quicknode-security-basics
Installation
SKILL.md
QuickNode Endpoint Hardening
Overview
Protect endpoint tokens as credentials, isolate consumers with multiple tokens, and layer only controls that match the client threat model. A browser referrer rule is not a substitute for keeping privileged RPC or account keys on a server.
Prerequisites
- Endpoint inventory with owners, applications, and environments
- Current plan and available endpoint-security controls
- A threat model covering browser, server, CI, and operator access
Instructions
Step 1: Find exposure
Use Read and Grep for quiknode.pro, x-token, x-api-key, JWT configuration, logs, examples, and client bundles. Stop and rotate any live credential committed to Git or shipped to an untrusted client.