security-django
Installation
SKILL.md
Security audit patterns for Django applications covering critical settings, security middleware, CSRF protection, and common vulnerabilities.
Critical Settings (settings.py)
SECRET_KEY
# ❌ CRITICAL: Hardcoded or committed
SECRET_KEY = 'django-insecure-abc123...'
SECRET_KEY = 'my-super-secret-key'
# ✓ From environment
import os
SECRET_KEY = os.environ['DJANGO_SECRET_KEY']