skills/nestjs/nestjs-security-isolation/SKILL.md
Enforce multi-tenant isolation and PostgreSQL Row Level Security in NestJS. Use when enforcing tenant isolation or PostgreSQL RLS in NestJS multi-tenant apps.
npx skillsauth add hoangnguyen0403/agent-skills-standard nestjs-security-isolationInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Strict multi-tenant isolation. All child-centric data must secured via PostgreSQL RLS and service-level validation.
ENABLE ROW LEVEL SECURITY. Define policies using current_setting('app.current_user_id').@Security JSDoc to entity class.SECURITY.md with new table and its access logic.childrenService.validateChildAccess(childId, userId) before any persistence operation.child or family MUST RLS enabled in its creation migration.ChildrenService for child/family membership checks.SECURITY.md source of truth. Any change to RLS policies must reflected there immediately./children/:childId/....SECURITY.md and entity JSDoc./domain/:id for child data. Always scope by :childId.testing
Infer the requesting operator's technical fluency from message content (never ask directly) and adapt register — business, hybrid, or technical — across SDLC workflow output. Use when starting sdlc, brainstorm-feature, plan-feature, verify-work, publish-notes, or session-report, or whenever a request's phrasing signals a non-technical or cross-stack operator.
documentation
Define transaction boundaries, locking, and consistency guarantees for multi-step writes. Use when designing atomic operations, retries, idempotency, or concurrent write behavior.
development
Design relational or document schemas from access patterns, cardinality, and lifecycle. Use when modeling entities, choosing embed vs normalize, or shaping schema boundaries before implementation.
data-ai
Diagnose database latency with explain plans, index ownership, and query-shape review. Use when a query is slow, an index is missing, or scans and N+1 patterns appear.