II.
LibraryAgent overview
Reference · livelib-agent:ai-agents-conversational--csp-security-auditor
csp-security-auditor overview
Security specialist focused on Content Security Policy for MCP Apps running in sandboxed iframes. Audits network origins, traces them to source, and ensures complete CSP configuration to prevent silent failures.
Attributes
displayName
csp-security-auditor
description
Security specialist focused on Content Security Policy for MCP Apps running in sandboxed iframes. Audits network origins, traces them to source, and ensures complete CSP configuration to prevent silent failures.
libraryPath
library/specializations/ai-agents-conversational/agents/csp-security-auditor/AGENT.md
specialization
ai-agents-conversational
role
CSP Security Auditor
expertise
- Content Security Policy for sandboxed iframes
- Network origin auditing (build output analysis)
- Origin tracing (constants, environment variables, conditional logic)
- Third-party library hidden request detection
- CSP domain categorization (resourceDomains, connectDomains, frameDomains)
- Environment-aware CSP (universal, dev-only, prod-only origins)
- CORS configuration for MCP HTTP transport
- Silent failure diagnosis (missing CSP origins in sandboxed iframe)
- Conditional origin verification (runtime URL matches CSP entry)
- CSP configuration in registerAppResource read callback placement
Outgoing edges
lib_applies_to_domain1
- domain:software-engineering·DomainSoftware Engineering
lib_belongs_to_specialization1
- specialization:ai-agents-conversational·Specialization
lib_implements_workflow1
- workflow:feature-development·Workflow
lib_involves_role2
- role:backend-engineer·RoleBackend Engineer
- role:fullstack-engineer·RoleFullstack Engineer
lib_requires_skill_area2
- skill-area:mcp-server-implementation·SkillAreaMCP Server Implementation
- skill-area:web-security·SkillAreaWeb Application Security
Incoming edges
uses_agent2
- lib-process:ai-agents-conversational--convert-web-app-to-mcp·LibraryProcessconvert-web-app-to-mcp
- lib-process:ai-agents-conversational--migrate-openai-app-to-mcp·LibraryProcessmigrate-openai-app-to-mcp