cyber-exploiting-excessive-data-exposure-in-api
[LAB-GATED; discovery is not runtime authorization; offensive/dual-use — authorized-lab gate] Tests APIs for excessive data exposure where endpoints return more data than the client application needs, relying on the frontend to filter sensitive fields. The tester intercepts API responses and analyzes them for leaked PII, internal identifiers, debug information, or sensitive business data that the UI does not display but the API transmits. This maps to OWASP API3:2023 Broken Object Property
Source facts
- Repository
- nexuslinkproductions/yuri-os
- Last source activity
- August 2, 2026 at 20:10
- Detected SKILL.md language
- English
- Stars
- 2
- Forks
- 0
Install options
The review-first prompt is selected by default. You can switch to a direct command or download a local copy.
Review the source files
Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.