Skip to main content
Manus에서 모든 스킬 실행
원클릭으로
$pwd:

sast-graphql

// Detect GraphQL injection vulnerabilities in a codebase using a three-phase approach: recon (confirm GraphQL usage and find unsafe operation document assembly sites), batched verify (trace user input to those sites in parallel subagents, up to 3 candidate sites each), and merge (consolidate batch results). Requires sast/architecture.md (run sast-analysis first). Outputs findings to sast/graphql-results.md. If no GraphQL technology is found in Phase 1, later phases are skipped. Use when asked to find GraphQL injection, unsafe GraphQL document construction, or operation string injection bugs.

$ git log --oneline --stat
stars:648
forks:29
updated:2026년 3월 31일 15:54
SKILL.md
readonly