api-security

Installation
SKILL.md

API Security Testing

This skill enables comprehensive security testing of APIs including REST, GraphQL, gRPC, and WebSocket protocols. It covers the OWASP API Security Top 10 and provides practical testing methodologies for common API vulnerabilities.

When to Use This Skill

This skill should be invoked when:

  • Performing API penetration testing
  • Testing for OWASP API Security Top 10 vulnerabilities
  • Fuzzing REST/GraphQL/gRPC endpoints
  • Testing API authentication and authorization (BOLA/BFLA)
  • Analyzing OpenAPI/Swagger specifications
  • Testing JWT/OAuth implementations
  • Rate limiting and resource exhaustion testing

Trigger Phrases

  • "test this API for security issues"
  • "pentest the REST API"
  • "test GraphQL security"
Related skills

More from hardw00t/ai-security-arsenal

Installs
13
GitHub Stars
39
First Seen
Feb 2, 2026