hunt-ato
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a taxonomy for security researchers to hunt for Account Takeover (ATO) vulnerabilities. The commands provided (e.g.,
ffuffor brute forcing orcurl-style HTTP requests) are standard tools used in penetration testing and bug hunting. The 'attacker.com' and 'evil.com' references are used as placeholders for conceptual demonstrations. No actual malicious payloads, credential exfiltration, or unauthorized persistence mechanisms are present. The skill aims to guide the user in validating vulnerabilities on their own test accounts as part of a security audit process.
Audit Metadata