csp-policy-generatorGenerate, validate, and tighten Content Security Policy (CSP) headers for web applications. Analyze existing pages to discover resource origins, build least-...
Install via ClawdBot CLI:
clawdbot install charlie-morrison/csp-policy-generatorGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Generated Aug 3, 2026
An online auto parts retailer needs to enforce CSP to protect customer data and prevent XSS attacks. The tool analyzes the site, identifies resource origins, and generates a least-privilege policy, reducing the risk of payment fraud.
A healthcare software company must comply with HIPAA and secure patient records. Using the skill, they generate a strict CSP with nonce-based scripts and monitor violations via report-only mode before enforcement.
A fintech firm handles sensitive financial data and is a prime target for cyberattacks. The CSP generator helps tighten their security headers, eliminating unsafe-inline and adding frame-ancestors to prevent clickjacking.
A multi-tenant SaaS platform needs to ensure that CSP policies do not break tenant-specific integrations. The tool's analysis helps discover all external resources and generates a default policy that can be customized per tenant.
Offer basic CSP generation for free, with premium features like automated violation monitoring and advanced nonce/hash recommendations. Revenue from subscription upgrades for enterprises with complex needs.
Integrate the tool into CI/CD pipelines as a service, providing continuous CSP analysis and updates. Charge per project or per deployment, with additional consulting for policy implementation.
A fully managed service that not only generates but hosts and monitors CSP policies, offering reports and violation summaries. Customers pay a monthly fee based on number of domains and traffic.
💬 Integration Tip
Easily integrates into existing web development workflows via deterministic analysis and generated policies. For best results, start with report-only mode and use the script to diagnose violations automatically.
Scored Jun 14, 2026
基于睿观的产品图片政策合规检测,通过视觉相似度匹配识别潜在违规商品。当用户提到政策合规检查、产品图片合规、违规检测、禁售商品筛查、基于图片的合规审查、上架前风险排查、policy compliance detection, product compliance review, violation detectio...
AI 合同风险审查服务。当用户需要审查合同、检查法律风险、分析合同条款、 审阅法律文书时使用本技能。覆盖违约责任、知识产权、付款条件、验收标准、 保密义务、管辖法院等15类法律风险。支持快速扫描和深度审查两档服务。 触发词:合同审查、审核合同、检查合同、法律风险、条款分析、法务审查、 合同风险、审合同、法律审查、...
产品图片的图形商标检测与相似度搜索。当用户提到商标检测、图形商标搜索、Logo侵权检查、商标相似度分析、图片商标风险评估、产品图片商标筛查、graphic trademark detection, logo infringement, trademark similarity, trademark risk, i...
面向电商产品Listing的文字商标检测与侵权风险分析。当用户提到商标检测、商标风险检查、品牌侵权筛查、产品标题商标扫描、文字商标查询、Listing合规检查、知识产权风险评估、text trademark detection, trademark infringement, brand infringement...
GDPR and German DSGVO compliance automation. Scans codebases for privacy risks, generates DPIA documentation, tracks data subject rights requests. Use for GD...
CAPA system management for medical device QMS. Covers root cause analysis, corrective action planning, effectiveness verification, and CAPA metrics. Use for...