashlib` directly.
never hardcoded in settings.
`Function()`
`zod`
not just direct imports.
`yarn audit`
not vague recommendations.
JavaScript
verify:
TLS 1.2+).
API keys
SHA1 are never acceptable).
stored
HTTPS enforcement
X-Frame-Options
API keys
scrypt
missing expiration
context-aware encoding
proof of concept
session
OWASP guidelines
not theoretical warnings