LogoClawIndex
CasesSkillsAbout
LogoClawIndex

sast-idor - Detect IDOR vulnerabilities in codebases

Detects IDOR vulnerabilities by finding object-identifier endpoints, verifying authorization checks, and writing consolidated findings.

Tags

Updated: 2026-10-06
securitySASTIDORauthorizationaccess controlvulnerability detection

Capabilities

Find IDOR candidate endpointsCheck ownership authorizationBatch verification tasksConsolidate verification results

Typical Inputs

Codebasesast/architecture.md

Typical Outputs

sast/idor-recon.mdsast/idor-results.mdIDOR security findings

What this skill does

  • Find IDOR candidate endpoints
  • Check ownership authorization
  • Batch verification tasks
  • Consolidate verification results
  • Write security findings

Inputs

  • Codebase
  • sast/architecture.md

Outputs

  • sast/idor-recon.md
  • sast/idor-results.md
  • IDOR security findings

Requirements

  • sast/architecture.md must exist
  • sast-analysis must run first
  • Subagent support

Source

  • Spec: SKILL.md

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.