Ricardo Domingues avatar

Ricardo Domingues

Community

@ricardoo022

1Followers
|
20Public Repos
|
22Published Skills

Agent Skills by Ricardo Domingues

Showing 22 vetted skills indexed across 1 GitHub repositories.

ricardoo022ricardoo022

scan-fase-17

Test GraphQL endpoints for introspection, authorization, and denial-of-service vulnerabilities.

Community
Advanced
ricardoo022ricardoo022

scan-fase-10

Extract third-party service integrations and exposed API keys from frontend JS bundles and network traffic.

Community
Advanced
ricardoo022ricardoo022

scan-fase-19

Map external and internal attack surfaces with infrastructure reconnaissance.

Community
Advanced
ricardoo022ricardoo022

scan-fase-21

Fuzz target URLs with wordlists to discover hidden API endpoints and parameters.

Community
Advanced
ricardoo022ricardoo022

scan-fase-20

Identifies Supabase RLS weaknesses via REST and GraphQL probes, delivering vulnerability findings and remediation steps.

Community
Advanced
ricardoo022ricardoo022

scan-fase-11

Identify authentication and authorization bypass weaknesses via header, path, and parameter manipulation.

Community
Advanced
ricardoo022ricardoo022

scan-fase-16

Map workflows and state transitions to identify business-logic vulnerabilities.

Community
Advanced
ricardoo022ricardoo022

scan-fase-8

Analyze JWT authentication implementations for signing algorithm and claim integrity weaknesses.

Community
Advanced
ricardoo022ricardoo022

scan-fase-1

Identify configurations, secrets, and attack-surface exposure from JS-bundled web applications.

Community
Advanced
ricardoo022ricardoo022

scan-fase-6

Test Supabase Realtime WebSocket channels for unauthorized data access and RLS bypasses.

Community
Advanced
ricardoo022ricardoo022

scan-fase-7

Identify HTTP security header misconfigurations and bypass opportunities across endpoints.

Community
Advanced
ricardoo022ricardoo022

scan-fase-0

Detect backend technology and extract configurations from a target URL.

Community
Advanced
ricardoo022ricardoo022

scan-fase-9

Identify and exploit GraphQL, mass assignment, IDOR, and race condition vulnerabilities.

Community
Advanced
ricardoo022ricardoo022

scan-deep

Enrich initial-scan.json findings into a Pydantic-conformant deep-scan.json report.

Community
Advanced
ricardoo022ricardoo022

scan-full

Orchestrate end-to-end security scans across phases FASE 0-21 on a target URL.

Community
Advanced
ricardoo022ricardoo022

scan-fase-14

Test authenticated web apps for IDOR and privilege escalation vulnerabilities.

Community
Advanced
ricardoo022ricardoo022

skill-creator

Generate Claude skill scaffolds with SKILL.md frontmatter and starter resources.

Community
Intermediate
ricardoo022ricardoo022

scan-fase-15

Run FASE 15 supplemental scans combining Nuclei, Retire.js, Arjun, SQLMap, and Commix.

Community
Advanced
ricardoo022ricardoo022

scan-fase-5

Identify authentication weaknesses in Supabase-backed apps across signup, login, password reset, and OAuth flows.

Community
Advanced
ricardoo022ricardoo022

scan-fase-2

Extract REST, GraphQL, and error-based schema signals into a structured YAML data model.

Community
Advanced
ricardoo022ricardoo022

scan-fase-3

Test Supabase Row Level Security across REST and GraphQL channels.

Community
Advanced
ricardoo022ricardoo022

scan-fase-4

Enumerate Supabase buckets, edge functions, and RPC endpoints for unauthorized access.

Community
Advanced