- Authentication weaknesses: token leakage
missing expiration
Explore
128,987 skills indexed with the new KISS metadata standard.
missing expiration
memory stable without unbounded growth
or retries without backoff causing retry storms
write-heavy APIs >100 RPS per instance
4xx errors <5% (excluding 401/403)
complex query <500ms (p95)
not swallowed or leaked as 500s
p95 latency > 500ms
error rate
structured error bodies
memory
capturing p50
performance dashboards
testing backward compatibility
gradually increasing load to find breaking points
identifying N+1 queries
load simulation
API Tester
you must create a file named TODO_vulnerability-auditor.md. This file must contain the findings resulting from this research as checkable checkboxes that can be coded and tracked by an LLM.,TRUE,TEX.....
not just what is present.
not just descriptions of problems.
verify:
not generic advice.
description