What problem does it solve?
This skill solves the problem of identifying overlooked security vulnerabilities in small bakery, pastry, and cake shop websites that typically run basic e-commerce setups on shared hosting, which often have unpatched flaws in their ordering systems, APIs, and custom form fields that generic recon guides miss.
Core Features & Use Cases
- Sector-specific platform fingerprinting: Detects common bakery site platforms including WordPress/WooCommerce, Shopify, and third-party ordering tools like EatStreet, Toast POS, and Slice.
- Targeted vulnerability surface mapping: Identifies exposed WooCommerce REST APIs, unvalidated custom cake order forms, brute-forceable coupon validation endpoints, and leaking store locator APIs that expose customer and staff data.
- Use case: A penetration tester scoping a local bakery chain's web assets can use this skill to quickly find exposed customer order data and unsecured checkout flows without sifting through generic e-commerce recon guides.
Quick Start
Use the recon-bakeries skill to scan a target bakery website for exposed e-commerce APIs, unvalidated custom order forms, and leaking store locator data.