skills/mukul975/anthropic-cybersecurity-skills/testing-api-security-with-owasp-top-10/Gen Agent Trust Hub
testing-api-security-with-owasp-top-10
Pass
Audited by Gen Agent Trust Hub on Mar 15, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill instructions include numerous shell commands using standard security tools like
curl,ffuf, andjq. These are typical for API enumeration and vulnerability scanning in an authorized testing context.\n- [EXTERNAL_DOWNLOADS]: The skill references reputable third-party tools such as Burp Suite and Postman, and utilizes the well-known Pythonrequestslibrary. No downloads from untrusted or malicious sources were identified.\n- [SAFE]: The included Python scriptagent.pyautomates common security tests such as checking for authorization bypass and sensitive data exposure. The script performs these tests against a user-specified target URL and handles data locally, adhering to the skill's stated purpose of security testing.
Audit Metadata