Nestjs Attack Probe

Authorized self-pentest probe targeting NestJS-specific weaknesses. Tests global ValidationPipe gaps, missing @UseGuards on controller methods, default Swagger/OpenAPI exposure, WebSocket Gateway auth bypass, and TypeORM/Prisma raw query injection points discovered via OpenAPI. Use when the user asks to "pentest" their own NestJS app.

Dolphinllc c65adc0 4.5 KB Updated

File contents

Dolphinllc/claude-security-skills/tree/main/skills/offensive/web/nestjs-attack-probe commit c65adc0c22

Frequently asked questions

npx skillmds@latest add dolphinllc/nestjs-attack-probe