Agent skill

Dqd Lab

by ctrsploit in ctrsploit/ctrsploit

Manage ctrsploit dqd lab environments from github.com/ctrsploit/dqd.

No licenceAuto-check passedTesting & QA

Install Dqd Lab

skills CLI
$ npx skills add ctrsploit/ctrsploit --skill dqd-lab -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ctrsploit/ctrsploit dqd-lab --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ctrsploit/ctrsploit.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.opencode/skills/dqd-lab .claude/skills/dqd-lab && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
dqd-lab
GitHub stars
154
Token cost
~1.6k tokens
SKILL.md length
731 words
Files
3 (incl. scripts)
Skills in repo
4
Repo updated
First seen
Licence
None found

At a glance

Manage ctrsploit dqd lab environments from github.com/ctrsploit/dqd.

  • The user asks to start
  • SKILL.md covers Overview, Safety Rules, Choose The Flow and DQD Hostnames, plus 4 more sections
  • Runs Shell scripts from its folder; calls docker, make and ssh; reaches github.com
  • Connect to a dqd

What it does

Dqd Lab is an agent skill from ctrsploit/ctrsploit. Manage ctrsploit dqd lab environments from github.com/ctrsploit/dqd. Use when the user asks to start, stop, inspect, or connect to a dqd or dqddir experiment environment, run or prepare ctrsploit e2e.yml entries with kind: dqd, verify SSH access to dqd- hosts, inspect Docker Compose KVM lab status or logs, or tear down disposable ctrsploit test VMs.

Its SKILL.md is about 1.6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files, including scripts (for example `agents/openai.yaml` and `scripts/dqd-lab.sh`).

It sits in Testing & QA, covering Containers and End-to-end testing. It works with Docker and GitHub. The repository describes itself as: A penetration toolkit for container environment.

When your agent uses it

  • The user asks to start
  • Connect to a dqd
  • Dqddir experiment environment
  • Prepare ctrsploit e2e.yml entries with kind: dqd

Example prompts

  • “/dqd-lab”

Requirements

  • A Bash shell
  • Docker

What it can do on your machine

Read from SKILL.md and the folder at commit 0fe4d82. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Shell), which the agent can run.

    Shell commands in SKILL.md call:

    • docker
    • make
    • ssh
    • git
    • scp

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Dqd Lab loads about 1.6k tokens when it runs. Until then it costs about 90 tokens; SKILL.md has 731 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~90
When it runs · the whole SKILL.md, loaded when a task matches
~1.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 731 words (~1,578 tokens).

“Use this skill to manage disposable ctrsploit experiment VMs backed by the dqd repository. Prefer the repository's existing e2e flow when the user wants tests. Prefer the dqd repository's native documented commands when the lab workflow is user-facing, recorded, or…”

— opening of SKILL.md by ctrsploit
name
dqd-lab

Read the full SKILL.md on GitHub

Files

SKILL.md and 2 other files (scripts) in .opencode/skills/dqd-lab of ctrsploit/ctrsploit.

  • SKILL.md
  • agents/openai.yaml
  • scripts/dqd-lab.sh

Open the folder on GitHubat commit 0fe4d82

Compare with similar skills

Dqd Lab next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Dqd Lab compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Dqd Lab this skillctrsploit/ctrsploit154—~1.6kAutomated safety check: PassNone
Crabbox SetupAI-Builder-Club/skills1.3k1 repos~1.9kAutomated safety check: NotesNone
Openclaw Docker E2E Authoringopenclaw/openclaw392k—~593Automated safety check: PassMIT
Release Openclaw Plugin Testingopenclaw/openclaw392k—~3.1kAutomated safety check: PassMIT
Testingwellwelwel/poku1.2k—~1kAutomated safety check: PassMIT
Go Redis Client Test Runnerredis/go-redis22k—~786Automated safety check: PassBSD-2-Clause

Similar skills

  • Crabbox Setup

    AI-Builder-Club/skills

    Scaffold an isolated CLOUD dev box per agent (via crabbox + Daytona) for any codebase — the parallel-safe counterpart to dev-local-setup.

    1.3k GitHub starsUsed in 1 repo~1.9k tokens
    Testing & QAAuto-check: notes
  • Author OpenClaw Docker E2E and live provider Docker lanes. An agent skill from openclaw/openclaw.

    392k GitHub stars~593 tokensUpdated today
    Testing & QAAuto-check passed
  • Plan and run pre-release OpenClaw plugin validation across bundled plugins, package artifacts, lifecycle commands, doctor/fix, config round-trip, gateway startup, SDK compatibility, Docker E2E…

    392k GitHub stars~3.1k tokensUpdated today
    Testing & QAAuto-check passed
  • Testing

    wellwelwel/poku

    Testing deep-dive for poku covering test structure, commands, patterns, fixtures, utils, Docker compatibility, and coverage.

    1.2k GitHub stars~1k tokensUpdated 3 mo ago
    Testing & QAAuto-check passed
  • Official

    Explains how to run go-redis tests: the Docker Compose stack, make targets, focusing a single Ginkgo spec, the e2e suite and the version environment variables.

    22k GitHub stars~786 tokensUpdated yesterday
    Testing & QAAuto-check passed
  • Build Images

    kubernetes-sigs/cloud-provider-azure

    Official

    Build cloud-provider-azure container images through the repo Makefile with explicit IMAGETAG and IMAGEREGISTRY inputs, optional make flag overrides, and opt-in bounded Docker or Podman retries.

    294 GitHub stars~1.7k tokensUpdated today
    DevOps & CloudAuto-check passed

More from ctrsploit/ctrsploit

  • Record Terminal Session

    ctrsploit/ctrsploit

    Record terminal demonstrations for ctrsploit vulnerabilities and convert asciinema .cast captures into project-style SVG or GIF artifacts.

    154 GitHub stars~5.2k tokensUpdated 1 mo ago
    Auto-check passed
  • Commit Message

    ctrsploit/ctrsploit

    Generate semantic commit messages and commit safely. An agent skill from ctrsploit/ctrsploit.

    154 GitHub stars~823 tokensUpdated 1 mo ago
    Auto-check passed
  • Release Notes

    ctrsploit/ctrsploit

    Draft ctrsploit release notes for a target version by comparing git tags, mapping merge commits to GitHub PRs, and grouping user-visible changes by module and object.

    154 GitHub stars~1.6k tokensUpdated 1 mo ago
    Auto-check passed

Works with

Questions about Dqd Lab

What does Dqd Lab do?

Manage ctrsploit dqd lab environments from github.com/ctrsploit/dqd. Dqd Lab is an agent skill from ctrsploit/ctrsploit.com/ctrsploit/dqd.

When should I use Dqd Lab?

Dqd Lab fits situations like: the user asks to start; connect to a dqd; dqddir experiment environment; prepare ctrsploit e2e.yml entries with kind: dqd.

How do I install Dqd Lab in Claude Code?

Run `npx skills add ctrsploit/ctrsploit --skill dqd-lab -a claude-code`. Or copy the skill folder (.opencode/skills/dqd-lab in ctrsploit/ctrsploit) into .claude/skills/dqd-lab in your project. Claude Code loads it when a task matches its description.

How do I install Dqd Lab in Codex?

Run `npx skills add ctrsploit/ctrsploit --skill dqd-lab -a codex`. Or copy the skill folder (.opencode/skills/dqd-lab in ctrsploit/ctrsploit) into .agents/skills/dqd-lab in your project. Codex loads it when a task matches its description.

Can I use Dqd Lab in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ctrsploit/ctrsploit --skill dqd-lab -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/dqd-lab, .gemini/skills/dqd-lab, .github/skills/dqd-lab and .opencode/skills/dqd-lab in your project.

What does Dqd Lab need to run?

Going by SKILL.md and its folder, Dqd Lab needs a shell for the scripts in its folder and the command-line tools its instructions call (docker, make, ssh, git and scp). Our summary lists: A Bash shell; Docker.

Does Dqd Lab access the network?

SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Dqd Lab safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Dqd Lab use?

No licence was found for Dqd Lab or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Dqd Lab use?

About 1.6k tokens (SKILL.md is roughly 6.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Dqd Lab?

Skills that share tags, products or a category with Dqd Lab: Crabbox Setup (AI-Builder-Club/skills, 1.3k stars), Openclaw Docker E2E Authoring (openclaw/openclaw, 392k stars), Release Openclaw Plugin Testing (openclaw/openclaw, 392k stars) and Testing (wellwelwel/poku, 1.2k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Dqd Lab?

ctrsploit (a GitHub organization) maintains it in ctrsploit/ctrsploit, which has 154 GitHub stars. The repository holds 4 skills in this directory. The repository was last updated on August 20, 2026.

Source: ctrsploit/ctrsploit on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.