cors-config-drift
CORS config drift scanner: harvests every Access-Control-Allow-Origin header, cors()-middleware call, @cross_origin decorator, options-handler with cors config, and per-route origin/credentials settings. LLM analyses each per-route CORS posture: credentials+wildcard = fatal, permissive origin patterns, preflight gaps. Read-only. Audience: Senior. Trigger: /cors-drift
Pinned to revision 29d23a8cf80e, so it is the text this page describes rather than whatever the author pushed since.
Files
- skills/cors-config-drift/SKILL.md
- skills/cors-config-drift/README.md
- skills/cors-config-drift/scripts/cors-scan.ps1
Every link opens the file at its source, pinned to the revision this page describes.