login-csrf-defense
Detect, prove, and remediate login CSRF: cross-site login that binds the victim browser to an attacker-controlled identity, silent account switch, and post-login action chaining. Use when login, SSO password-form, or magic-link consume endpoints lack anti-CSRF controls, or when assessing “login CSRF”, “forced login”, or session bind-on-auth under authorization.
来源信息
- 仓库
- tomysh1337/openstarry-code
- 最近来源活动
- 2026年8月17日 13:35
- 检测到的 SKILL.md 语言
- 英语
- 星标
- 3
- 分支
- 0
安装方式
默认使用会先检查来源的 Prompt;你也可以切换为直接命令,或下载本地副本。
检查来源文件
决定是否安装前,请先阅读 SKILL.md,以及 SkillsMP 当前展示的配套文件。