sc-privilege-escalation

Community

Detect privilege escalation vectors in apps.

Authorersinkoc
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Privilege escalation is a critical class of security risk where legitimate users or attackers can elevate access by manipulating roles, JWT claims, or admin endpoints. This Skill helps teams detect such vectors across code, configs, and deployment patterns.

Core Features & Use Cases

  • Detects role manipulation via request bodies and API endpoints
  • Validates server-side enforcement of RBAC and excludes client-trusted role data
  • Identifies JWT role claim tampering and missing server-side checks
  • Flags default/test admin accounts and insecure admin routes
  • Provides remediation guidance and concrete test patterns

Quick Start

Run the sc-privilege-escalation scanner against your codebase to identify RBAC and JWT-based privilege weaknesses.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: sc-privilege-escalation
Download link: https://github.com/ersinkoc/security-check/archive/main.zip#sc-privilege-escalation

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.