Repository
ADScanPro/Claude-AD agent skills
- skills
- 7
- GitHub stars
- 209
GitHub description: “Active Directory pentest methodology for Claude Code: skills, agents and slash commands for internal AD red-team work (Kerberoasting, ADCS ESC1-17, DCSync, ACL abuse, NTLM relay, delegation), with per-technique OPSEC/telemetry notes. Drives netexec, impacket, certipy, bloodyAD, BloodHound CE.”
- Stars
- 209 (33 forks)
- Licence
- MIT
- Last push
- Aug 2026
- Created
- Aug 2026
- Homepage
- adscanpro.com
- active-directory
- active-directory-security
- adcs
- bloodhound
- claude
- claude-code
- claude-code-plugin
- claude-skills
- dcsync
- kerberoasting
- kerberos
- ntlm-relay
- offensive-security
- penetration-testing
- pentesting
- red-team
Install all skills
npx skills add ADScanPro/Claude-ADAdd --skill <name> for a single skill and -a <agent> to choose the agent (see the agent guides).
Skills in ADScanPro/Claude-AD, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Abusing Active Directory object ACLs (DACL/ownership) for privilege escalation and lateral movement (GenericAll, GenericWrite, WriteDACL, WriteOwner, AddMember, ForceChangePassword, and replication… | ADScanPro/ | 209 | — | ~2.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 2 | Real-world Active Directory environment constraints that silently break attacks when ignored: NTLM disabled (Kerberos fallback), AES-only KDCs (RC4 blocked by GPO), LDAP signing and channel binding… | ADScanPro/ | 209 | — | ~2.9k | Automated safety check: Notes | MIT | 1 mo ago |
| 3 | The telemetry each Active Directory technique generates and what alerts a defender: Kerberoasting produces Event 4769 with RC4 encryption (0x17) and an MDI alert, DCSync produces Event 4662 with the… | ADScanPro/ | 209 | — | ~2.4k | Automated safety check: Pass | MIT | 1 mo ago |
| 4 | Active Directory Certificate Services (AD CS) escalation techniques ESC1 through ESC17, driven by hand with Certipy (ly4k). | ADScanPro/ | 209 | — | ~3.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 5 | Authentication coercion (PetitPotam MS-EFSR, PrinterBug MS-RPRN, DFSCoerce MS-DFSNM) chained into NTLM relay (impacket ntlmrelayx) toward LDAP, AD CS web enrollment (ESC8), or SMB. | ADScanPro/ | 209 | — | ~1.9k | Automated safety check: Pass | MIT | 1 mo ago |
| 6 | Kerberos-based Active Directory attacks driven by hand with standard tooling (Kerberoasting, AS-REP roasting, and delegation abuse: unconstrained, constrained/S4U, RBCD). | ADScanPro/ | 209 | — | ~2.9k | Automated safety check: Notes | MIT | 1 mo ago |
| 7 | A high-level conceptual mapping from Active Directory attack techniques to the compliance controls they touch. | ADScanPro/ | 209 | — | ~1.7k | Automated safety check: Pass | MIT | 1 mo ago |
Questions, answered from the data.
What is the best skill in ADScanPro/Claude-AD?
Acl Abuse from ADScanPro/Claude-AD ranks first of the 7 skills in ADScanPro/Claude-AD listed here, with the highest score: its repository has 209 GitHub stars, its SKILL.md loads about 2.6k tokens and it passes the automated safety check with no findings. Next come Ad Environment Constraints and Ad Opsec Telemetry.
Are the skills in ADScanPro/Claude-AD official?
None yet. All 7 skills in ADScanPro/Claude-AD listed here come from community repositories; a skill counts as official when the product's own GitHub organization publishes it.
How do I install all skills from ADScanPro/Claude-AD?
Run npx skills add ADScanPro/Claude-AD in your project: the open-source skills CLI installs the repository's skills into your coding agent's skills folder. To install a single skill, open its page here for the exact command.
How are these skills ranked?
By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.