Api Endpoint Discovery
PassAudited by VirusTotal on Apr 25, 2026.
Findings (1)
The skill bundle implements a functional API security scanner that performs passive OSINT and active path brute-forcing as described in its documentation. The code (endpoint_discovery.py) uses standard Python libraries to discover Swagger specs, parse robots.txt, and probe common API endpoints. While it includes a commercial licensing model with Stripe payment links and a basic 'Pro' tier check, there is no evidence of data exfiltration, malicious execution, or unauthorized access to the host system.
