Web App Penetration Testing

Pentest a web app or website end to end — black-box testing of a live URL, staging environment, or local dev server that finds and exploits real vulnerabilities (auth bypass, broken access control, IDOR, injection, XSS, SSRF, business logic) and proves each one with a working proof-of-concept instead of a signature match. Runs with Strix, either the self-hosted open-source CLI or the managed app.strix.ai cloud. Use when the user asks to pentest, hack, security-test, or audit their web app, website, web application, or staging site.

usestrix 99331fa 4.2 KB Updated

File contents

usestrix/strix/tree/main/skills/web-app-penetration-testing commit 99331fa8bb

Frequently asked questions

npx skillmds add usestrix/web-app-penetration-testing