Meteor Security

Use when auditing or hardening a Meteor 3 application. Triggers on missing check() on method arguments, missing this.userId guards on publications, browser-policy CSP, DDPRateLimiter rules, oauth-encryption via Accounts.config oauthSecretKey, audit-argument-checks, allow/deny legacy patterns, BrowserPolicy.content.disallowInlineScripts, BrowserPolicy.framing.disallow. Use this skill when the user asks about hardening, asks about a security review, or asks about CSP for a third-party script (Stripe, Google Maps, fonts).

meteor 91d6d26 4 files · 15.8 KB Updated

File contents

meteor/agent-skills/tree/main/skills/meteor-security commit 91d6d26e83

Frequently asked questions

npx skillmds@latest add meteor/meteor-security