SkillAgentSearch skills...

offensive-api-security

Comprehensive API security testing methodology covering REST, gRPC, and WebSocket attack surfaces. Addresses the full OWASP API Security Top 10 2023 including BOLA/IDOR, broken authentication, excessive data exposure, rate limiting bypass, BFLA, mass assignment, SSRF, and security misconfiguration.

Install / Use

npx skills add SnailSploit/Claude-Red --skill offensive-api-security

Installs into whichever agent you are using.

About this skill
📄

SKILL.md

Installable skill definition

Quality Score

87/100

Category

Security

Supported Platforms

Universal

Our assessment of offensive-api-security

offensive-api-security scores 87/100 on our quality scale, 402nd of 653 Security skills we index.

We have not analysed the SKILL.md file itself yet, so the content part of this score is an estimate until our crawler reaches it.

With 6,850 GitHub stars, it is one of the more widely adopted skills in the catalogue.

Maintenance, license and trust

  • The repository was last updated 6 days ago, so offensive-api-security is actively maintained.
  • It is released under the MIT license, a permissive license that allows use, modification and commercial use with attribution.
  • Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

offensive-api-security compared with similar skills

All 4 of these similar skills score higher than offensive-api-security; compare them before choosing.

SkillScoreStarsUpdatedFormat
offensive-api-security (this skill)by SnailSploit876.8k6d agoSKILL.md
Agent-Reachby Panniantong10085.6k11d agoCLAUDE.md
headroomby headroomlabs-ai10073.9ktodayCLAUDE.md
Scraplingby D4Vinci10083.8ktodayMCP Server
LocalAIby mudler10049.3ktodayMCP Server

Frequently asked questions

How do I install offensive-api-security?
Run npx skills add SnailSploit/Claude-Red --skill offensive-api-security. The install tabs above show the steps for each supported agent.
Which AI agents does offensive-api-security work with?
It is written for Universal, as a SKILL.md file. Other agents that read the same format can often use it too.
Is offensive-api-security safe to use?
It is MIT-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is offensive-api-security still maintained?
The repository was last updated 6 days ago, so offensive-api-security is actively maintained.

Related Skills

View on GitHub
GitHub Stars6.8k
CategorySecurity
Updated6d ago
Forks896

Languages

Python

Trust signals

100/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

No cautions