{"id":"676f32ab-cf3e-4b4c-ab14-aa6c3460cfb5","slug":"subhashdasyam-security-antipatterns-python","name":"security-antipatterns-python","description":"Use when generating Python code for web applications, APIs, or handling user input - prevents OWASP Top 10 vulnerabilities in Django, Flask, FastAPI","canonicalUrl":"https://www.xpersona.co/skill/subhashdasyam-security-antipatterns-python","sourceUrl":"https://github.com/subhashdasyam/security-antipatterns-python","homepage":null,"source":"GITHUB_OPENCLEW","vendor":{"slug":"subhashdasyam","label":"Subhashdasyam","url":"https://github.com/subhashdasyam/security-antipatterns-python"},"protocols":["OPENCLEW"],"capabilities":["access"],"trustScore":null,"trustConfidence":"unknown","artifactCount":0,"benchmarkCount":0,"lastRelease":null,"freshnessAt":"2026-04-15T03:16:08.359Z","freshnessLabel":"Apr 15, 2026","securityReviewed":true,"openapiReady":false,"stats":[{"label":"Trust score","value":"Unknown"},{"label":"Compatibility","value":"OpenClaw"},{"label":"Freshness","value":"Apr 15, 2026"},{"label":"Vendor","value":"Subhashdasyam"},{"label":"Artifacts","value":"0"},{"label":"Benchmarks","value":"0"},{"label":"Last release","value":"Unpublished"}],"factsPreview":[{"factKey":"docs_crawl","label":"Crawlable docs","value":"6 indexed pages on the official domain","category":"integration","href":"https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar","sourceUrl":"https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar","sourceType":"search_document","confidence":"medium","observedAt":"2026-04-15T05:03:46.393Z","isPublic":true,"metadata":{}},{"factKey":"vendor","label":"Vendor","value":"Subhashdasyam","category":"vendor","href":"https://github.com/subhashdasyam/security-antipatterns-python","sourceUrl":"https://github.com/subhashdasyam/security-antipatterns-python","sourceType":"profile","confidence":"medium","observedAt":"2026-04-15T03:16:08.359Z","isPublic":true,"metadata":{}},{"factKey":"protocols","label":"Protocol compatibility","value":"OpenClaw","category":"compatibility","href":"https://www.xpersona.co/api/v1/agents/subhashdasyam-security-antipatterns-python/contract","sourceUrl":"https://www.xpersona.co/api/v1/agents/subhashdasyam-security-antipatterns-python/contract","sourceType":"contract","confidence":"medium","observedAt":"2026-04-15T03:16:08.359Z","isPublic":true,"metadata":{}},{"factKey":"traction","label":"Adoption signal","value":"3 GitHub stars","category":"adoption","href":"https://github.com/subhashdasyam/security-antipatterns-python","sourceUrl":"https://github.com/subhashdasyam/security-antipatterns-python","sourceType":"profile","confidence":"medium","observedAt":"2026-04-15T03:16:08.359Z","isPublic":true,"metadata":{}},{"factKey":"handshake_status","label":"Handshake status","value":"UNKNOWN","category":"security","href":"https://www.xpersona.co/api/v1/agents/subhashdasyam-security-antipatterns-python/trust","sourceUrl":"https://www.xpersona.co/api/v1/agents/subhashdasyam-security-antipatterns-python/trust","sourceType":"trust","confidence":"medium","observedAt":null,"isPublic":true,"metadata":{}}],"highlights":["3 GitHub stars","Trust evidence available"],"agentCard":{"name":"security-antipatterns-python","description":"Use when generating Python code for web applications, APIs, or handling user input - prevents OWASP Top 10 vulnerabilities in Django, Flask, FastAPI","source":"GITHUB_OPENCLEW","sourceId":"github:1138022266","repository":"https://github.com/subhashdasyam/security-antipatterns-python","documentation":"https://www.xpersona.co/skill/subhashdasyam-security-antipatterns-python/agent/subhashdasyam-security-antipatterns-python","protocols":["OPENCLEW"],"capabilities":["access"],"languages":["typescript"],"install":{"command":"git clone https://github.com/subhashdasyam/security-antipatterns-python.git","ecosystem":"git"},"examples":[{"kind":"example","language":"text","snippet":"User input involved?\n├─ Database query → See references/injection.md (use ORM/parameterized)\n├─ File path → See references/file-operations.md (use pathlib + resolve check)\n├─ Command execution → See references/injection.md (subprocess with list args)\n├─ Deserialization → See references/deserialization.md (NEVER pickle untrusted)\n├─ Template rendering → See references/xss-output.md (auto-escape enabled)\n└─ API endpoint → See references/auth-access.md + references/input-validation.md\n\nStoring/generating secrets?\n├─ API keys → See references/crypto-secrets.md (env vars)\n├─ Passwords → See references/crypto-secrets.md (bcrypt/argon2)\n└─ Tokens → See references/crypto-secrets.md (secrets module)\n\nFramework-specific?\n├─ Django → See references/django-security.md\n├─ FastAPI → See references/fastapi-flask.md\n└─ Flask → See references/fastapi-flask.md"}]}}