Api Endpoint Discovery

PassAudited by VirusTotal on Apr 25, 2026.

Findings (1)

The skill bundle implements a functional API security scanner that performs passive OSINT and active path brute-forcing as described in its documentation. The code (endpoint_discovery.py) uses standard Python libraries to discover Swagger specs, parse robots.txt, and probe common API endpoints. While it includes a commercial licensing model with Stripe payment links and a basic 'Pro' tier check, there is no evidence of data exfiltration, malicious execution, or unauthorized access to the host system.