idor-testing

Warn

Audited by Socket on Jun 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent as an IDOR testing guide, but its actual capability is offensive security enablement for an AI agent: it teaches exploitation, enumeration, and bypass methods against web applications. There is little supply-chain risk and no obvious credential harvesting, but the skill materially increases an agent's ability to conduct unauthorized security testing and access-control abuse.

Confidence: 92%Severity: 86%
Audit Metadata
Analyzed At
Jun 2, 2026, 05:22 AM
Package URL
pkg:socket/skills-sh/sickn33%2Fantigravity-awesome-skills%2Fidor-vulnerability-testing%2F@f2ec3d0429e0fdd1642668c13b9e0b3c21c0f930
Security Audit — socket — idor-testing