authorization-xray
Authorization X-ray for your own codebase (defensive audit): inventories every HTTP endpoint and every recognizable protection layer (middleware chains, authorize decorators, inline role checks, router mounts), builds the permission matrix endpoint x required check, and reports unprotected mutating endpoints and inconsistent protection of similar resources. Static, sends no requests. Read-only. Trigger: /authz
Pinned to revision 29d23a8cf80e, so it is the text this page describes rather than whatever the author pushed since.
Files
- skills/authorization-xray/SKILL.md
- skills/authorization-xray/README.md
- skills/authorization-xray/scripts/authz-scan.ps1
Every link opens the file at its source, pinned to the revision this page describes.