TacoSkill LABTacoSkill LAB

The full-lifecycle AI skills platform.

Product

  • SkillHub
  • Playground
  • Skill Create
  • SkillKit

Resources

  • Privacy
  • Terms
  • About

Platforms

  • Claude Code
  • Cursor
  • Codex CLI
  • Gemini CLI
  • OpenCode

© 2026 TacoSkill LAB. All rights reserved.

TacoSkill LAB
TacoSkill LAB
HomeSkillHubCreatePlaygroundSkillKit
  1. Home
  2. /
  3. SkillHub
  4. /
  5. IDOR Vulnerability Testing
Improve

IDOR Vulnerability Testing

8.7

by davila7

134Favorites
276Upvotes
0Downvotes

This skill should be used when the user asks to "test for insecure direct object references," "find IDOR vulnerabilities," "exploit broken access control," "enumerate user IDs or object references," or "bypass authorization to access other users' data." It provides comprehensive guidance for detecting, exploiting, and remediating IDOR vulnerabilities in web applications.

IDOR

8.7

Rating

0

Installs

Security

Category

Quick Review

Excellent security testing skill with comprehensive IDOR vulnerability assessment guidance. The description clearly covers all invocation scenarios (IDOR testing, broken access control, authorization bypass). Task knowledge is outstanding with detailed methodologies, Burp Suite workflows, exploit techniques, enumeration strategies, and remediation code examples. Structure is logical and well-organized with clear sections, reference tables, and a practical checklist. The skill demonstrates high novelty as systematic IDOR testing with proper tooling and multi-account verification would require substantial CLI effort and security expertise. Minor improvement possible: could benefit from a separate reference file for the extensive checklists/tables to make SKILL.md more concise, though current organization remains clear. Overall, this is a production-ready skill that meaningfully reduces the cost and complexity of professional security testing.

LLM Signals

Description coverage9
Task knowledge10
Structure9
Novelty8

GitHub Signals

18,239
1,655
133
73
Last commit 0 days ago

Publisher

davila7

davila7

Skill Author

Related Skills

secure-code-guardiansecurity-reviewerrepomix-safe-mixer

Loading SKILL.md…

Try onlineView on GitHub

Publisher

davila7 avatar
davila7

Skill Author

Related Skills

secure-code-guardian

Jeffallan

6.4

security-reviewer

Jeffallan

6.4

repomix-safe-mixer

daymade

7.4

iotnet

BrownFineSecurity

6.3
Try online