login-csrf-defense
Detect, prove, and remediate login CSRF: cross-site login that binds the victim browser to an attacker-controlled identity, silent account switch, and post-login action chaining. Use when login, SSO password-form, or magic-link consume endpoints lack anti-CSRF controls, or when assessing “login CSRF”, “forced login”, or session bind-on-auth under authorization.
Source facts
- Repository
- tomysh1337/openstarry-code
- Last source activity
- August 17, 2026 at 13:35
- Detected SKILL.md language
- English
- Stars
- 3
- Forks
- 0
Install options
The review-first prompt is selected by default. You can switch to a direct command or download a local copy.
Review the source files
Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.