| name | cyber-exploiting-deeplink-vulnerabilities |
| description | [LAB-GATED; discovery is not runtime authorization; offensive/dual-use — authorized-lab gate] Tests and exploits deep link (URL scheme and App Link) vulnerabilities in Android and iOS mobile applications to identify unauthorized access, data injection, intent hijacking, and redirect manipulation. Use when assessing mobile app attack surface through custom URI schemes, Android App Links, iOS Universal Links, or intent-based navigation. Activates for requests involving deep link security tes |
| hide | true |
YURI skill adapter
Authoritative source: .claude/skills-labgated/cyber-exploiting-deeplink-vulnerabilities/SKILL.md
Authoritative source SHA-256: d7d51431e433e5fc0232716e067d9f85ec7e0228abab4059decd548dec9cfa2e
AUTHORIZED-LAB ONLY. Offensive/dual-use capability. Use exclusively against systems you own or have explicit written authorization to test. Owner-authorized metadata discovery does not authorize runtime actions; use requires an explicit authorized-engagement decision.
Source class: labgated
Owner-authorized discovery: true
Runtime/action authorization: false
Risk gate (registry metadata): "offensive/dual-use — authorized-lab gate"
Discovery does not authorize execution. Obtain explicit current-task authorization before any offensive or dual-use action.
Before acting, read the authoritative source file above completely from beginning to end. If the governed source is absent, run node _SYSTEM/Scripts/skill-recall.mjs --show cyber-exploiting-deeplink-vulnerabilities and read its complete verified output. Follow that source as the skill body; this adapter is a non-authoritative metadata-and-pointer projection.