Writing & Content
PromptBeginner5 minmarkdown
- **Trusting Content-Type headers**: Attackers set any Content-Type they want; validate actual content
not declared type
0
Explore
17,973 skills indexed with the new KISS metadata standard.
not declared type
@Size
Marshmallow
Joi
GraphQL schemas)
direct API calls)
external API checks)
XSS
valid foreign keys)
shipping address matches country)
content types
parameterization for SQL)
lengths (min/max for strings)
account numbers
SQL injection cheat sheets)
database errors
URL encoding
UNIQUE
types
APIs
actionable messages that guide correction without exposing system internals
XSS escaping
escaping context-specific threats
data sanitization