Skill collection

elementalsouls/Claude-BugHunter agent skills

Every skill in the elementalsouls/Claude-BugHunter repository on GitHub, ranked by score, with the commands to install them.
skills
17
GitHub stars
4.8k
Collection

GitHub description: “A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24 core vulnerability classes, plus enterprise identity + infrastructure attack matrices.”

Stars
4,791 (721 forks)
Licence
MIT
Last push
Oct 2026
Created
May 2026
  • ai-security
  • anthropic
  • application-security
  • bug-bounty
  • bugbounty
  • bugcrowd
  • claude
  • claude-code
  • claude-skills
  • ethical-hacking
  • hackerone
  • offensive-security
  • pentesting
  • red-team
  • security-tools
  • web-security

Install all skills

skills CLI (any agent)
npx skills add elementalsouls/Claude-BugHunter

Add --skill <name> for a single skill and -a <agent> to choose the agent (see the agent guides).

Skills in elementalsouls/Claude-BugHunter, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Skills in elementalsouls/Claude-BugHunter, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Hunt API security misconfiguration — mass assignment, prototype pollution, HTTP verb tampering.

elementalsouls/Claude-BugHunter4.8k—~4.5kAutomated safety check: PassMITyesterday
2

Hunt account takeover taxonomy — 9 distinct paths to ATO, plus chains.

elementalsouls/Claude-BugHunter4.8k—~3.4kAutomated safety check: PassMITyesterday
3

Hunt fintech-specific GraphQL vulnerabilities: money-movement mutations (transfers, redemptions, withdrawals, card top-ups), ledger/balance/portfolio query IDOR, decimal-precision and rounding…

elementalsouls/Claude-BugHunter4.8k—~3.5kAutomated safety check: PassMITyesterday
4

Hunt HTTP request smuggling (CL.TE, TE.CL, H2.CL, H2.TE). An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~1.8kAutomated safety check: PassMITyesterday
5

Hunt JWT cryptographic failures — alg:none signature-stripping and RS256→HS256 key-confusion that let an attacker forge a token for any identity (e.g.

elementalsouls/Claude-BugHunter4.8k—~2.3kAutomated safety check: PassMITyesterday
6

Hunt vector-store / embedding-layer weaknesses in RAG pipelines (OWASP LLM08 Vector and Embedding Weaknesses) — persistent corpus poisoning that survives across sessions and users (distinct from…

elementalsouls/Claude-BugHunter4.8k—~2.6kAutomated safety check: PassMITyesterday
7

Discover a single-page-app's hidden backend API from its public JS bundle, then test that API for broken access control / missing authentication.

elementalsouls/Claude-BugHunter4.8k—~2.2kAutomated safety check: NotesMITyesterday
8

Hunt LLM/AI feature bugs — prompt injection, indirect injection, exfiltration via tool-use/markdown, ASCII smuggling, agentic AI security (OWASP Agentic Apps 2026, ASI01-ASI10).

elementalsouls/Claude-BugHunter4.8k—~4kAutomated safety check: WarnMITyesterday
9

Hunting skill for auth bypass vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~8.2kAutomated safety check: PassMITyesterday
10

Hunting skill for cache poison vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~5.7kAutomated safety check: PassMITyesterday
11

Hunting skill for sqli vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~5.5kAutomated safety check: PassMITyesterday
12

Hunt Clickjacking — missing X-Frame-Options / CSP frame-ancestors lets an attacker embed the target page in an invisible iframe and trick victims into clicking buttons they cannot see (UI redressing).

elementalsouls/Claude-BugHunter4.8k—~1.1kAutomated safety check: PassMITyesterday
13

Hunt mishandling of exceptional conditions — feed an endpoint malformed/unexpected input (wrong type, broken JSON, oversized field, null byte) and make it fail OPEN or leak internals: a verbose…

elementalsouls/Claude-BugHunter4.8k—~786Automated safety check: PassMITyesterday
14

Triage ASM/recon output for ownership before testing — separate the target's real assets from namespace-collision noise.

elementalsouls/Claude-BugHunter4.8k—~1.9kAutomated safety check: NotesMITyesterday
15

Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi — report templates, human tone guidelines, impact-first writing, CVSS 3.1 scoring, title formula, impact statement formula, severity…

elementalsouls/Claude-BugHunter4.8k—~5.2kAutomated safety check: PassMITyesterday
16

Hunt Forgot Password / Account Recovery Authentication Flaws — 5 distinct patterns: (1) username enumeration via different responses for valid vs invalid email, (2) reset token exposed directly in…

elementalsouls/Claude-BugHunter4.8k—~1.4kAutomated safety check: PassMITyesterday
17

Security payloads, bypass tables, wordlists, gf pattern names, always-rejected bug list, and conditionally-valid-with-chain table.

elementalsouls/Claude-BugHunter4.8k—~7.2kAutomated safety check: WarnMITyesterday

Questions, answered from the data.

What is the best skill in elementalsouls/Claude-BugHunter?

Hunt API Misconfig from elementalsouls/Claude-BugHunter ranks first of the 17 skills in elementalsouls/Claude-BugHunter listed here, with the highest score: its repository has 4.8k GitHub stars, its SKILL.md loads about 4.5k tokens and it passes the automated safety check with no findings. Next come Hunt Ato and Hunt Fintech Graphql.

Are the skills in elementalsouls/Claude-BugHunter official?

None yet. All 17 skills in elementalsouls/Claude-BugHunter listed here come from community repositories; a skill counts as official when the product's own GitHub organization publishes it.

How do I install all skills from elementalsouls/Claude-BugHunter?

Run npx skills add elementalsouls/Claude-BugHunter in your project: the open-source skills CLI installs the repository's skills into your coding agent's skills folder. To install a single skill, open its page here for the exact command.

How are these skills ranked?

By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.