XSS & CSRF instruction modules for AI agents — part of Security on Markdowners.
Security → XSS & CSRF
Preventing cross-site scripting and cross-site request forgery: context-aware output encoding, avoiding innerHTML with user data, CSP as defense in depth, strict sanitization allowlists, and SameSite cookies with CSRF tokens.
by @markdowners