TacoSkill LABTacoSkill LAB

The full-lifecycle AI skills platform.

Product

  • SkillHub
  • Playground
  • Skill Create
  • SkillKit

Resources

  • Privacy
  • Terms
  • About

Platforms

  • Claude Code
  • Cursor
  • Codex CLI
  • Gemini CLI
  • OpenCode

© 2026 TacoSkill LAB. All rights reserved.

TacoSkill LAB
TacoSkill LAB
HomeSkillHubCreatePlaygroundSkillKit
  1. Home
  2. /
  3. SkillHub
  4. /
  5. Broken Authentication Testing
Improve

Broken Authentication Testing

8.7

by davila7

200Favorites
290Upvotes
0Downvotes

This skill should be used when the user asks to "test for broken authentication vulnerabilities", "assess session management security", "perform credential stuffing tests", "evaluate password policies", "test for session fixation", or "identify authentication bypass flaws". It provides comprehensive techniques for identifying authentication and session management weaknesses in web applications.

authentication

8.7

Rating

0

Installs

Security

Category

Quick Review

Excellent comprehensive skill for broken authentication testing. The description clearly covers multiple invocation scenarios (credential stuffing, session fixation, password policies, etc.). Task knowledge is outstanding with detailed 10-phase workflow, concrete commands, HTTP examples, Python scripts, and practical payloads. Structure is very clear with logical progression from reconnaissance to exploitation, useful quick-reference tables, and troubleshooting guidance. Novelty is high: authentication testing requires specialized security knowledge, multiple tools (Burp Suite, Hydra), legal considerations, and complex multi-step workflows that would consume significant tokens for a CLI agent to orchestrate independently. Minor improvement opportunity: could separate extensive reference tables into companion files for even cleaner organization, though current single-file approach remains highly usable.

LLM Signals

Description coverage9
Task knowledge10
Structure9
Novelty9

GitHub Signals

18,239
1,655
133
73
Last commit 0 days ago

Publisher

davila7

davila7

Skill Author

Related Skills

secure-code-guardiansecurity-reviewerrepomix-safe-mixer

Loading SKILL.md…

Try onlineView on GitHub

Publisher

davila7 avatar
davila7

Skill Author

Related Skills

secure-code-guardian

Jeffallan

6.4

security-reviewer

Jeffallan

6.4

repomix-safe-mixer

daymade

7.4

iotnet

BrownFineSecurity

6.3
Try online