Agent skill

Anti Bot Analyzer

by revfactory in revfactory/harness-100

A skill for analyzing website anti-bot defense mechanisms and developing legitimate evasion strategies.

Apache-2.0Auto-check passedData & Analytics

Install Anti Bot Analyzer

skills CLI
$ npx skills add revfactory/harness-100 --skill anti-bot-analyzer -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install revfactory/harness-100 anti-bot-analyzer --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/revfactory/harness-100.git skills-src && mkdir -p .claude/skills && cp -r skills-src/en/37-web-scraper/.claude/skills/anti-bot-analyzer .claude/skills/anti-bot-analyzer && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
anti-bot-analyzer
GitHub stars
1.3k
Token cost
~1.1k tokens
SKILL.md length
235 words
Files
1
Skills in repo
464
Repo updated
First seen
Licence
Apache-2.0

At a glance

A skill for analyzing website anti-bot defense mechanisms and developing legitimate evasion strategies.

  • Requests like analyze anti-bot defenses
  • SKILL.md covers Target Agents, Anti-Bot Defense Layer…, Automated Defense Level… and Rate Limit Design Formula, plus 4 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Bot blocking bypass

What it does

Anti Bot Analyzer is an agent skill from revfactory/harness-100. A skill for analyzing website anti-bot defense mechanisms and developing legitimate evasion strategies. Use for requests like 'analyze anti-bot defenses', 'bot blocking bypass', 'Cloudflare response', 'CAPTCHA detection', 'rate limit check', etc. Note: developing illegal bypass tools, CAPTCHA auto-solving services, and privacy-violating scraping are outside the scope of this skill.

Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Data & Analytics, covering Web scraping and Rate limiting. It works with Cloudflare. The licence is Apache-2.0.

When your agent uses it

  • Requests like analyze anti-bot defenses
  • Bot blocking bypass
  • Cloudflare response
  • CAPTCHA detection

Example prompts

  • “analyze anti-bot defenses”
  • “bot blocking bypass”
  • “Cloudflare response”
  • “/anti-bot-analyzer”

Requirements

  • Python 3

What it can do on your machine

Read from SKILL.md and the folder at commit 8e8d35c. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are python and markdown).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Anti Bot Analyzer loads about 1.1k tokens when it runs. Until then it costs about 101 tokens; SKILL.md has 235 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~101
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from revfactory/harness-100 at commit 8e8d35c, republished under its Apache-2.0 licence (© revfactory). 235 words, ~1,095 tokens.

Download SKILL.mdSave it as .claude/skills/anti-bot-analyzer/SKILL.md (or your agent's skills folder).
name
anti-bot-analyzer
description
A skill for analyzing website anti-bot defense mechanisms and developing legitimate evasion strategies. Use for requests like 'analyze anti-bot defenses', 'bot blocking bypass', 'Cloudflare response', 'CAPTCHA detection', 'rate limit check', etc. Note: developing illegal bypass tools, CAPTCHA auto-solving services, and privacy-violating scraping are outside the scope of this skill.

Anti-Bot Analyzer — Anti-Bot Defense Analysis + Legitimate Response

A skill that enhances target-analyst's and crawler-developer's anti-bot analysis capabilities.

Target Agents

  • target-analyst — Pre-assesses the defense level of target sites
  • crawler-developer — Develops legitimate crawler strategies based on analysis results

Anti-Bot Defense Layer Classification

Level 1: Basic Defense (Difficulty: Low)
DefenseDetection MethodResponse Strategy
robots.txtGET /robots.txtComply with rules (Crawl-delay, Disallow)
User-Agent filter403/429 responseSet real browser UA header
Referer checkBlocked on empty RefererSet appropriate Referer header
IP Rate Limit429 on rapid requeststime.sleep() + random delay
Level 2: Intermediate Defense (Difficulty: Medium)
DefenseDetection MethodResponse Strategy
Cookie-based sessionsSet-Cookie trackingMaintain requests.Session()
JavaScript rendering requiredEmpty HTML bodyUse Playwright/Puppeteer
Dynamic tokens (CSRF)Hidden inputExtract token and include in request
API authentication401 responseAnalyze public API keys
Level 3: Advanced Defense (Difficulty: High)
DefenseDetection MethodResponse Strategy
Cloudflarecf- cookies, challenge pageExplore legitimate API alternatives
Akamai Bot Manager_abck cookieExplore official API/RSS alternatives
Browser fingerprintingnavigator/WebGL checksStealth plugins
reCAPTCHA/hCaptchag-recaptcha DOMUse API alternatives
TLS fingerprinting (JA3)Non-standard TLS blockedcurl_cffi

Automated Defense Level Detection Flow

1. HTTP request (no UA)
   ├── 200 OK -> Level 0 (no defense)
   └── 403/503 -> UA filter suspected

2. HTTP request (Chrome UA)
   ├── 200 + data -> Level 1
   ├── 200 + empty body -> JS rendering required (Level 2)
   └── 403/503 -> Level 2+

3. Response header analysis
   ├── server: cloudflare -> Cloudflare
   ├── x-akamai-* -> Akamai
   └── set-cookie: __cf_bm -> CF Bot Management

4. HTML analysis
   ├── <script src="captcha"> -> CAPTCHA
   └── API endpoint discovery (XHR/fetch)

5. Final: Level 0-3 + defense list output

Rate Limit Design Formula

python
base_delay = max(robots_crawl_delay, response_time * 5, 1.0)
actual_delay = base_delay + random.uniform(0, base_delay * 0.5)

# Exponential backoff on 429
backoff_delay = base_delay * (2 ** retry_count)
max_backoff = 300  # Maximum 5 minutes

# Business hours consideration
if is_business_hours(target_tz):
    actual_delay *= 2

robots.txt Analysis Checklist

1. Crawl-delay -> Apply to base_delay
2. Sitemap URL -> Collect crawling targets
3. Disallow patterns -> Apply URL filters
4. Allow exceptions -> Specify permitted paths
5. UA-specific rules -> Custom UA strategy

Legitimate Alternative Search Order

1. Official API -> Top priority
2. RSS/Atom feeds -> /feed, /rss
3. Sitemap XML -> URL list
4. Open Data / Public APIs -> government data portals
5. Partnership/Partner APIs
6. Web Archives -> web.archive.org
ItemRisk Level
robots.txt complianceMandatory
ToS anti-scraping clausesHigh
No personal data collectionMandatory
Copyright verificationHigh
No excessive server loadMandatory
No login credential usageMedium
Data purpose (analysis vs. resale)High

Report Template

markdown
## Anti-Bot Analysis Report
### Target: [URL]
### Defense Level: Level [0-3]
### Detected Defense Mechanisms
| Defense Type | Details | Counterable |
### robots.txt Analysis
### Recommended Strategy
### Legitimate Alternatives
### Legal Risk Assessment: [Low/Medium/High]

© revfactory, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in en/37-web-scraper/.claude/skills/anti-bot-analyzer of revfactory/harness-100.

Open the folder on GitHubat commit 8e8d35c

Compare with similar skills

Anti Bot Analyzer next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Anti Bot Analyzer compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Anti Bot Analyzer this skillrevfactory/harness-1001.3k—~1.1kAutomated safety check: PassApache-2.0
Firecrawl Rate Limitsjeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMIT
ScraplingCedriccmh/claude-code-skill-scrapling444—~1.1kAutomated safety check: PassMIT
News9600dev/mmr131—~6.1kAutomated safety check: PassCustom licence
ScraplingTommy-yw/RunbookHermes5463 repos~2.3kAutomated safety check: PassMIT
Scraplingarchibate/dotfiles-opencode1081 repos~4.9kAutomated safety check: WarnBSD-3-Clause

Similar skills

  • Firecrawl Rate Limits

    jeremylongshore/tons-of-skills-marketplace

    Implement bounded Firecrawl throttling and retry behavior using current team RPM, browser concurrency, queue status, timeouts, and Retry-After.

    2.8k GitHub stars~1.1k tokensUpdated today
    Data & AnalyticsAuto-check passed
  • Scrapling

    Cedriccmh/claude-code-skill-scrapling

    使用 scrapling 进行网页抓取和数据提取。根据目标网站特征自动选择最佳 Fetcher, 生成并执行 Python 脚本完成任务。Use when: (1) 抓取/爬取网页内容或数据(scrape, crawl, fetch page, extract data) (2) 需要绕过 Cloudflare/WAF 等反爬保护 (3) 登录后抓取受保护页面 (4) 解析已有 HTML…

    444 GitHub stars~1.1k tokensUpdated 3 mo ago
    Data & AnalyticsAuto-check passed
  • News

    9600dev/mmr

    Fetch, search, and summarize financial news articles via the local scraper service (~/dev/scraper) at http://127.0.0.1:8089.

    131 GitHub stars~6.1k tokensUpdated 24 days ago
    Data & AnalyticsAuto-check passed
  • Scrapling

    Tommy-yw/RunbookHermes

    Web scraping with Scrapling - HTTP fetching, stealth browser automation, Cloudflare bypass, and spider crawling via CLI and Python.

    546 GitHub starsUsed in 3 repos~2.3k tokens
    Data & AnalyticsAuto-check passed
  • Scrapling

    archibate/dotfiles-opencode

    Scrape web pages using Scrapling with anti-bot bypass (like Cloudflare Turnstile), stealth headless browsing, spiders framework, adaptive scraping, and JavaScript rendering.

    108 GitHub starsUsed in 1 repo~4.9k tokens
    Data & AnalyticsAuto-check: warnings
  • Scrapedo Web Scraper

    artwist-polyakov/polyakov-claude-skills

    Веб-скрапинг через Scrape.do. An agent skill from artwist-polyakov/polyakov-claude-skills.

    206 GitHub stars~251 tokensUpdated today
    Data & AnalyticsAuto-check passed

More from revfactory/harness-100

All 464 skills in this repo
  • API Error Design Patterns

    revfactory/harness-100

    Reference for designing how an API reports failures: structured error codes, response shapes, client-friendly messages, an error catalog and retry or fallback advice.

    1.3k GitHub stars~1.6k tokensUpdated 6 mo ago
    Auto-check passed
  • API Security Checklist

    revfactory/harness-100

    Walks a backend-dev agent through OWASP API Top 10 checks, authentication and authorization patterns, and defense code during API design.

    1.3k GitHub stars~1.7k tokensUpdated 6 mo ago
    Auto-check passed
  • Arg Parser Generator

    revfactory/harness-100

    Methodology for systematically designing and generating CLI tool argument parser structures.

    1.3k GitHub stars~1.2k tokensUpdated 6 mo ago
    Auto-check passed
  • Audience Segmentation

    revfactory/harness-100

    Audience segmentation skill used by the analyst and curator agents.

    1.3k GitHub stars~1.3k tokensUpdated 6 mo ago
    Auto-check passed
  • Audio Storytelling

    revfactory/harness-100

    Audio storytelling skill used by the podcast scriptwriter and show note editor.

    1.3k GitHub stars~1.6k tokensUpdated 6 mo ago
    Auto-check passed
  • Audit Checklist Engine

    revfactory/harness-100

    A systematic checklist generation engine for compliance audits.

    1.3k GitHub stars~1.3k tokensUpdated 6 mo ago
    Auto-check passed

Works with

Questions about Anti Bot Analyzer

What does Anti Bot Analyzer do?

A skill for analyzing website anti-bot defense mechanisms and developing legitimate evasion strategies. Anti Bot Analyzer is an agent skill from revfactory/harness-100. A skill for analyzing website anti-bot defense mechanisms and developing legitimate evasion strategies.

When should I use Anti Bot Analyzer?

Anti Bot Analyzer fits situations like: requests like analyze anti-bot defenses; bot blocking bypass; cloudflare response; CAPTCHA detection.

How do I install Anti Bot Analyzer in Claude Code?

Run `npx skills add revfactory/harness-100 --skill anti-bot-analyzer -a claude-code`. Or copy the skill folder (en/37-web-scraper/.claude/skills/anti-bot-analyzer in revfactory/harness-100) into .claude/skills/anti-bot-analyzer in your project. Claude Code loads it when a task matches its description.

How do I install Anti Bot Analyzer in Codex?

Run `npx skills add revfactory/harness-100 --skill anti-bot-analyzer -a codex`. Or copy the skill folder (en/37-web-scraper/.claude/skills/anti-bot-analyzer in revfactory/harness-100) into .agents/skills/anti-bot-analyzer in your project. Codex loads it when a task matches its description.

Can I use Anti Bot Analyzer in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add revfactory/harness-100 --skill anti-bot-analyzer -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/anti-bot-analyzer, .gemini/skills/anti-bot-analyzer, .github/skills/anti-bot-analyzer and .opencode/skills/anti-bot-analyzer in your project.

What does Anti Bot Analyzer need to run?

SKILL.md names no scripts, command-line tools or credentials: Anti Bot Analyzer is instructions for the agent only. Our summary lists: Python 3.

Does Anti Bot Analyzer access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Anti Bot Analyzer safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Anti Bot Analyzer use?

Anti Bot Analyzer is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Anti Bot Analyzer use?

About 1.1k tokens (SKILL.md is roughly 4.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Anti Bot Analyzer?

Skills that share tags, products or a category with Anti Bot Analyzer: Firecrawl Rate Limits (jeremylongshore/tons-of-skills-marketplace, 2.8k stars), Scrapling (Cedriccmh/claude-code-skill-scrapling, 444 stars), News (9600dev/mmr, 131 stars) and Scrapling (Tommy-yw/RunbookHermes, 546 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Anti Bot Analyzer?

revfactory (a GitHub user) maintains it in revfactory/harness-100, which has 1,295 GitHub stars. The repository holds 464 skills in this directory. The repository was last updated on March 22, 2026.

Source: revfactory/harness-100 on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.