Skill collection
elementalsouls/Claude-BugHunter agent skills
- skills
- 17
- GitHub stars
- 4.8k
GitHub description: “A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24 core vulnerability classes, plus enterprise identity + infrastructure attack matrices.”
- Stars
- 4,791 (721 forks)
- Licence
- MIT
- Last push
- Oct 2026
- Created
- May 2026
- ai-security
- anthropic
- application-security
- bug-bounty
- bugbounty
- bugcrowd
- claude
- claude-code
- claude-skills
- ethical-hacking
- hackerone
- offensive-security
- pentesting
- red-team
- security-tools
- web-security
Install all skills
npx skills add elementalsouls/Claude-BugHunterAdd --skill <name> for a single skill and -a <agent> to choose the agent (see the agent guides).
Skills in elementalsouls/Claude-BugHunter, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Hunt API security misconfiguration — mass assignment, prototype pollution, HTTP verb tampering. | elementalsouls/ | 4.8k | — | ~4.5k | Automated safety check: Pass | MIT | yesterday |
| 2 | 2.Hunt Ato Hunt account takeover taxonomy — 9 distinct paths to ATO, plus chains. | elementalsouls/ | 4.8k | — | ~3.4k | Automated safety check: Pass | MIT | yesterday |
| 3 | Hunt fintech-specific GraphQL vulnerabilities: money-movement mutations (transfers, redemptions, withdrawals, card top-ups), ledger/balance/portfolio query IDOR, decimal-precision and rounding… | elementalsouls/ | 4.8k | — | ~3.5k | Automated safety check: Pass | MIT | yesterday |
| 4 | Hunt HTTP request smuggling (CL.TE, TE.CL, H2.CL, H2.TE). An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 5 | Hunt JWT cryptographic failures — alg:none signature-stripping and RS256→HS256 key-confusion that let an attacker forge a token for any identity (e.g. | elementalsouls/ | 4.8k | — | ~2.3k | Automated safety check: Pass | MIT | yesterday |
| 6 | Hunt vector-store / embedding-layer weaknesses in RAG pipelines (OWASP LLM08 Vector and Embedding Weaknesses) — persistent corpus poisoning that survives across sessions and users (distinct from… | elementalsouls/ | 4.8k | — | ~2.6k | Automated safety check: Pass | MIT | yesterday |
| 7 | Discover a single-page-app's hidden backend API from its public JS bundle, then test that API for broken access control / missing authentication. | elementalsouls/ | 4.8k | — | ~2.2k | Automated safety check: Notes | MIT | yesterday |
| 8 | Hunt LLM/AI feature bugs — prompt injection, indirect injection, exfiltration via tool-use/markdown, ASCII smuggling, agentic AI security (OWASP Agentic Apps 2026, ASI01-ASI10). | elementalsouls/ | 4.8k | — | ~4k | Automated safety check: Warn | MIT | yesterday |
| 9 | Hunting skill for auth bypass vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~8.2k | Automated safety check: Pass | MIT | yesterday |
| 10 | Hunting skill for cache poison vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~5.7k | Automated safety check: Pass | MIT | yesterday |
| 11 | 11.Hunt Sqli Hunting skill for sqli vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~5.5k | Automated safety check: Pass | MIT | yesterday |
| 12 | Hunt Clickjacking — missing X-Frame-Options / CSP frame-ancestors lets an attacker embed the target page in an invisible iframe and trick victims into clicking buttons they cannot see (UI redressing). | elementalsouls/ | 4.8k | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 13 | Hunt mishandling of exceptional conditions — feed an endpoint malformed/unexpected input (wrong type, broken JSON, oversized field, null byte) and make it fail OPEN or leak internals: a verbose… | elementalsouls/ | 4.8k | — | ~786 | Automated safety check: Pass | MIT | yesterday |
| 14 | Triage ASM/recon output for ownership before testing — separate the target's real assets from namespace-collision noise. | elementalsouls/ | 4.8k | — | ~1.9k | Automated safety check: Notes | MIT | yesterday |
| 15 | Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi — report templates, human tone guidelines, impact-first writing, CVSS 3.1 scoring, title formula, impact statement formula, severity… | elementalsouls/ | 4.8k | — | ~5.2k | Automated safety check: Pass | MIT | yesterday |
| 16 | Hunt Forgot Password / Account Recovery Authentication Flaws — 5 distinct patterns: (1) username enumeration via different responses for valid vs invalid email, (2) reset token exposed directly in… | elementalsouls/ | 4.8k | — | ~1.4k | Automated safety check: Pass | MIT | yesterday |
| 17 | Security payloads, bypass tables, wordlists, gf pattern names, always-rejected bug list, and conditionally-valid-with-chain table. | elementalsouls/ | 4.8k | — | ~7.2k | Automated safety check: Warn | MIT | yesterday |
Questions, answered from the data.
What is the best skill in elementalsouls/Claude-BugHunter?
Hunt API Misconfig from elementalsouls/Claude-BugHunter ranks first of the 17 skills in elementalsouls/Claude-BugHunter listed here, with the highest score: its repository has 4.8k GitHub stars, its SKILL.md loads about 4.5k tokens and it passes the automated safety check with no findings. Next come Hunt Ato and Hunt Fintech Graphql.
Are the skills in elementalsouls/Claude-BugHunter official?
None yet. All 17 skills in elementalsouls/Claude-BugHunter listed here come from community repositories; a skill counts as official when the product's own GitHub organization publishes it.
How do I install all skills from elementalsouls/Claude-BugHunter?
Run npx skills add elementalsouls/Claude-BugHunter in your project: the open-source skills CLI installs the repository's skills into your coding agent's skills folder. To install a single skill, open its page here for the exact command.
How are these skills ranked?
By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.