目录 / 接口权限探测 / API Permission Probe
SKILL
未评级
已上架
接口权限探测 / API Permission Probe
Probe whether a web application's API layer truly enforces role-based access control, instead of only hiding UI menus. Covers verifying real API paths from frontend source, testing endpoints with multiple role tokens, parsing list responses (data.rows plus total versus raw array), and rating permission gaps at the API layer. Use when auditing authorization, checking for privilege escalation, or validating that sensitive endpoints are actually locked. Also triggered by: 接口权限探测、越权测试、权限审计、菜单隐藏不等于锁、permission probe。
模型生成摘要(rules/v1 · 2026-09-21 22:23):Probe whether a web application's API layer truly enforces role-based access control, instead of only hiding UI menus
这是模型对公开材料的总结,不是官方声明,请以原链内容为准。
这是模型对公开材料的总结,不是官方声明,请以原链内容为准。
存档时间线
| 版本 | 存档时间 | 内容哈希 | 内容 |
|---|---|---|---|
| v1 | 2026-09-21 22:21 | 10b1e60f | 可取 |
版本索引永久保留;内容副本只保留最近 2 版,更早版本仅留索引与哈希(存档时间线的证据链不会因此断裂)。
纠错与举报(发现条目失效、署名有误或涉及侵权?)
提交举报 / 纠错
侵权举报经核验成立后,我们会即时下线该条目并删除已存的内容副本。