remix-v2-meta-sessions-reviewReviews Remix v2 code for v1-shape meta exports (BREAKING in v2), cookie security gaps (httpOnly, secure, secrets rotation), auth gates in wrong layer, and m...
Install via ClawdBot CLI:
clawdbot install anderskev/remix-v2-meta-sessions-reviewGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://yoursite.com/logoutAudited May 23, 2026 · audit v1.0
Generated Aug 8, 2026
An existing e-commerce platform built with Remix v1 is migrating to v2. The codebase has many meta exports, session-based cart management, and public-facing forms. The review focuses on finding v1 meta exports that will break silently, insecure cookies lacking httpOnly/secure flags, missing CSRF on checkout actions, and auth gates misplaced in components rather than loaders.
A SaaS dashboard application uses Remix v2 for its frontend. It handles user authentication via sessions and has role-based access control. The review targets detecting hardcoded secrets, improper session commit patterns, auth checks in components instead of loaders, and missing CSRF protection on internal API mutation actions.
A CMS built with Remix v2 allows public users to submit forms and comments. The review aims to identify missing CSRF protection on form submissions, use of manual fetch POSTing (bypassing CSRF), and meta exports that don't follow v2 array shape, causing missing SEO tags. It also checks if session cookies are configured securely in production.
A fintech application with high-security requirements uses Remix v2. It requires strict compliance with data protection. The review focuses on ensuring session cookies have httpOnly and secure flags, secrets are properly rotated and not hardcoded, auth gates are in loaders/actions, and CSRF validation is enforced for any financial transactions.
Software development agencies or individual contractors offer services to help companies migrate from Remix v1 to v2 and fix security issues. They charge per project or hourly rates for code review, implementation, and testing.
A SaaS platform that provides automated code review and vulnerability scanning for Remix apps. Users subscribe to a monthly or yearly plan to get continuous monitoring and alerts for security anti-patterns.
Online courses, workshops, and certification programs for developers to learn best practices in Remix v2 development, including session management, auth, and CSRF protection. Monetized through course fees and corporate training contracts.
💬 Integration Tip
Use the checklist in the skill to systematically review the codebase, and prioritize high-stakes issues like v1 meta exports first.
Scored Aug 21, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Senior SecOps engineer skill for application security, vulnerability management, compliance verification, and secure development practices. Runs SAST/DAST sc...