Flask Security

Security audit for Flask applications including Jinja2 autoescape bypass, Flask-Login session handling, Flask-WTF CSRF protection, Blueprint structure, app.config secrets, SQL via Flask-SQLAlchemy, file uploads, custom decorators for auth, and Flask-specific extensions. Use this skill whenever the user mentions Flask, flask app, Blueprint, Flask-Login, Flask-WTF, Flask-SQLAlchemy, Flask-RESTful, Flask-Admin, render_template, or asks "audit my Flask app", "Flask security review". Trigger when the codebase contains `flask` in `requirements.txt` / `pyproject.toml` or `from flask import` patterns.

hlsitechio 3c9e094 7.8 KB Updated

File contents

hlsitechio/claude-skills-security/tree/main/appsec-stack-pack/flask-security commit 3c9e09435d

Frequently asked questions

npx skillmds@latest add hlsitechio/flask-security