Agent Skills: Django

Use when building Django applications - security hardening, authentication and permissions, ORM optimization, PostgreSQL features, Django 6.0, migrations, testing, and ecosystem libraries

UncategorizedID: CodeAtCode/oss-ai-skills/django

Install this agent skill to your local

pnpm dlx add-skill https://github.com/CodeAtCode/oss-ai-skills/tree/HEAD/frameworks/django

Skill Files

Browse the full folder contents for django.

Download Skill

Loading file tree…

frameworks/django/SKILL.md

Skill Metadata

Name
django
Description
Use when building Django applications - security hardening, authentication and permissions, ORM optimization, PostgreSQL features, Django 6.0, migrations, testing, and ecosystem libraries

Django

Comprehensive guide to Django covering security, ORM, PostgreSQL, GeoDjango, Django 6.0 essentials, admin extensions, and ecosystem tools.

Overview

Django provides a batteries-included web framework with robust features out of the box:

  • Security - CSRF protection, authentication, sessions, password hashing, security middleware
  • ORM - Powerful database abstraction with query optimization
  • PostgreSQL - Full-text search, array fields, JSONB, range fields
  • GeoDjango - Geographic database operations with GPS extraction
  • Django 6.0 - Middleware changes, built-in tasks framework, CSP, GeneratedField
  • Admin Extensions - Operational dashboards and monitoring tools

Specialized Skills

For deeper coverage of specific domains, see these dedicated skills:


Deep Dives

Load these reference files on demand for detailed coverage:

  • ↳ security.md — CSRF protection, sessions, security middleware, field-level encryption
  • ↳ authentication-permissions.md — Authentication views, custom backends, password management, login templates, Django permissions
  • ↳ orm-performance.md — ORM optimization, caching, response time, materialized views
  • ↳ postgresql.md — pgvector, GeneratedField, GeoDjango, PostgreSQL features
  • ↳ django6-modern.md — Django Tasks framework, 6.0 essentials, multi-DB routing, model fields, app naming
  • ↳ testing-migrations.md — Testing optimization, migrations, signals, StreamingHttpResponse
  • ↳ external-api.md — Operational dashboards, external API integration
  • ↳ ecosystem.md — Django ecosystem libraries

Best Practices

  1. Always use {% csrf_token %} in POST forms
  2. Use HTTPS in production (SECURE_SSL_REDIRECT = True)
  3. Enable HSTS for secure connections
  4. Set secure cookies (SESSION_COOKIE_SECURE = True)
  5. Use strong password validation
  6. Use @login_required for protected views
  7. Never expose sensitive data in URLs or logs
  8. Validate file uploads carefully
  9. Use prepared statements (Django ORM does this automatically)

References