Skip to content
Back to skills

Nestjs Configuration

ASecurity

Avoid direct `process.env` access in services. Load and validate variables once through `ConfigModule.forRoot`, then inject `ConfigService` or a typed configuration object: ```ts @Injectable() export class MailService { constructor(private readonly config: ConfigService) {} send() { const host = this.config.getOrThrow<string>('MAIL_HOST'); // use host... } } ``` This centralizes validation, avoids magic strings, supports typed getters, and makes dependencies testable. Required values should b...

  • 549 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 5, 2026
development

Security analysis

A100/100

Pro scans all 11 files and shows the line behind each finding

Scanned September 5, 2026

npx -y skills add HoangNguyen0403/agent-skills-standard --skill nestjs-configuration --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Nestjs Configuration?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Nestjs Configuration
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/hoangnguyen0403-nestjs-configuration-a330b13b/badge)](https://www.skillsdirectory.com/skills/hoangnguyen0403-nestjs-configuration-a330b13b)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
Avoid direct `process.env` access in services. Load and validate variables once through `ConfigModule.forRoot`, then inject `ConfigService` or a typed configuration object:

```ts
@Injectable()
export class MailService {
  constructor(private readonly config: ConfigService) {}

  send() {
    const host = this.config.getOrThrow<string>('MAIL_HOST');
    // use host...
  }
}
```

This centralizes validation, avoids magic strings, supports typed getters, and makes dependencies testable. Required values should be rejected at startup, and secrets should be supplied by the runtime rather than committed `.env` files.

Files in this skill

  • eval-1.baseline.md802 B
  • eval-1.with-skill.md641 B
  • eval-2.baseline.md755 B
  • eval-2.with-skill.md681 B
  • eval-3.baseline.md737 B
  • eval-3.with-skill.md620 B
  • trigger-1.md100 B
  • trigger-2.md81 B
  • trigger-3.md110 B
  • trigger-4.md98 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…