Agent skill

504 Frameworks Micronaut Security

by jabrena in jabrena/plinth

A skill your agent uses when you need to design, review, or improve security in Micronaut applications — including micronaut-security authentication, @Secured and intercept-url-map rules…

Apache-2.0Auto-check passedBackend & APIs

Install 504 Frameworks Micronaut Security

skills CLI
$ npx skills add jabrena/plinth --skill 504-frameworks-micronaut-security -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install jabrena/plinth 504-frameworks-micronaut-security --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/jabrena/plinth.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/504-frameworks-micronaut-security .claude/skills/504-frameworks-micronaut-security && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
504-frameworks-micronaut-security
GitHub stars
447
Token cost
~680 tokens
SKILL.md length
232 words
Files
2 (incl. references)
Skills in repo
124
Repo updated
First seen
Licence
Apache-2.0

At a glance

A skill your agent uses when you need to design, review, or improve security in Micronaut applications — including micronaut-security authentication, @Secured and intercept-url-map rules…

  • You need to design
  • SKILL.md covers Constraints, When to use this skill, Workflow and Reference
  • Calls mvn
  • Improve security in Micronaut applications — including micronaut-security authentication

What it does

504 Frameworks Micronaut Security is an agent skill from jabrena/plinth. Use when you need to design, review, or improve security in Micronaut applications — including micronaut-security authentication, @Secured and intercept-url-map rules, JWT/session strategies, SecurityService checks, CORS, CSRF awareness for browser apps, rejection handlers, and sensitive-data-safe logging. This should trigger for requests such as Add Micronaut security support; Review Micronaut security configuration; Improve API authorization in Micronaut; Add JWT security in Micronaut; Harden Micronaut route…

Its SKILL.md is about 680 tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/504-frameworks-micronaut-security.md`).

It sits in Backend & APIs, covering Authentication, Authorization and RBAC and Web application vulnerabilities. The repository describes itself as: Plinth is an AI-native engineering toolkit for modern Java enterprise SDLC, built around reusable Commands, Agents, Skills, and MCP Servers. The licence is Apache-2.0.

When your agent uses it

  • You need to design
  • Improve security in Micronaut applications — including micronaut-security authentication
  • @Secured and intercept-url-map rules
  • JWT/session strategies

Example prompts

  • “/504-frameworks-micronaut-security”

What it can do on your machine

Read from SKILL.md and the folder at commit dca88dc. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • mvn

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

504 Frameworks Micronaut Security loads about 680 tokens when it runs, and up to ~2.8k if it reads all its reference files. Until then it costs about 148 tokens; SKILL.md has 232 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~148
When it runs · the whole SKILL.md, loaded when a task matches
~680
With references · SKILL.md plus every file in references/, read only if the agent opens them
~2.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from jabrena/plinth at commit dca88dc, republished under its Apache-2.0 licence (© jabrena). 232 words, ~680 tokens.

Download SKILL.mdSave it as .claude/skills/504-frameworks-micronaut-security/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
504-frameworks-micronaut-security
description
Use when you need to design, review, or improve security in Micronaut applications — including micronaut-security authentication, @Secured and intercept-url-map rules, JWT/session strategies, SecurityService checks, CORS, CSRF awareness for browser apps, rejection handlers, and sensitive-data-safe logging. This should trigger for requests such as Add Micronaut security support; Review Micronaut security configuration; Improve API authorization in Micronaut; Add JWT security in Micronaut; Harden Micronaut route authorization rules. Part of Plinth Toolkit
license
Apache-2.0
metadata.author
Juan Antonio Breña Moral
metadata.version
0.19.0

Micronaut Security Guidelines

Apply Micronaut security best practices with secure-by-default API boundaries.

What is covered in this Skill?

  • Micronaut security configuration and authentication setup
  • Authorization with @Secured and role-based policies
  • Endpoint and route protection strategy
  • Least-privilege design and policy boundaries
  • Secure error/denial behavior
  • Sensitive data handling in logs and responses

Scope: Apply recommendations based on the reference rules and good/bad examples.

Constraints

Before applying security changes, ensure the project compiles. After improvements, run full verification.

  • MANDATORY: Run ./mvnw compile or mvn compile before applying any change
  • SAFETY: If compilation fails, stop immediately
  • VERIFY: Run ./mvnw clean verify or mvn clean verify after applying improvements
  • BEFORE APPLYING: Read the reference for detailed rules and examples

When to use this skill

  • Add Micronaut security support
  • Review Micronaut security configuration
  • Improve API authorization in Micronaut
  • Add JWT security in Micronaut
  • Harden Micronaut route authorization rules
  • Implement @Secured policies in Micronaut controllers

Workflow

  1. Read reference and assess project context

Read references/504-frameworks-micronaut-security.md and inspect the current project setup before proposing changes.

  1. Gather scope and decide target improvements

Identify requested outcomes, constraints, and the minimum safe set of changes to apply.

  1. Apply framework-aligned changes

Implement or refactor security-related configuration/code following the reference patterns and project conventions.

  1. Run verification and report results

Execute appropriate build/tests and summarize what changed, what was verified, and any follow-up actions.

Reference

For detailed guidance, examples, and constraints, see references/504-frameworks-micronaut-security.md.

© jabrena, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file (references) in skills/504-frameworks-micronaut-security of jabrena/plinth.

  • SKILL.md
  • references/504-frameworks-micronaut-security.md

Open the folder on GitHubat commit dca88dc

Compare with similar skills

504 Frameworks Micronaut Security next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

504 Frameworks Micronaut Security compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
504 Frameworks Micronaut Security this skilljabrena/plinth447—~680Automated safety check: PassApache-2.0
Supercheck Security Authsupercheck-io/supercheck215—~1.2kAutomated safety check: PassAGPL-3.0
API Auditbriiirussell/cybersecurity-skills413—~2.8kAutomated safety check: NotesMIT
Auth BypassNeoTheCapt/RedteamAgent143—~1.3kAutomated safety check: PassNone
Springboot Securityaffaan-m/ECC276k5 repos~2kAutomated safety check: PassMIT
API Security Designvinayaklatthe/microsoft-security-skills175—~2.2kAutomated safety check: PassMIT

Similar skills

  • Supercheck Security Auth

    supercheck-io/supercheck

    Work on Supercheck authentication, RBAC, tenant isolation, sessions, API and trigger keys, invitations, project membership, project variables, OAuth, super-admin behavior, SSRF, or…

    215 GitHub stars~1.2k tokensUpdated today
    Backend & APIsAuto-check passed
  • API Audit

    briiirussell/cybersecurity-skills

    Audit REST, GraphQL, and RPC APIs against the OWASP API Security Top 10 (2023).

    413 GitHub stars~2.8k tokensUpdated 4 mo ago
    Backend & APIsAuto-check: notes
  • Auth Bypass

    NeoTheCapt/RedteamAgent

    Test for authentication and authorization flaws including credential attacks, session issues, and access control bypasses

    143 GitHub stars~1.3k tokensUpdated 2 mo ago
    Backend & APIsAuto-check passed
  • Spring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services.

    276k GitHub starsUsed in 5 repos~2k tokens
    Backend & APIsAuto-check passed
  • API Security Design

    vinayaklatthe/microsoft-security-skills

    Guidance for designing secure APIs on Azure - authentication, authorization, gateway controls, input validation, rate limiting, secret management, and runtime threat detection - aligned to OWASP API…

    175 GitHub stars~2.2k tokensUpdated 3 mo ago
    Backend & APIsAuto-check passed
  • Laravel Security

    affaan-m/ECC

    Laravel security best practices for authn/authz, validation, CSRF, mass assignment, file uploads, secrets, rate limiting, and secure deployment.

    276k GitHub starsUsed in 3 repos~2k tokens
    Backend & APIsAuto-check passed

More from jabrena/plinth

All 124 skills in this repo
  • A skill your agent uses when you need to add or review fuzz testing for Java APIs with CATS — including contract-driven negative testing, malformed payload validation, boundary input exploration, CI…

    447 GitHub stars~874 tokensUpdated 2 days ago
    Auto-check passed
  • A skill your agent uses when you need to generate Java project diagrams — including UML sequence diagrams, UML class diagrams, C4 model diagrams, UML state machine diagrams, UML Deployment Diagrams…

    447 GitHub stars~3.1k tokensUpdated 2 days ago
    Auto-check passed
  • A skill your agent uses when you need to add or configure Maven plugins in your pom.xml — including quality tools (enforcer, surefire, failsafe, jacoco, pitest, spotbugs, pmd), security scanning…

    447 GitHub stars~3.2k tokensUpdated 2 days ago
    Auto-check passed
  • A skill your agent uses when you need to set up JMeter performance testing for a Java project — including creating the run-jmeter.sh script from the exact template, configuring load tests with…

    447 GitHub stars~842 tokensUpdated 2 days ago
    Auto-check passed
  • A skill your agent uses when you need to set up Java application profiling to detect and measure performance issues — including trusted preinstalled async-profiler v4.x setup, problem-driven…

    447 GitHub stars~903 tokensUpdated 2 days ago
    Auto-check passed
  • A skill your agent uses when you need to generate a checklist document with embedded commands inventory, following the embedded template exactly and producing INVENTORY-COMMANDS-JAVA.md in the…

    447 GitHub stars~697 tokensUpdated 2 days ago
    Auto-check passed

Categories

Questions about 504 Frameworks Micronaut Security

What does 504 Frameworks Micronaut Security do?

A skill your agent uses when you need to design, review, or improve security in Micronaut applications — including micronaut-security authentication, @Secured and intercept-url-map rules…. 504 Frameworks Micronaut Security is an agent skill from jabrena/plinth. Use when you need to design, review, or improve security in Micronaut applications — including micronaut-security authentication, @Secured and intercept-url-map rules, JWT/session strategies, SecurityService checks, CORS, CSRF awareness for browser apps, rejection handlers, and sensitive-data-safe logging.

When should I use 504 Frameworks Micronaut Security?

504 Frameworks Micronaut Security fits situations like: you need to design; improve security in Micronaut applications — including micronaut-security authentication; @Secured and intercept-url-map rules; JWT/session strategies.

How do I install 504 Frameworks Micronaut Security in Claude Code?

Run `npx skills add jabrena/plinth --skill 504-frameworks-micronaut-security -a claude-code`. Or copy the skill folder (skills/504-frameworks-micronaut-security in jabrena/plinth) into .claude/skills/504-frameworks-micronaut-security in your project. Claude Code loads it when a task matches its description.

How do I install 504 Frameworks Micronaut Security in Codex?

Run `npx skills add jabrena/plinth --skill 504-frameworks-micronaut-security -a codex`. Or copy the skill folder (skills/504-frameworks-micronaut-security in jabrena/plinth) into .agents/skills/504-frameworks-micronaut-security in your project. Codex loads it when a task matches its description.

Can I use 504 Frameworks Micronaut Security in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jabrena/plinth --skill 504-frameworks-micronaut-security -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/504-frameworks-micronaut-security, .gemini/skills/504-frameworks-micronaut-security, .github/skills/504-frameworks-micronaut-security and .opencode/skills/504-frameworks-micronaut-security in your project.

What does 504 Frameworks Micronaut Security need to run?

Going by SKILL.md and its folder, 504 Frameworks Micronaut Security needs the command-line tools its instructions call (mvn).

Does 504 Frameworks Micronaut Security access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is 504 Frameworks Micronaut Security safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does 504 Frameworks Micronaut Security use?

504 Frameworks Micronaut Security is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does 504 Frameworks Micronaut Security use?

About 680 tokens (SKILL.md is roughly 2.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 2.2k tokens, read only when the agent opens those files.

What are the alternatives to 504 Frameworks Micronaut Security?

Skills that share tags, products or a category with 504 Frameworks Micronaut Security: Supercheck Security Auth (supercheck-io/supercheck, 215 stars), API Audit (briiirussell/cybersecurity-skills, 413 stars), Auth Bypass (NeoTheCapt/RedteamAgent, 143 stars) and Springboot Security (affaan-m/ECC, 276k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains 504 Frameworks Micronaut Security?

jabrena (a GitHub user) maintains it in jabrena/plinth, which has 447 GitHub stars. The repository holds 124 skills in this directory. The repository was last updated on October 7, 2026.

Source: jabrena/plinth on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.