API security automation skill for REST, GraphQL, gRPC, and WebSocket APIs. Covers OpenAPI/AsyncAPI ingestion, authenticated fuzzing, OWASP API Top 10 (BOLA, BFLA, mass assignment, SSRF), schema diffing, GraphQL introspection abuse, JWT and OAuth misuse, rate-limit and replay testing. Use to automate API assessments with safe, scoped, evidence-backed findings.
$npx -y skills add masriyan/gemini-security-skills --skill api-security-automationInstalls into the current project.
Run `npx skills use "https://github.com/masriyan/gemini-security-skills" --skill "masriyan/gemini-security-skills/api-security-automation"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/masriyan/gemini-security-skills" that are relevant to the current task. Run `npx skills add "https://github.com/masriyan/gemini-security-skills"` and select the relevant skills, then follow their instructions.