security-headers-configuration
v3.9.0Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. Use when hardening web applications, passing security audits, or implementing Content Security Policy.
By Claude Skills MaintainersLicense: MIT227 GitHub starsUpdated last week
Directory evidence
- Runtimes
- Codex and Claude Code
- Parsed components
- 1 skill or MCP entry
- Source updated
- Sep 28, 2026
- Manifest status
- Canonical path parsed
The directory validates manifest shape and source location. It does not execute the plugin or provide a security endorsement. Review the indexing methodology →
Install security-headers-configuration for Codex and Claude Code
codex plugin marketplace add secondsky/claude-skills
codex plugin marketplace upgrade claude-skills
codex plugin add security-headers-configuration@claude-skillsPaste and run these commands in a terminal with Codex. They add and refresh the claude-skills catalog, then install this plugin.
Compatibility: the page URL and API slug “security-headers-configuration” remain stable.
- Codex:
security-headers-configuration@agent-plugin-marketplace→security-headers-configuration@claude-skills
The installer fetches third-party code from the source repository shown on this page. This directory validates manifest structure and source location, but does not perform a security audit; review the manifest, components, and source before installing.
Get the source manually
git clone https://github.com/secondsky/claude-skillsClone the source repository, then follow its setup instructions to add the plugin to a compatible client. The plugin root is plugins/security-headers-configuration/.
Plugin files
├── .codex-plugin/plugin.json├── .claude-plugin/plugin.json└── skills/security-headers-configuration/SKILL.md
Included Skills1
Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. Use when hardening web applications, passing security audits, or implementing Content Security Policy.
Plugin manifests2
{
"name": "security-headers-configuration",
"version": "3.9.0",
"description": "Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. Use when hardening web applications, passing security audits, or implementing Content Security Policy.",
"author": {
"name": "Claude Skills Maintainers",
"email": "[email protected]"
},
"license": "MIT",
"repository": "https://github.com/secondsky/claude-skills",
"keywords": [
"security-headers-configuration",
"security",
"headers",
"configuration",
"vulnerability",
"protection",
"csrf",
"xss",
"http",
"mime"
],
"skills": "./skills/",
"interface": {
"displayName": "Security Headers Configuration",
"shortDescription": "Configures HTTP security headers to protect against XSS, clickjacking, and MIME",
"longDescription": "Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. Use when hardening web applications, passing security audits, or implementing Content Security Policy.",
"developerName": "Claude Skills Maintainers",
"category": "Security & Authentication",
"capabilities": [
"Read",
"Write"
],
"defaultPrompt": [
"Help me with Security Headers Configuration.",
"Show me best practices for Security Headers Configuration.",
"Guide me through using Security Headers Configuration effectively."
]
}
}{
"name": "security-headers-configuration",
"description": "Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. Use when hardening web applications, passing security audits, or implementing Content Security Policy.",
"version": "3.9.0",
"author": {
"name": "Claude Skills Maintainers",
"email": "[email protected]"
},
"license": "MIT",
"repository": "https://github.com/secondsky/claude-skills",
"keywords": [
"security-headers-configuration",
"security",
"headers",
"configuration",
"vulnerability",
"protection",
"csrf",
"xss",
"http",
"mime"
]
}For maintainers
If you maintain this plugin, link to this source-backed listing from your README so users can review its manifest and indexed components.
[security-headers-configuration on Agent Plugins Marketplace](https://pluginsmp.com/plugins/security-headers-configuration)