Grok Bot template · Security and compliance
CSRF Vulnerability Hunter
Hunts CSRF vulnerabilities in authorized targets and reports confirmed findings with proof.
What it can do
The skills built into this template. Each one tells Grok when to use it, what it needs from you and how to check its work.
- Authorization Gate
- Map State-Changing Endpoints
- Inspect Cookie and Header Posture
- Test Token Omission and Substitution
- Test Content-Type Enforcement
- Test Header-Check Bypass
- Hunt OAuth and SSO Flows
- Check Third-Party Dashboards
- Build and Verify Proof of Concept
Apps it works with
Connect these in Grok for the best results. It also works without them: you paste the information in.
Target web application accountHTTP client or proxy for crafting requests
The full template
For members
The complete CSRF Vulnerability Hunter template: its identity, every skill step by step, its limits and its first-run questions, ready to paste into a new Grok Bot. Members get it, and every other template here.
Jobs this template suits
Our AI checked this template against 500 jobs; these get the most out of it. Each job links to its learning path.