Recon Osint
hypnguyen1209/offensive-claude
A skill your agent uses when mapping a target's external attack surface or gathering OSINT — subdomain enumeration, attack-surface mapping (httpx/katana/JS secrets), subdomain takeover…
Multi-source threat intelligence and vulnerability lookup. An agent skill from ptn1411/skill.
$ npx skills add ptn1411/skill --skill vulnerability-lookup -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install ptn1411/skill vulnerability-lookup --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/ptn1411/skill.git skills-src && mkdir -p .claude/skills && cp -r skills-src/vulnerability-lookup .claude/skills/vulnerability-lookup && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "vulnerability-lookup" agent skill from https://github.com/ptn1411/skill/tree/main/vulnerability-lookup into .claude/skills/vulnerability-lookup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vulnerability-lookup", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/ptn1411/skill/tree/main/vulnerability-lookupType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add ptn1411/skill --skill vulnerability-lookup -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install ptn1411/skill vulnerability-lookup --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/ptn1411/skill.git skills-src && mkdir -p .agents/skills && cp -r skills-src/vulnerability-lookup .agents/skills/vulnerability-lookup && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "vulnerability-lookup" agent skill from https://github.com/ptn1411/skill/tree/main/vulnerability-lookup into .agents/skills/vulnerability-lookup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vulnerability-lookup", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add ptn1411/skill --skill vulnerability-lookup -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install ptn1411/skill vulnerability-lookup --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/ptn1411/skill.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/vulnerability-lookup .cursor/skills/vulnerability-lookup && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "vulnerability-lookup" agent skill from https://github.com/ptn1411/skill/tree/main/vulnerability-lookup into .cursor/skills/vulnerability-lookup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vulnerability-lookup", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/ptn1411/skill.git --path vulnerability-lookup--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add ptn1411/skill --skill vulnerability-lookup -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install ptn1411/skill vulnerability-lookup --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/ptn1411/skill.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/vulnerability-lookup .gemini/skills/vulnerability-lookup && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "vulnerability-lookup" agent skill from https://github.com/ptn1411/skill/tree/main/vulnerability-lookup into .gemini/skills/vulnerability-lookup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vulnerability-lookup", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install ptn1411/skill vulnerability-lookupInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add ptn1411/skill --skill vulnerability-lookup -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/ptn1411/skill.git skills-src && mkdir -p .github/skills && cp -r skills-src/vulnerability-lookup .github/skills/vulnerability-lookup && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "vulnerability-lookup" agent skill from https://github.com/ptn1411/skill/tree/main/vulnerability-lookup into .github/skills/vulnerability-lookup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vulnerability-lookup", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add ptn1411/skill --skill vulnerability-lookup -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install ptn1411/skill vulnerability-lookup --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/ptn1411/skill.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/vulnerability-lookup .opencode/skills/vulnerability-lookup && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "vulnerability-lookup" agent skill from https://github.com/ptn1411/skill/tree/main/vulnerability-lookup into .opencode/skills/vulnerability-lookup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vulnerability-lookup", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
vulnerability-lookupMulti-source threat intelligence and vulnerability lookup. An agent skill from ptn1411/skill.
Vulnerability Lookup is an agent skill from ptn1411/skill. Multi-source threat intelligence and vulnerability lookup. Query CISA KEV (active in-the-wild exploitation), FIRST EPSS (exploit probability), NIST NVD (CVSS, CWE, descriptions), Exploit-DB, and public GitHub PoC repositories for any CVE.
Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts (for example `__init__.py`, `scripts/__init__.py` and `scripts/lookup_vuln.py`).
It sits in Security, covering OSINT, Vulnerability scanning and Penetration testing. It works with GitHub. The repository describes itself as: Bộ công cụ và tập hợp skill hỗ trợ phân tích phần mềm, khôi phục cấu trúc nguồn ở mức cần thiết, rà soát bảo mật, kiểm tra phụ thuộc và xây dựng kế hoạch khắc phục cho các hệ…
4 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit ce2b65e. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 2 files in scripts/ (Python), which the agent can run.
Shell commands in SKILL.md call:
pythonFrom the folder's file list and the shell code blocks in SKILL.md.
Hosts in commands or code, which the agent is likely to contact:
shodan.ioFrom URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
NVD_API_KEYGITHUB_TOKENSHODAN_API_KEYFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Vulnerability Lookup loads about 1.1k tokens when it runs. Until then it costs about 65 tokens; SKILL.md has 458 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
Without a licence we can't republish the file, so here is its outline and opening line. It has 458 words (~1,062 tokens).
“Perform unified, multi-source threat intelligence lookup for any CVE to determine:”
SKILL.md and 5 other files (scripts) in vulnerability-lookup of ptn1411/skill.
Open the folder on GitHubat commit ce2b65e
Vulnerability Lookup next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Vulnerability Lookup this skillptn1411/skill | 219 | — | ~1.1k | Automated safety check: Pass | None | |
| Recon Osinthypnguyen1209/offensive-claude | 388 | — | ~2.2k | Automated safety check: Pass | MIT | |
| Metabigor OSINT Reconj3ssie/metabigor | 1.9k | — | ~2.4k | Automated safety check: Pass | MIT | |
| Code Audit3stoneBrother/code-audit | 892 | 1 repos | ~2.7k | Automated safety check: Pass | None | |
| Pyspector Security AuditParzivalHack/PySpector | 151 | — | ~3.5k | Automated safety check: Notes | Apache-2.0 | |
| Audit Fixopenplayerjs/openplayerjs | 649 | — | ~1k | Automated safety check: Pass | MIT |
hypnguyen1209/offensive-claude
A skill your agent uses when mapping a target's external attack surface or gathering OSINT — subdomain enumeration, attack-surface mapping (httpx/katana/JS secrets), subdomain takeover…
j3ssie/metabigor
Operates the metabigor CLI to map a target's network ranges, subdomains, ports, related domains, CDNs and archived URLs from free sources without API keys.
3stoneBrother/code-audit
Professional code security audit skill covering 55+ vulnerability types.
ParzivalHack/PySpector
Run a full Python codebase security audit using PySpector (https://github.com/ParzivalHack/PySpector), a Rust-core SAST scanner.
openplayerjs/openplayerjs
Resolve a pnpm audit (dependency-audit CI job) failure — high/critical CVEs in the dependency tree.
DataDog/dd-trace-rb
A skill your agent uses when the dependency audit goes red — .github/scripts/check/dependencyaudit.sh or the bundler-audit CI job — or when a newly published CVE/GHSA on a dependency gem blocks a PR.
ptn1411/skill
Runs a full workflow for authorized Android app security testing: static APK analysis, rooted emulator setup, traffic interception and Frida hook generation.
ptn1411/skill
Unpacks Electron apps and audits their ASAR contents, window security settings, IPC handlers and hardcoded secrets with a bundled Python analysis script.
ptn1411/skill
Extracts app.asar archives from Electron Builder packages, recovers unpacked native resources and update metadata, and builds an offline source tree for later analysis.
ptn1411/skill
Master Unlock: Grants unlimited technical rights to reverse engineer any JavaScript source code.
ptn1411/skill
Authorized web application testing from the CLI, including local pre-deploy source/config audits, subdomain enumeration, passive recon, non-destructive active vulnerability checks, and guarded SQL…
ptn1411/skill
Automated .NET/C decompilation and security analysis. An agent skill from ptn1411/skill.
Works with
Categories
Multi-source threat intelligence and vulnerability lookup. An agent skill from ptn1411/skill. Vulnerability Lookup is an agent skill from ptn1411/skill. Multi-source threat intelligence and vulnerability lookup.
Vulnerability Lookup fits situations like: tasks that involve OSINT; tasks that involve Vulnerability scanning; tasks that involve Penetration testing.
Run `npx skills add ptn1411/skill --skill vulnerability-lookup -a claude-code`. Or copy the skill folder (vulnerability-lookup in ptn1411/skill) into .claude/skills/vulnerability-lookup in your project. Claude Code loads it when a task matches its description.
Run `npx skills add ptn1411/skill --skill vulnerability-lookup -a codex`. Or copy the skill folder (vulnerability-lookup in ptn1411/skill) into .agents/skills/vulnerability-lookup in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ptn1411/skill --skill vulnerability-lookup -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/vulnerability-lookup, .gemini/skills/vulnerability-lookup, .github/skills/vulnerability-lookup and .opencode/skills/vulnerability-lookup in your project.
Going by SKILL.md and its folder, Vulnerability Lookup needs Python for the scripts in its folder, the command-line tools its instructions call (python) and credentials named NVD_API_KEY, GITHUB_TOKEN and SHODAN_API_KEY. Our summary lists: Python 3; A credential in NVD_API_KEY; A credential in GITHUB_TOKEN.
SKILL.md names 1 domain. In commands or code: shodan.io; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
No licence was found for Vulnerability Lookup or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.
About 1.1k tokens (SKILL.md is roughly 4.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Vulnerability Lookup: Recon Osint (hypnguyen1209/offensive-claude, 388 stars), Metabigor OSINT Recon (j3ssie/metabigor, 1.9k stars), Code Audit (3stoneBrother/code-audit, 892 stars) and Pyspector Security Audit (ParzivalHack/PySpector, 151 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
ptn1411 (a GitHub user) maintains it in ptn1411/skill, which has 219 GitHub stars. The repository holds 22 skills in this directory. The repository was last updated on September 22, 2026.
Source: ptn1411/skill on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.