Search
Bug bounty
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 49 | 49.Bug Bounty Complete bug bounty workflow — recon, pre-hunt learning, vulnerability hunting (IDOR, SSRF, XSS, auth bypass, CSRF, race conditions, SQLi, XXE, file upload, business logic, GraphQL, HTTP smuggling… | awarexone/ | 5.3k | — | ~20k | Automated safety check: Warn | MIT | yesterday |
| 50 | Flags API endpoints whose data or actions look like they should need a login but currently don't, as part of authorized security testing. | uphiago/ | 1.3k | — | ~2k | Automated safety check: Pass | MIT | 1 mo ago |
| 51 | A skill your agent uses when starting or restructuring an authorized external web and API assessment. | uphiago/ | 1.3k | — | ~1.9k | Automated safety check: Pass | MIT | 1 mo ago |
| 52 | Mobile (Android + iOS) application penetration testing methodology. | SnailSploit/ | 7.4k | — | ~3.5k | Automated safety check: Pass | MIT | 21 days ago |
| 53 | Bugcrowd-specific reporting tactics complementing report-writing | sickn33/ | 47k | 1 repo | ~5.9k | Automated safety check: Pass | MIT | 2 days ago |
| 54 | 54.Recon Perform structured reconnaissance and attack surface enumeration for authorized penetration tests, CTF challenges, and bug bounty programs. | briiirussell/ | 413 | — | ~1.1k | Automated safety check: Notes | MIT | 4 mo ago |
| 55 | Attack cameras via RTSP, ONVIF, Axis config when 554 open. An agent skill from uphiago/recon-skills. | uphiago/ | 1.3k | — | ~2.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 56 | Map subdomains via crt.sh and subfinder at recon kickoff. An agent skill from uphiago/recon-skills. | uphiago/ | 1.3k | — | ~3.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 57 | 57.Visual Recon Screenshot all live hosts for rapid visual triage and technology fingerprinting. | uphiago/ | 1.3k | — | ~1.5k | Automated safety check: Pass | MIT | 1 mo ago |
| 58 | 58.Bug Bounty Complete bug bounty workflow | sickn33/ | 47k | 1 repo | ~5k | Automated safety check: Notes | MIT | 2 days ago |
| 59 | Domain assessment and web application mapping - subdomain discovery, port scanning, endpoint enumeration, API discovery, and attack surface analysis. | transilienceai/ | 563 | — | ~1.4k | Automated safety check: Pass | MIT | 2 mo ago |
| 60 | Hunting skill for auth bypass vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~8.2k | Automated safety check: Pass | MIT | yesterday |
| 61 | Hunting skill for cache poison vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~5.7k | Automated safety check: Pass | MIT | yesterday |
| 62 | 62.Hunt Sqli Hunting skill for sqli vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~5.5k | Automated safety check: Pass | MIT | yesterday |
| 63 | Probe a target for accidentally-public admin / debug / introspection endpoints — Spring Boot Actuator, Apache server-status, Prometheus metrics, GraphQL playground, Swagger UI, phpMyAdmin… | jeremylongshore/ | 2.8k | — | ~2k | Automated safety check: Pass | MIT | yesterday |
| 64 | Triage ASM/recon output for ownership before testing — separate the target's real assets from namespace-collision noise. | elementalsouls/ | 4.8k | — | ~1.9k | Automated safety check: Notes | MIT | yesterday |
| 65 | Draft and file a HackerOne report in the browser, with a proof-of-concept package and demo-video notes. | forefy/ | 152 | — | ~2.1k | Automated safety check: Pass | MIT | 6 days ago |
| 66 | 66.Pre Bounty Map a bug-bounty scope and rank targets by payout, crowding, and freshness. | forefy/ | 152 | — | ~2.1k | Automated safety check: Pass | MIT | 6 days ago |
| 67 | Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi — report templates, human tone guidelines, impact-first writing, CVSS 3.1 scoring, title formula, impact statement formula, severity… | elementalsouls/ | 4.8k | — | ~5.2k | Automated safety check: Pass | MIT | yesterday |
| 68 | Write security findings and assessment reports — severity scoring with CVSS and business impact, reproducible proof of concept, remediation guidance, executive summaries, and coordinated disclosure. | trilwu/ | 157 | — | ~3.4k | Automated safety check: Pass | MIT | 1 mo ago |
| 69 | 69.Hack Entry P0 primary router and operating doctrine for HackSkills. | yaklang/ | 2.4k | — | ~4.7k | Automated safety check: Notes | MIT | 28 days ago |
| 70 | 70.Web Recon Enumerate web technologies, headers, endpoints, and metadata from a target | NeoTheCapt/ | 143 | — | ~770 | Automated safety check: Pass | No licence | 2 mo ago |
| 71 | 71.Cyberful Operate Cyberful as an authorized application-security control room. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0-only | 1 mo ago |
| 72 | Reconnaissance and methodology playbook. An agent skill from langbyyi/CyberStrikeAI-SRC. | langbyyi/ | 129 | 1 repo | ~3.1k | Automated safety check: Warn | Apache-2.0 | 4 days ago |
| 73 | A skill your agent uses whenever the user wants to find, shortlist, vet, or enrich US cybersecurity firms — pen-testing/red team, security audits, vCISO, SOC 2 readiness, incident response, managed… | jeremylongshore/ | 2.8k | — | ~3.7k | Automated safety check: Notes | MIT | yesterday |
| 74 | Plans and runs authorized reconnaissance to enumerate a target's external attack surface (DNS, subdomains, ports, web tech) and produces a prioritized report. | criptogus/ | 288 | — | ~1.2k | Automated safety check: Pass | CC-BY-SA-4.0 | 2 days ago |
| 75 | Audit all open HackerOne-sourced VULN Jira tickets and their linked engineering child items to identify what needs action. | bitwarden/ | 155 | — | ~3.4k | Automated safety check: Pass | Unknown | yesterday |