perseus-api

Identify and remediate API security vulnerabilities across REST, GraphQL, WebSocket, and gRPC endpoints.

66|14|Updated Feb 8, 2026
One-click install
npx skills add https://github.com/kaivyy/perseus --skill perseus-api
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: perseus-api
Source: https://github.com/kaivyy/perseus/tree/main/skills/perseus/specialists/api
Command: npx skills add https://github.com/kaivyy/perseus --skill perseus-api

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Automated, comprehensive API security analysis across REST, GraphQL, WebSocket, gRPC, OAuth, and caching to identify vulnerabilities before they reach production.

Core Features & Use Cases

  • OWASP API Top 10 coverage across common API protocols and frameworks
  • Multi-protocol focus support for REST, GraphQL, WebSocket, and gRPC
  • Remediation-ready outputs including prioritized findings and actionable guidance
  • Cross-language applicability for JavaScript/TypeScript, Go, Python, Java, Ruby, and more

Quick Start

Initiate a full API security deep-dive against your project to generate a prioritized remediation plan.

Frequently Asked Questions about perseus-api

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I scan my codebase for OWASP API Top 10 vulnerabilities across REST and GraphQL?

To scan for OWASP API Top 10 vulnerabilities across REST and GraphQL, you perform a deep codebase security analysis that identifies risks and outputs a structured, prioritized remediation plan covering reconnaissance and post-scan phases.

What is deep API security analysis and how does it differ from standard scanning?

Deep API security analysis goes beyond standard scanning by examining codebase logic across REST, GraphQL, WebSocket, and gRPC endpoints, detecting complex vulnerabilities like OAuth misconfigurations and outputting structured remediation guidance.

Does API security analysis support Go, Python, and Java codebases?

Yes, API security analysis provides cross-language applicability for Go, Python, Java, JavaScript, TypeScript, and Ruby, identifying protocol-specific vulnerabilities across these frameworks to ensure comprehensive coverage.

Can I detect GraphQL-specific security vectors and caching misconfigurations in my code?

Yes, you can detect GraphQL-specific security vectors and caching misconfigurations by running a deep codebase analysis that covers these specialized threats alongside standard REST and WebSocket endpoint vulnerabilities.

What is the best way to get a remediation-ready API security report for my project?

The best way to get a remediation-ready API security report is to initiate a full security deep-dive against your project, which generates a structured analysis with prioritized findings and actionable guidance.