All skills
grasmash avatar

/ivangrynenko-cursorrules-drupal

@76e6435

Drupal development and security patterns from Ivan Grynenko's cursor rules. Covers OWASP Top 10, authentication, access control, injection prevention, cryptography, configuration, database standards, file permissions, and more.

Use this Skill: https://skilld.dev/gh/grasmash/drupal-claude-skills/ivangrynenko-cursorrules-drupal

This session only. Nothing lands on disk.

SKILL.md

≈65 tokens always: the name and description. ≈464 when used: this file. ≈18k more on demand in 12 files.

Ivan Grynenko - Drupal Cursor Rules

Source: Ivan Grynenko - Cursor Rules Author: Ivan Grynenko License: MIT

When This Skill Activates

Activates when working with Drupal security topics including:

  • Authentication and session management
  • Access control and permissions
  • SQL injection and XSS prevention
  • Cryptography and data protection
  • Security configuration
  • Dependency management
  • SSRF prevention
  • Secure design patterns
  • Software integrity
  • Security logging and monitoring

Available Topics

All topics are available as references in the /references/ directory.

Each reference contains:

  • OWASP classification and reference
  • Security patterns and anti-patterns
  • Enforcement checks
  • Code examples
  • Best practices

OWASP Top 10 Coverage

  • @references/authentication-security.md - Authentication failures (A07:2021)
  • @references/access-control-security.md - Broken access control (A01:2021)
  • @references/injection-prevention.md - Injection vulnerabilities (A03:2021)
  • @references/data-security.md - Cryptographic failures (A02:2021)
  • @references/security-configuration.md - Security misconfiguration (A05:2021)
  • @references/dependency-security.md - Vulnerable components (A06:2021)
  • @references/ssrf-prevention.md - Server-side request forgery (A10:2021)
  • @references/secure-design.md - Insecure design (A04:2021)
  • @references/integrity-validation.md - Software integrity failures (A08:2021)
  • @references/logging-security.md - Logging and monitoring failures (A09:2021)

Additional Security Topics

  • @references/database-standards.md - Database best practices
  • @references/file-permissions.md - File security and access control

See /references/ directory for complete list.



To update: Run .claude/scripts/sync-ivan-rules.sh

Source: SKILL.md on GitHub

No alerts16d4 checks · Risk SAFE
  • Gen Agent Trust Hub16d

    The skill provides a comprehensive suite of security auditing rules for Drupal development, modeled after OWASP Top 10 guidelines. It serves as a defensive tool to help AI agents identify and remediate common vulnerabilities such as SQL injection, broken access control, and insecure configurations. No malicious patterns or safety risks were identified within the skill instructions or scripts.

  • Socket16d

    No alerts

  • Snyk16d

    Risk: LOW · No issues

  • ZeroLeaks5mo

    Score: 93/100 · 2 sections analyzed

Signed by skilld at 76e6435. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 2 months ago.

Steadyupdated 4 months ago

README badge

README badge for grasmash/drupal-claude-skills/ivangrynenko-cursorrules-drupal