Agent skill

Security Protocol

by NoobyGains in NoobyGains/godmode

A skill your agent uses when writing code that processes user input, manages authentication or authorization, constructs database queries, handles file operations, interacts with external data…

MITAuto-check: notesBackend & APIs

Install Security Protocol

skills CLI
$ npx skills add NoobyGains/godmode --skill security-protocol -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install NoobyGains/godmode security-protocol --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/NoobyGains/godmode.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/security-protocol .claude/skills/security-protocol && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
security-protocol
GitHub stars
107
Token cost
~2.4k tokens
SKILL.md length
867 words
Files
1
Skills in repo
34
Repo updated
First seen
Licence
MIT

At a glance

A skill your agent uses when writing code that processes user input, manages authentication or authorization, constructs database queries, handles file operations, interacts with external data…

  • Writing code that processes user input
  • SKILL.md covers Overview, The Prime Directive, When to Use and The Entry Protocol, plus 8 more sections
  • Calls npm, pip and cargo
  • Manages authentication

What it does

Security Protocol is an agent skill from NoobyGains/godmode. Use when writing code that processes user input, manages authentication or authorization, constructs database queries, handles file operations, interacts with external data, exposes API endpoints, or manages secrets - any code that crosses a trust boundary

Its SKILL.md is about 2.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Authorization and RBAC, REST APIs and Authentication. The repository describes itself as: The AI development framework that thinks before it builds. 36 composable skills for Claude Code, Cursor, Codex, and OpenCode. The licence is MIT.

When your agent uses it

  • Writing code that processes user input
  • Manages authentication
  • Constructs database queries
  • Handles file operations

Example prompts

  • “/security-protocol”

What it can do on your machine

Read from SKILL.md and the folder at commit 441103a. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm
    • pip
    • cargo

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npm and pip, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Security Protocol loads about 2.4k tokens when it runs. Until then it costs about 69 tokens; SKILL.md has 867 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~69
When it runs · the whole SKILL.md, loaded when a task matches
~2.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:193
    - Commit .env files to version control
  • NoteMentions a .env fileSKILL.md:200
    - Add .env to .gitignore BEFORE the first commit

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from NoobyGains/godmode at commit 441103a, republished under its MIT licence (© NoobyGains). 867 words, ~2,387 tokens.

Download SKILL.mdSave it as .claude/skills/security-protocol/SKILL.md (or your agent's skills folder).
name
security-protocol
description
Use when writing code that processes user input, manages authentication or authorization, constructs database queries, handles file operations, interacts with external data, exposes API endpoints, or manages secrets - any code that crosses a trust boundary

Security Protocol

Overview

Security is not a phase you bolt on. Every line of code is a security decision.

Core principle: Never trust data from outside your trust boundary. Validate at every boundary crossing.

No exceptions. No workarounds. No shortcuts.

The Prime Directive

NO EXTERNAL DATA REACHES A SYSTEM CALL, QUERY, OR OUTPUT WITHOUT VALIDATION AND SANITIZATION

When data crosses a trust boundary, it must be validated before consumption. This is absolute.

When to Use

Mandatory when writing code that:

  • Accepts user input (forms, URLs, headers, uploaded files)
  • Constructs database queries
  • Renders user-supplied content
  • Manages authentication or authorization
  • Handles secrets or credentials
  • Invokes external APIs
  • Manipulates file paths
  • Executes system commands
  • Sets HTTP response headers
  • Processes file uploads

This is not discretionary. Security awareness is woven into development, not applied afterward.

The Entry Protocol

BEFORE shipping ANY code that handles external data:

1. IDENTIFY: Where does data enter the system? (Trust boundary)
2. VALIDATE: Is input validated at the boundary?
3. SANITIZE: Is output encoded for its target context?
4. AUTHORIZE: Is access control verified before the action?
5. PROTECT: Are secrets, tokens, and keys managed safely?

Omit any step = vulnerability shipped

OWASP Top 10 Condensed Guide

A01: Broken Access Control

Every endpoint must verify: Can THIS user perform THIS action on THIS resource?

# VULNERABLE: Checks authentication but not authorization
GET /api/accounts/456/profile  # User 123 views user 456's private data

# SECURE: Verify resource ownership
if resource.owner_id != authenticated_user.id:
    return 403 Forbidden
VerificationMethod
AuthenticationIs the user who they claim to be?
AuthorizationIs this user permitted to perform this action?
Resource ownershipDoes this user own this specific resource?
Role enforcementServer-side role check; never trust client-provided role claims

Default posture: deny. If no explicit rule grants access, access is denied.

A02: Cryptographic Failures
Required PracticeProhibited Practice
bcrypt/scrypt/argon2 for password hashingMD5, SHA1, SHA256 for passwords
TLS everywhere (HTTPS)HTTP for anything sensitive
Cryptographically secure RNG for tokensMath.random() for security tokens
Encrypt sensitive data at restStore sensitive data in plaintext
Use established cryptographic librariesImplement custom cryptography
A03: Injection

Never concatenate external input into queries, commands, or templates.

Injection VectorPrevention
SQL injectionParameterized queries / prepared statements. Always.
NoSQL injectionType-check inputs; use ODM query builders
Command injectionAvoid shell execution. If unavoidable: allowlist arguments, never interpolate
LDAP injectionEscape special characters; use parameterized queries
Template injectionUse auto-escaping template engines
sql
-- VULNERABLE: String concatenation
SELECT * FROM users WHERE email = '" + userInput + "'

-- SECURE: Parameterized query
SELECT * FROM users WHERE email = $1

This is non-negotiable. There is no scenario where string concatenation in queries is acceptable.

A04: Insecure Design
  • Enforce rate limiting on authentication endpoints
  • Use CAPTCHA or proof-of-work for account creation
  • Validate business logic constraints server-side (never client-side only)
  • Design for abuse scenarios, not just intended usage
A05: Security Misconfiguration
CheckpointAction
Default credentialsReplace all defaults before deployment
Debug featuresDisable debug mode, admin consoles, and verbose errors in production
Error verbosityNever expose stack traces, SQL errors, or internal paths to users
Directory listingDisable on all web servers
Security headersSet them (see Security Headers section)
CORS policyRestrict to specific origins; never * for credentialed requests
A06: Vulnerable Components
BEFORE adding any dependency:

1. Is it actively maintained? (Last commit within 6 months)
2. Are known vulnerabilities published? (npm audit, snyk, dependabot)
3. Is it widely adopted? (Download counts and stars are signals, not guarantees)
4. Is it actually necessary? (Do not add a dependency for a single utility function)

Execute npm audit / pip audit / cargo audit regularly. Remediate critical and high findings immediately.

A07: Authentication Failures
RequirementImplementation
Password storagebcrypt/scrypt/argon2 with unique salts
Session tokensCryptographically random, httpOnly, secure, sameSite flags
Brute-force protectionLock account after 5-10 consecutive failures
Multi-factor authenticationSupport TOTP minimum for sensitive applications
Password policyMinimum 8 characters; cross-reference against breach databases
Session lifecycleExpire sessions; invalidate on password change
A08: Data Integrity Failures
  • Verify integrity of software updates and CI/CD pipelines
  • Use signed artifacts and checksums
  • Never auto-deserialize untrusted data (no eval(), no pickle.loads() on user input)
A09: Logging and Monitoring Failures
LogNever Log
Authentication attempts (success and failure)Passwords or authentication tokens
Authorization denialsComplete credit card numbers
Input validation failuresPersonally identifiable information without purpose
System errorsEncryption keys or secrets
Show full SKILL.md (329 more words)Show less
A10: Server-Side Request Forgery (SSRF)
  • Validate and allowlist URLs before server-side requests
  • Never allow users to control URLs for server-side fetches
  • Block requests to internal networks (169.254.x.x, 10.x.x.x, 127.x.x.x, 192.168.x.x)

Security Headers

Set these on every HTTP response:

Content-Security-Policy: default-src 'self'; script-src 'self'
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
Strict-Transport-Security: max-age=31536000; includeSubDomains
Referrer-Policy: strict-origin-when-cross-origin
Permissions-Policy: camera=(), microphone=(), geolocation=()

Begin restrictive and relax only when a specific requirement demands it.

Secrets Management

NEVER:
- Embed secrets in source code
- Commit .env files to version control
- Write secrets to log output
- Transmit secrets in URL query parameters
- Store secrets in client-side code

ALWAYS:
- Use environment variables or dedicated secret managers
- Add .env to .gitignore BEFORE the first commit
- Rotate secrets on a defined schedule
- Use distinct secrets per environment
- Audit secret access

Input Validation Checklist

For every input field:

  • Type validated (string, number, email, URL)
  • Length constrained (minimum and maximum)
  • Format validated (regex for structured data)
  • Range checked (numbers, dates)
  • Allowlisted where possible (enum values, known options)
  • Sanitized for output context (HTML, SQL, shell)
  • File uploads: type verified by content inspection (not extension), size limited

Cognitive Traps

RationalizationTruth
"Internal tool, no attacker"Internal tools get compromised. Internal users make mistakes. Insider threats are real.
"We will add security later"Security is not a feature. Retrofitting it costs 10x more than building it in.
"The framework handles it"Frameworks have escape hatches. Know exactly what your framework does and does not protect.
"Input validation is excessive"Every injection attack in history started with unvalidated input.
"It is just a prototype"Prototypes become production systems. Secure from the beginning.
"Too complicated, slows development"Data breaches slow development permanently.
"Nobody would do that"Attackers do exactly that. Assume all input is hostile.

Guardrails -- HALT and Fix

  • String concatenation in SQL queries
  • eval() or exec() on user-provided data
  • Secrets in source code or committed configuration files
  • Missing authorization checks on endpoints
  • User input rendered without encoding
  • Wildcard * CORS policy with credentials
  • HTTP for anything involving authentication or sensitive data
  • Client-side-only validation without server-side counterpart
  • Disabled CSRF protection
  • Default credentials in deployed environments

Every item on this list is a security vulnerability. Remediate before shipping.

Integration

Complementary skills:

  • godmode:system-design -- Authentication strategy and data flow design
  • godmode:quality-enforcement -- Security checks as automated quality gates
  • godmode:completion-gate -- Security verification before shipping
  • godmode:test-first -- Write security-focused test cases

The Bottom Line

Trust boundary crossed -> validate input, sanitize output, verify authorization

No exceptions. No "we will add it later." Security ships with the code or the code does not ship.

© NoobyGains, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/security-protocol of NoobyGains/godmode.

Open the folder on GitHubat commit 441103a

Compare with similar skills

Security Protocol next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Security Protocol compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Security Protocol this skillNoobyGains/godmode107—~2.4kAutomated safety check: NotesMIT
API Security EngineerFerroxLabs/wayland608—~3.1kAutomated safety check: PassApache-2.0
API Auditbriiirussell/cybersecurity-skills412—~2.8kAutomated safety check: NotesMIT
Auth BypassNeoTheCapt/RedteamAgent140—~1.3kAutomated safety check: PassNone
API Security Designvinayaklatthe/microsoft-security-skills175—~2.2kAutomated safety check: PassMIT
Django Securityaffaan-m/ECC274k5 repos~4kAutomated safety check: NotesMIT

Similar skills

  • API Security Engineer

    FerroxLabs/wayland

    API security expertise covering OWASP API Security Top 10, API authentication and authorization patterns, API key management, rate limiting and throttling, JWT security best practices, OAuth 2.0…

    608 GitHub stars~3.1k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • API Audit

    briiirussell/cybersecurity-skills

    Audit REST, GraphQL, and RPC APIs against the OWASP API Security Top 10 (2023).

    412 GitHub stars~2.8k tokensUpdated 4 mo ago
    Backend & APIsAuto-check: notes
  • Auth Bypass

    NeoTheCapt/RedteamAgent

    Test for authentication and authorization flaws including credential attacks, session issues, and access control bypasses

    140 GitHub stars~1.3k tokensUpdated 2 mo ago
    Backend & APIsAuto-check passed
  • API Security Design

    vinayaklatthe/microsoft-security-skills

    Guidance for designing secure APIs on Azure - authentication, authorization, gateway controls, input validation, rate limiting, secret management, and runtime threat detection - aligned to OWASP API…

    175 GitHub stars~2.2k tokensUpdated 3 mo ago
    Backend & APIsAuto-check passed
  • Django Security

    affaan-m/ECC

    Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations.

    274k GitHub starsUsed in 5 repos~4k tokens
    Backend & APIsAuto-check: notes
  • Django Security

    affaan-m/ECC

    Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations.

    274k GitHub starsUsed in 1 repo~4.3k tokens
    Backend & APIsAuto-check: notes

More from NoobyGains/godmode

All 34 skills in this repo
  • Activation

    NoobyGains/godmode

    A skill your agent uses when starting any conversation - establishes how to locate and invoke skills, mandating Skill tool usage before ANY response including clarifying questions

    107 GitHub stars~2.4k tokensUpdated 7 mo ago
    Auto-check passed
  • Agent Messaging

    NoobyGains/godmode

    A skill your agent uses when dispatching subagents, composing prompts for teammates, structuring handoff reports, or managing context boundaries between agents.

    107 GitHub stars~3k tokensUpdated 7 mo ago
    Auto-check passed
  • Codebase Research

    NoobyGains/godmode

    A skill your agent uses when building ANY feature within an existing project - search the current codebase for existing patterns, conventions, similar implementations, and established approaches…

    107 GitHub stars~3.2k tokensUpdated 7 mo ago
    Auto-check: notes
  • Completion Gate

    NoobyGains/godmode

    A skill your agent uses when about to declare work done, fixed, or passing, before committing or opening PRs - demands executing verification commands and reading their output before making any…

    107 GitHub stars~1.6k tokensUpdated 7 mo ago
    Auto-check passed
  • Comprehension Check

    NoobyGains/godmode

    A skill your agent uses when implementing any substantial feature, multi-file modification, or architectural change - produces a plain-language walkthrough of every alteration so the developer can…

    107 GitHub stars~1.5k tokensUpdated 7 mo ago
    Auto-check passed
  • Delegated Execution

    NoobyGains/godmode

    A skill your agent uses when executing implementation plans with independent tasks in the current session

    107 GitHub stars~2.4k tokensUpdated 7 mo ago
    Auto-check passed

Questions about Security Protocol

What does Security Protocol do?

A skill your agent uses when writing code that processes user input, manages authentication or authorization, constructs database queries, handles file operations, interacts with external data…. Security Protocol is an agent skill from NoobyGains/godmode.

When should I use Security Protocol?

Security Protocol fits situations like: writing code that processes user input; manages authentication; constructs database queries; handles file operations.

How do I install Security Protocol in Claude Code?

Run `npx skills add NoobyGains/godmode --skill security-protocol -a claude-code`. Or copy the skill folder (skills/security-protocol in NoobyGains/godmode) into .claude/skills/security-protocol in your project. Claude Code loads it when a task matches its description.

How do I install Security Protocol in Codex?

Run `npx skills add NoobyGains/godmode --skill security-protocol -a codex`. Or copy the skill folder (skills/security-protocol in NoobyGains/godmode) into .agents/skills/security-protocol in your project. Codex loads it when a task matches its description.

Can I use Security Protocol in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add NoobyGains/godmode --skill security-protocol -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/security-protocol, .gemini/skills/security-protocol, .github/skills/security-protocol and .opencode/skills/security-protocol in your project.

What does Security Protocol need to run?

Going by SKILL.md and its folder, Security Protocol needs the command-line tools its instructions call (npm, pip and cargo).

Does Security Protocol access the network?

SKILL.md contains no URLs. Its commands use npm and pip, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Security Protocol safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Security Protocol use?

Security Protocol is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Security Protocol use?

About 2.4k tokens (SKILL.md is roughly 9.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Security Protocol?

Skills that share tags, products or a category with Security Protocol: API Security Engineer (FerroxLabs/wayland, 608 stars), API Audit (briiirussell/cybersecurity-skills, 412 stars), Auth Bypass (NeoTheCapt/RedteamAgent, 140 stars) and API Security Design (vinayaklatthe/microsoft-security-skills, 175 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Security Protocol?

NoobyGains (a GitHub user) maintains it in NoobyGains/godmode, which has 107 GitHub stars. The repository holds 34 skills in this directory. The repository was last updated on March 9, 2026.

Source: NoobyGains/godmode on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.