Ross ROSS = Recommend OSS · open-source software intelligence for agents

Az0x7/vulnerability-Checklist resource

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter observed · 2026-08-28

github.com/Az0x7/vulnerability-Checklist observed · 2026-08-28

Health v2 · maintenance only

30/100

  • Activity 0
  • Release rhythm 35
  • Longevity 87

Flags: no_releases no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 1227
  • days_rel: n/a
  • days_push: 935
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

3634 stars · 843 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded

A curated collection of web and API vulnerability checklists covering topics like IDOR, SQL injection, 2FA bypass, account takeover, and 403 bypass. It aggregates vulnerability ideas and tips from the bug bounty community, especially Twitter.

Use cases

  • find a checklist for testing IDOR vulnerabilities
  • learn 2FA bypass techniques for bug bounty hunting
  • prepare for a web application penetration test
  • look up SQL injection testing tips
  • study account takeover attack vectors
  • find 403 bypass methods
  • collect bug bounty tips from Twitter

When to choose

  • you are a bug bounty hunter or pentester needing structured checklists for common web vulnerabilities
  • you want community-sourced tips and attack ideas in one place
  • you need a quick reference during a security assessment

When to avoid

  • you need an automated vulnerability scanner rather than manual checklists
  • you require formally reviewed or vendor-backed security guidance
  • you need a tool that runs tests rather than documents them

Facets

learning-resource · maturity active

security penetration-testing vulnerability-scanning security penetration-testing developer-tools cli bug-bounty checklist web-vulnerabilities api-security idor sql-injection 2fa-bypass account-takeover web-server

1 source

Member repositories

RepositoryRoleHealth v2
Az0x7/vulnerability-Checklistmain30

For agents

markdown · JSON · MCP: product_card(name="Az0x7/vulnerability-Checklist")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem