← Vibe Code Security ReviewerCONTENT HISTORYWHAT CHANGED · RULE-BASED ANALYSIS
Update to Vibe Code Security Reviewer
Snapshot Sep 30, 2026 · 23:17 UTC · version 0.1.0
Collection source: not recorded for this historical snapshot.
First saved snapshot
No earlier snapshot is available to establish a change.
Compare saved observations
Download comparison JSONFull technical diff · 0 changed fields
Full snapshot data
{
"description": "Review APIs for broken object authorization, excessive data, unsafe methods, rate-limit gaps, and abuse paths.",
"included_files": [],
"name": "api-abuse-and-misuse",
"skill_md_contents": "---\nname: api-abuse-and-misuse\ndescription: Review APIs for broken object authorization, excessive data, unsafe methods, rate-limit gaps, and abuse paths.\n---\n\n# API Abuse and Misuse\n\nTrace every sensitive endpoint from request to authorization, query, mutation, and response. Check BOLA/IDOR, mass assignment, over-broad selects, enumeration, pagination abuse, replay, missing idempotency, rate limits, quota bypass, unsafe webhooks, CORS, error leakage, and privilege escalation. Ensure controls are enforced server-side and test negative cases for another user, tenant, role, and unauthenticated caller.\n"
}SHA-256 of public snapshot: 7c3fee049fa7fd007540ee5e1bbee406b633532d0996686b1c73255815efd16f