Back to skills
SKILL.md
Angular Upgrade Security Angular Iframe Binding Hardening
ASecurityReviews iframe bindings and host bindings for Angular 15-era security and behavior hardening.
- 4 stars
- 0 votes
- 0 copies
- 0 views
- Added October 2, 2026
Security analysis
100/100npx -y skills add janpereira-dev/ngAutoPilot --skill angular--upgrade--security--angular-iframe-binding-hardening --agent claude-codeAre you the author of Angular Upgrade Security Angular Iframe Binding Hardening?
Add the live security badge to your README. It updates with every re-scan.
[](https://www.skillsdirectory.com/skills/janpereira-dev-angular-upgrade-security-angular-iframe-binding-ha)---
id: angular.upgrade.security.angular-iframe-binding-hardening
name: Angular Iframe Binding Hardening
description: >
Reviews iframe bindings and host bindings for Angular 15-era security and behavior hardening.
stack:
- Angular
- TypeScript
category: security
status: stable
version: 0.10.0
owner: NgAutoPilot
triggers:
- iframe binding
- iframe security
- sandbox
- allow attribute
compatibility:
angular:
min: "15"
---
# Angular Iframe Binding Hardening
## Purpose
Use this skill to review iframe bindings and host bindings for Angular 15-era security hardening.
## When to Use
- The app binds iframe `src`, `sandbox`, `allow`, or `referrerPolicy`.
- Host bindings control iframe attributes.
## Do
- Review `[src]`, `[sandbox]`, `[allow]`, `[referrerPolicy]`, and host bindings that affect iframe behavior.
- Verify that security-sensitive values are not being elevated to unsafe bindings.
## Do Not
- Do not move sensitive data into iframe query parameters.
- Do not hardcode unsafe origins or permissive sandbox values.
## Review Checklist
- [ ] Iframe bindings are inventoried.
- [ ] Security-sensitive attributes are reviewed.
- [ ] Safe/unsafe behavior is documented.
## Expected Output
1. Iframe bindings found.
2. Risk assessment.
3. Required hardening changes.
Attribution
Comments
Loading comments…