CLAUDE CODE MARKETPLACES
SkillsMarketplacesMCPDigestLearnJobsAdvertise

This week in Claude

Every Monday: Claude Code, Agent SDK, MCP, and the Anthropic platform moves worth your time.

Skills by Category
Frontend DevelopmentBackend & APIsTesting & QASecurityDevOps & CI/CDGit & Pull RequestsDocumentationCode Review & QualityAI & Agent BuildingSkill Development
MCP Servers by Category
Web & Browser AutomationDatabasesAI & LLM ToolsCloud & InfrastructureCommunication & MessagingDeveloper ToolsDesign & CreativeDocuments & KnowledgeSearch & Web CrawlingAutomation & Workflows
Marketplaces by Category
AI Agents & OrchestrationLLM IntegrationDevelopment ToolsFrontend & UIBackend & APIsDatabasesTesting & Code QualityDevOps & CloudSecurity & ComplianceGit & Version Control

Claude Code Marketplaces

Discover Claude Code plugins, extensions, and tools. Automatically updated directory of Anthropic Claude AI marketplaces with development tools, productivity plugins, and integrations.

Resources

  • Browse Skills
  • Browse MCP Servers
  • Browse Marketplaces
  • Plugins Reference

Community

  • About
  • Learn
  • Feedback
  • Privacy Policy
  • Jobs
  • Advertise

Built for the Claude Code community with Claude Code by @mertduzgun

Independent project, not affiliated with Anthropic
  1. Skills
  2. /
  3. yaklang
  4. /
  5. hack-skills
  6. /
  7. Csrf Cross Site Request Forgery

Csrf Cross Site Request Forgery

Editor's Note

Loads expert CSRF attack patterns with a focus on modern bypass techniques that base models typically miss. Covers the full range from basic token validation flaws (token not validated server-side being the most common) to SameSite cookie edge cases, JSON CSRF via content-type tricks, and OAuth state parameter attacks. Especially strong on the double-submit cookie pattern vulnerabilities and the two-minute Lax cookie exemption in Chrome. Includes ready-to-use HTML proof-of-concept templates for different attack vectors. Best deployed when auditing state-changing endpoints like password resets, email changes, or admin role assignments where you need to systematically check token implementation and cookie behavior rather than just surface-level CSRF presence.

Install

npx skills add https://github.com/yaklang/hack-skills --skill csrf-cross-site-request-forgery
Votes
0
Installs518
GitHub Stars636
Categories
Frontend DevelopmentBackend & APIsTesting & QASecurityDevOps & CI/CDGit & Pull RequestsAI & Agent BuildingData Science & MLRelease ManagementCloud & InfrastructureGoOffice & Documents
First SeenMay 16, 2026
View on GitHub

Comments

Login to comment

Related Frontend Development Skills

View all →
frontend-design

anthropics/skills

10
418.1k
135.1k
Distinctive, production-grade frontend interfaces that reject generic AI aesthetics.
vercel-react-best-practices

vercel-labs/agent-skills

5
402.7k
26.6k
3
React and Next.js performance optimization guide with 64 prioritized rules across 8 categories.
remotion-best-practices

remotion-dev/skills

0
312.3k
3.2k
Domain-specific knowledge base for building videos with Remotion and React.
vercel-composition-patterns

vercel-labs/agent-skills

0
175.4k
26.6k
React composition patterns for scaling components and avoiding boolean prop proliferation.
ui-ux-pro-max

nextlevelbuilder/ui-ux-pro-max-skill

4
167k
79k
Comprehensive design intelligence for web and mobile UI/UX across 10 technology stacks.
shadcn

shadcn/ui

0
143.8k
114.5k
Complete shadcn/ui component management for adding, searching, fixing, styling, and composing UI.