API security testing workflow for REST and GraphQL APIs covering authentication, authorization, rate limiting, input validation, and security best practices.
56
Quality
33%
Does it follow best practices?
Impact
96%
1.10xAverage score across 3 eval scenarios
Passed
No known issues
Optimize this skill with Tessl
npx tessl skill review --optimize ./skills/antigravity-api-security-testing/SKILL.mdSpecialized workflow for testing REST and GraphQL API security including authentication, authorization, rate limiting, input validation, and API-specific vulnerabilities.
Use this workflow when:
api-fuzzing-bug-bounty - API fuzzingscanning-tools - API scanningUse @api-fuzzing-bug-bounty to discover API endpointsbroken-authentication - Auth testingapi-security-best-practices - API authUse @broken-authentication to test API authenticationidor-testing - IDOR testingUse @idor-testing to test API authorizationapi-fuzzing-bug-bounty - API fuzzingsql-injection-testing - Injection testingUse @api-fuzzing-bug-bounty to fuzz API parametersapi-security-best-practices - Rate limitingUse @api-security-best-practices to test rate limitingapi-fuzzing-bug-bounty - GraphQL fuzzingUse @api-fuzzing-bug-bounty to test GraphQL securityapi-security-best-practices - Error handlingUse @api-security-best-practices to audit API error handlingsecurity-audit - Security auditingweb-security-testing - Web securityapi-development - API development5c5ae21
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.