CtrlK
BlogDocsLog inGet started
Tessl Logo

security-headers-generator

Security Headers Generator - Auto-activating skill for Security Fundamentals. Triggers on: security headers generator, security headers generator Part of the Security Fundamentals skill category.

35

0.97x
Quality

3%

Does it follow best practices?

Impact

93%

0.97x

Average score across 3 eval scenarios

SecuritybySnyk

Passed

No known issues

Optimize this skill with Tessl

npx tessl skill review --optimize ./planned-skills/generated/03-security-fundamentals/security-headers-generator/SKILL.md
SKILL.md
Quality
Evals
Security

Evaluation results

96%

-4%

Secure an Express.js REST API for Production

Production-ready security headers middleware

Criteria
Without context
With context

HSTS header

100%

60%

X-Frame-Options

100%

100%

X-Content-Type-Options

100%

100%

Content-Security-Policy

100%

100%

Referrer-Policy

100%

100%

Permissions-Policy

100%

100%

npm security package

100%

100%

No placeholder values

100%

100%

Security documentation

100%

100%

Server fingerprint removed

100%

100%

83%

-2%

HTTP Response Header Security Auditor

OWASP standards-based header validation

Criteria
Without context
With context

OWASP alignment

0%

0%

HSTS check

100%

100%

X-Frame-Options check

100%

100%

X-Content-Type-Options check

100%

100%

CSP check

100%

100%

Referrer-Policy check

100%

100%

Structured JSON report

100%

100%

Risk explanations

100%

100%

Authentication/transport security coverage

100%

100%

No placeholder/stub checks

100%

60%

100%

Harden a Healthcare Web Portal for Production Deployment

Multi-platform production security configuration

Criteria
Without context
With context

HSTS in Nginx

100%

100%

X-Frame-Options

100%

100%

X-Content-Type-Options

100%

100%

Content-Security-Policy

100%

100%

Referrer-Policy

100%

100%

Permissions-Policy

100%

100%

Production HSTS max-age

100%

100%

Step-by-step deployment guide

100%

100%

No placeholder values

100%

100%

npm security package

100%

100%

Repository
jeremylongshore/claude-code-plugins-plus-skills
Evaluated
Agent
Claude Code
Model
Claude Sonnet 4.6

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.