Skip to content
Back to skills

Cdn

ASecurity

Configure, optimize, and troubleshoot CDN deployments with caching strategies, security hardening, and multi-provider management.

  • 17 stars
  • 0 votes
  • 0 copies
  • 2 views
  • Added September 6, 2026
devopsapici/cdsecurityperformance

Works with

  • cli
  • api

Security analysis

A100/100

Pro scans all 6 files and shows the line behind each finding

Scanned September 6, 2026

npx -y skills add clawic/skills --skill cdn --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Cdn?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Cdn
[![Security: A β€” Skills Directory](https://www.skillsdirectory.com/api/skills/clawic-cdn/badge)](https://www.skillsdirectory.com/skills/clawic-cdn)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: CDN
slug: cdn
version: 1.0.1
description: Configure, optimize, and troubleshoot CDN deployments with caching strategies, security hardening, and multi-provider management.
homepage: https://clawic.com/skills/cdn
metadata:
  clawdbot:
    emoji: 🌐
    displayName: CDN
---

## When to Use

User wants to set up, optimize, or debug a CDN. Covers provider selection, caching, security, and performance monitoring.

## Quick Reference

| Topic | File |
|-------|------|
| Provider comparison & CLIs | `providers.md` |
| Security hardening | `security.md` |
| Caching strategies | `caching.md` |
| Troubleshooting | `troubleshooting.md` |

## Core Capabilities

1. **Provider selection** β€” Compare Cloudflare, CloudFront, Bunny, Fastly based on use case, traffic, budget
2. **Cache configuration** β€” Set optimal cache-control headers, TTLs, cache keys
3. **Security setup** β€” SSL/TLS, WAF rules, DDoS protection, origin shielding
4. **Performance monitoring** β€” Cache hit ratios, TTFB, regional latency
5. **Invalidation** β€” Purge strategies, CI/CD integration, tagged invalidation
6. **Cost optimization** β€” Bandwidth analysis, tier recommendations, multi-CDN strategies
7. **Troubleshooting** β€” Debug cache misses, stale content, origin overload

## Cache-Control Checklist

Before deploying, verify:
- [ ] Hashed assets (JS/CSS) β†’ `Cache-Control: public, max-age=31536000, immutable`
- [ ] HTML pages β†’ Short TTL or `no-cache` with revalidation
- [ ] Images β†’ Long TTL with content-based URLs or versioning
- [ ] API responses β†’ Usually `no-store` unless explicitly cacheable
- [ ] User-specific content β†’ `private` or `no-store`

## Security Checklist

- [ ] TLS 1.2+ enforced, weak ciphers disabled
- [ ] HSTS enabled with appropriate max-age
- [ ] Origin IPs hidden, authenticated origin pulls configured
- [ ] Rate limiting on sensitive endpoints (login, API)
- [ ] Security headers: CSP, X-Frame-Options, X-Content-Type-Options

## Common Mistakes

- Caching user-specific responses (auth tokens, personalized content)
- Using `max-age` without `immutable` for versioned assets
- Purging entire cache instead of targeted paths
- Ignoring `Vary` headers (cache poisoning risk)
- Origin not rejecting direct access (bypassing CDN protections)

## Decision: Do I Need a CDN?

Ask about:
- Geographic distribution of users
- Current page load times and Core Web Vitals
- Static vs dynamic content ratio
- Traffic volume and patterns

If users are mostly local and traffic is low β†’ CDN may add complexity without benefit.
If global users OR heavy static assets OR need DDoS protection β†’ CDN adds value.

Files in this skill

  • SKILL.md2.6 KB
  • _meta.json158 B
  • caching.md3.1 KB
  • providers.md2.6 KB
  • security.md2.8 KB
  • troubleshooting.md3.7 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…