IDOR Vulnerability Testing

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill describes a legitimate pen-testing workflow for IDOR vulnerabilities but frames it with detailed exploitation techniques and proof-of-concept steps. While potentially valuable in a properly authorized security assessment, the dual-use nature and explicit guidance on bypassing access controls substantially elevate risk for misuse. It would be prudent to restrict deployment to clearly authorized environments, implement strict auditing, and consider omitting or heavily redacting active exploitation workflows in user-facing documentation.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 01:15 AM
Package URL
pkg:socket/skills-sh/claudiodearaujo%2Fizacenter%2Fidor-vulnerability-testing%2F@8ecd7234dbb311d5dc41acdc819489877092fd17