instavm/security-skills

mitm-list-apis

List all APIs from mitmproxy traffic capture. Use when user asks to see APIs, endpoints, or wants an overview of captured HTTP traffic for a website or app.

First seen Mar 24, 2026

Installation

$ npx skills add instavm/security-skills --skill mitm-list-apis

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from instavm/security-skills · top by installs.

npx skills add instavm/security-skills

Browse all from instavm/security-skills

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Repository health

Stars 84
Default branch main
Open issues 0
Status Active

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 1,114 B
  • docs SUMMARY.md 178 B

History

  1. First seen on skills.sh
  2. First recorded snapshot · 60 installs

SKILL.md

List APIs from Traffic Capture

Analyze the mitmproxy dump (log.txt) and list all APIs for: $ARGUMENTS

Requires: log.txt in the current directory. If it's missing, capture traffic first:
```bash
mitmdump --set flow_detail=3 2>&1 | tee log.txt
```

Instructions

  1. Search log.txt for the target domain/app
  2. Extract unique API endpoints
  3. Group by functionality (auth, user, payment, etc.)

Output Format

For each API found:

  • Method: GET/POST/PUT/DELETE
  • Endpoint: /api/path (skip domain)
  • Input params: Query params or body fields
  • Response fields: Key fields returned (concise)

Grouping Suggestions

  • Authentication (login, register, OTP, token)
  • User Profile (profile, settings, preferences)
  • Transactions (orders, payments, history)
  • Content (products, listings, search)
  • Admin/Internal (if any found)

If no website specified, ask which one to analyze.