소개
This skill provides specialized guidance for building secure, production-ready Chrome extensions by enforcing the principle of least privilege and preventing common vulnerabilities like XSS and data leakage. It covers essential Manifest V3 requirements, including strict Content Security Policy (CSP) configurations, secure message passing between background scripts and content scripts, and encrypted storage techniques. It is an indispensable resource for developers looking to pass Chrome Web Store security reviews while ensuring their users' data remains protected from malicious injection and unauthorized access.