scan-fase-16

Map workflows and state transitions to identify business-logic vulnerabilities.

Updated Mar 11, 2026
One-click install
npx skills add https://github.com/ricardoo022/PentestAI-with-claude-code --skill scan-fase-16
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: scan-fase-16
Source: https://github.com/ricardoo022/PentestAI-with-claude-code/tree/main/.claude/skills/scan-fase-16
Command: npx skills add https://github.com/ricardoo022/PentestAI-with-claude-code --skill scan-fase-16

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill enables security testers to uncover application-specific business-logic vulnerabilities by mapping critical workflows, validating state transitions, and testing how rules behave under real-world scenarios.

Core Features & Use Cases

  • Adaptive workflow mapping and state-machine analysis across diverse tech stacks (e.g., Supabase, Firebase, Django, FastAPI, Node.js, Rails, Spring, .NET, PHP, Go, or custom backends)
  • STRIDE-based threat modeling and behavioral analysis to identify fraud-prone flows, bypass opportunities, and validation gaps
  • End-to-end exploration that adapts to unique business rules, supports authenticated and unauthenticated paths, and documents findings with remediation guidance

Quick Start

Invoke with /scan-fase-16 {url} to start automated business-logic testing on the target application.

Frequently Asked Questions about scan-fase-16

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What is business-logic vulnerability testing and how does state-machine analysis find flaws?

Business-logic vulnerability testing identifies application-specific flaws by mapping critical workflows, validating state transitions, and testing how rules behave under real-world scenarios to uncover fraud-prone flows and validation gaps.

How do I test checkout and pricing workflows for race conditions and authorization bypasses?

Test checkout and pricing workflows by mapping state transitions and validation points across target architectures, applying STRIDE-based threat modeling to reveal context-dependent flaws, bypass opportunities, and race conditions in business rules.

Can I perform threat modeling and security testing on Supabase, Firebase, or Django backends?

Yes, adaptive workflow mapping and security testing support diverse tech stacks including Supabase, Firebase, Django, FastAPI, Node.js, Rails, Spring, .NET, PHP, Go, and custom backends to identify context-dependent business-logic flaws.

What prerequisites are needed to start business-logic vulnerability scanning on a target URL?

Prerequisites for business-logic scanning include a reachable target URL and completed backend detection and reconnaissance phases, with additional phases recommended to ensure comprehensive workflow and state-machine analysis.

Does business-logic testing work for both authenticated and unauthenticated application paths?

Yes, end-to-end business-logic exploration adapts to unique business rules and supports both authenticated and unauthenticated paths, documenting findings with remediation guidance for validation gaps and fraud-prone flows.