← Back to the catalog

file-upload-security

Accept user file uploads without introducing remote code execution, stored XSS, or polyglot attacks. Covers magic-byte validation, strict type allowlists, image re-encoding to defang embedded payloads, EXIF stripping, virus scanning, path-safe storage keys, and serving via a separate origin with Content-Disposition. Invoke when adding upload to a new endpoint or migrating from local-disk storage t

8stars
Updated last month

View on GitHub ↗License: MIT

How to add

/plugin marketplace add GoldenWing-360/claude-security-skills

The exact command may vary by repository. Check the README on GitHub.

For the skill author

Drop this on your repo README

Shows your skill is listed on Skillteca, generates a backlink and trackable traffic.

Listada na Skillteca
[![Listada na Skillteca](https://www.skillteca.com.br/api/badge/file-upload-security/svg)](https://www.skillteca.com.br/skills/file-upload-security?utm_source=badge&utm_medium=readme&utm_campaign=badge)

Category alert

Get new Segurança skills every Monday

One short email with only the new Segurança skills. 4 minutes of reading, no spam, unsubscribe with one click.

You confirm your email on the first send. No spam. Unsubscribe with one click.

ShareXLinkedIn

Comments · No comments

Sign in to comment. Sign in

  • No comments yet. Be the first.