This skill should be used when the user requests to generate, create, or configure Content Security Policy (CSP) headers for Next.js applications to prevent XSS attacks and control resource loading. It analyzes the application to determine appropriate CSP directives and generates configuration via next.config or middleware. Trigger terms include CSP, Content Security Policy, security headers, XSS protection, generate CSP, configure CSP, strict CSP, nonce-based CSP, CSP directives.
/plugin marketplace add hopeoverture/worldbuilding-app-skills/plugin install csp-config-generator@hopeoverture/worldbuilding-app-skillsSecurity reminder hook that warns about potential security issues when editing files, including command injection, XSS, and unsafe code patterns
Kubernetes manifest generation, networking configuration, security policies, observability setup, GitOps workflows, and auto-scaling