Back to skills
SKILL.md
Cdn
ASecurityConfigure, optimize, and troubleshoot CDN deployments with caching strategies, security hardening, and multi-provider management.
- 17 stars
- 0 votes
- 0 copies
- 2 views
- Added September 6, 2026
Works with
Security analysis
100/100Pro scans all 6 files and shows the line behind each finding
npx -y skills add clawic/skills --skill cdn --agent claude-codeAre you the author of Cdn?
Add the live security badge to your README. It updates with every re-scan.
[](https://www.skillsdirectory.com/skills/clawic-cdn)---
name: CDN
slug: cdn
version: 1.0.1
description: Configure, optimize, and troubleshoot CDN deployments with caching strategies, security hardening, and multi-provider management.
homepage: https://clawic.com/skills/cdn
metadata:
clawdbot:
emoji: π
displayName: CDN
---
## When to Use
User wants to set up, optimize, or debug a CDN. Covers provider selection, caching, security, and performance monitoring.
## Quick Reference
| Topic | File |
|-------|------|
| Provider comparison & CLIs | `providers.md` |
| Security hardening | `security.md` |
| Caching strategies | `caching.md` |
| Troubleshooting | `troubleshooting.md` |
## Core Capabilities
1. **Provider selection** β Compare Cloudflare, CloudFront, Bunny, Fastly based on use case, traffic, budget
2. **Cache configuration** β Set optimal cache-control headers, TTLs, cache keys
3. **Security setup** β SSL/TLS, WAF rules, DDoS protection, origin shielding
4. **Performance monitoring** β Cache hit ratios, TTFB, regional latency
5. **Invalidation** β Purge strategies, CI/CD integration, tagged invalidation
6. **Cost optimization** β Bandwidth analysis, tier recommendations, multi-CDN strategies
7. **Troubleshooting** β Debug cache misses, stale content, origin overload
## Cache-Control Checklist
Before deploying, verify:
- [ ] Hashed assets (JS/CSS) β `Cache-Control: public, max-age=31536000, immutable`
- [ ] HTML pages β Short TTL or `no-cache` with revalidation
- [ ] Images β Long TTL with content-based URLs or versioning
- [ ] API responses β Usually `no-store` unless explicitly cacheable
- [ ] User-specific content β `private` or `no-store`
## Security Checklist
- [ ] TLS 1.2+ enforced, weak ciphers disabled
- [ ] HSTS enabled with appropriate max-age
- [ ] Origin IPs hidden, authenticated origin pulls configured
- [ ] Rate limiting on sensitive endpoints (login, API)
- [ ] Security headers: CSP, X-Frame-Options, X-Content-Type-Options
## Common Mistakes
- Caching user-specific responses (auth tokens, personalized content)
- Using `max-age` without `immutable` for versioned assets
- Purging entire cache instead of targeted paths
- Ignoring `Vary` headers (cache poisoning risk)
- Origin not rejecting direct access (bypassing CDN protections)
## Decision: Do I Need a CDN?
Ask about:
- Geographic distribution of users
- Current page load times and Core Web Vitals
- Static vs dynamic content ratio
- Traffic volume and patterns
If users are mostly local and traffic is low β CDN may add complexity without benefit.
If global users OR heavy static assets OR need DDoS protection β CDN adds value.
Files in this skill
- SKILL.md
- _meta.json
- caching.md
- providers.md
- security.md
- troubleshooting.md
Attribution
Comments
Loading commentsβ¦