Skip to content
Back to skills

Auth Hardening

ASecurity

Guidance for implementing and reviewing authentication code safely

  • 3 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 29, 2026
ai-agentsjavascripttypescriptpythongojavaflasksecurity

Security analysis

A100/100

Scanned September 29, 2026

npx -y skills add openshard/openshard --skill auth-hardening --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Auth Hardening?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Auth Hardening
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/openshard-auth-hardening/badge)](https://www.skillsdirectory.com/skills/openshard-auth-hardening)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: Auth Hardening
description: Guidance for implementing and reviewing authentication code safely
category: security
keywords: [auth, login, jwt, session, token, password, oauth]
languages: [python, typescript, javascript]
framework: flask
---

Always hash passwords with bcrypt or argon2 — never store plaintext or MD5.
Validate JWTs on every protected route; check expiry, issuer, and signature.
Rotate refresh tokens on use and invalidate old ones server-side.
Set secure, httpOnly, sameSite=strict on session cookies.
Rate-limit login endpoints and log failed attempts with IP and timestamp.

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…