Angular Security

Security audit for Angular applications including DomSanitizer bypassing (bypassSecurityTrust*), innerHTML binding, dynamic component loading, route guards (CanActivate, CanLoad), HttpClient interceptors, environment.ts file leakage, and Angular-specific patterns. Use this skill whenever the user mentions Angular, @angular/core, DomSanitizer, bypassSecurityTrustHtml, route guards, HttpInterceptor, environment.ts, Angular CLI, ng build, or asks "audit my Angular app", "Angular security review", "DomSanitizer safe". Trigger when the codebase contains `@angular/core` in package.json, `angular.json`, or `*.component.ts` files.

hlsitechio 5468e8c 6.8 KB Updated

File contents

hlsitechio/claude-skills-security/tree/main/appsec-stack-pack/angular-security commit 5468e8c550

Frequently asked questions

npx skillmds@latest add hlsitechio/angular-security