idor-harness
CommunitySystematic IDOR testing with two accounts.
Software Engineering#authorization#vulnerability#api-testing#access-control#security-testing#idor#bug-bounty
AuthorAshtonVaughan
Version1.0.0
Installs0
System Documentation
What problem does it solve?
Systematic IDOR testing identifies authorization weaknesses by simulating multi-account scenarios to reveal improper access control and data exposure.
Core Features & Use Cases
- Two-test-account authorization testing for IDOR scenarios across endpoints.
- Automated harness to enumerate and validate user-specific data exposure and horizontal/vertical privilege escalations.
- Use Case: enterprises performing authorized security testing to identify access-control gaps in custom APIs.
Quick Start
Set up two distinct test accounts and run the automated harness against a target to identify IDOR vulnerabilities.
Dependency Matrix
Required Modules
None requiredComponents
Standard package💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: idor-harness Download link: https://github.com/AshtonVaughan/bountyhound/archive/main.zip#idor-harness Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.