API Fuzzing for Bug Bounty
Warn
Audited by Socket on Sep 14, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally aligned with its stated purpose, but that purpose is to equip an AI agent with offensive API exploitation capabilities, including auth bypass, IDOR, injection, SSRF/XXE, and DoS-style testing. It is not confirmed malware, yet it is high risk because it enables autonomous security testing against targets and references a few weaker-trust third-party tools/domains.
Confidence: 91%Severity: 82%
Audit Metadata