Skip to main content
Ejecuta cualquier Skill en Manus
con un clic

hunt-graphql

// Hunting skill for graphql vulnerabilities. Built from 12 public bug bounty reports across IDOR via node() / GID, mutation IDOR including AI/LLM features, cross-tenant IDOR, SSRF via argument, batching-DoS, query-cost-bypass, SQLi via argument, broken-object-level-authz, auth-bypass via unscoped mutations, and PII exposure from missing field-level authz. Use when hunting graphql on any target.

$ git log --oneline --stat
stars:1380
forks:195
updated:25 de mayo de 2026, 20:56
SKILL.md
readonly