oauth2-oidc

Community

Test OAuth2/OIDC flows and uncover abuses.

Authorxalgord
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill helps security teams validate OAuth 2.0 and OpenID Connect implementations by uncovering PKCE bypasses, token exchange abuse, and cross-client attack vectors.

Core Features & Use Cases

  • Flow-specific attacks across Authorization Code, PKCE, Device Authorization, and Token Introspection to identify misconfigurations and weaknesses.
  • Real-world attack scenarios including code reuse, downgrade, and cross-client token usage to validate defenses.
  • Use Case: Evaluate a production-like environment by running automated probe sequences against an OAuth/OIDC server and report findings.

Quick Start

Execute the oauth2-oidc skill against your OAuth2/OIDC provider to discover PKCE weaknesses and token handling vulnerabilities.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: oauth2-oidc
Download link: https://github.com/xalgord/xalgorix/archive/main.zip#oauth2-oidc

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.