exploiting-mass-assignment-in-rest-apis
Warn
Audited by Socket on Mar 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
High-risk offensive security skill. Its capabilities align with its stated purpose, but that purpose is to exploit web APIs via privilege escalation and business-logic tampering. Install trust is mostly normal, with minor ambiguity around Arjun, and there is no clear malware or hidden exfiltration; the main concern is enabling an AI agent to conduct authenticated exploitation against external targets.
Confidence: 91%Severity: 82%
Audit Metadata