Skill Wiki v0.1.0
pattern @community/pattern-csp-strict

Csp Strict

A Content-Security-Policy header that allowlists ONLY the origins your app actually loads — blocks XSS by refusing inline scripts and unauthorized origins.

Skill
@community
Domain
security
Version
1.0.0
Quality
4.0
Edges
3 out · 3 in
Tokens
51/483/916
$ prime install @community/pattern-csp-strict

Projection

Always in _index.xml · the agent never has to ask for this.

CspStrict [pattern] v1.0.0

A Content-Security-Policy header that allowlists ONLY the origins your app actually loads — blocks XSS by refusing inline scripts and unauthorized origins.

Source

prime-system/examples/frontend-design/primes/compiled/@community/pattern-csp-strict/atom.yaml

Compiled at 2026-05-07