Agent skill

Recon Tool Integration

by samugit83 in samugit83/redamon

Adding a new tool to the recon pipeline: the enrichment-module contract and its isolated wrapper (the actual fan-out and test call path), graph completeness, and the preset catalog that silently…

MITAuto-check passedSecurity

Install Recon Tool Integration

skills CLI
$ npx skills add samugit83/redamon --skill recon-tool-integration -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install samugit83/redamon recon-tool-integration --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/recon-tool-integration .claude/skills/recon-tool-integration && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
recon-tool-integration
GitHub stars
3k
Token cost
~1.9k tokens
SKILL.md length
693 words
Files
1
Skills in repo
15
Repo updated
First seen
Licence
MIT

At a glance

Adding a new tool to the recon pipeline: the enrichment-module contract and its isolated wrapper (the actual fan-out and test call path), graph completeness, and the preset catalog that silently…

  • Tasks that involve Penetration testing
  • SKILL.md covers When to Use, Critical Rules, Enrichment-module contract… and Commands, plus 1 more section
  • Calls docker and python3
  • Tasks that involve Bug bounty

What it does

Recon Tool Integration is an agent skill from samugit83/redamon. Adding a new tool to the recon pipeline: the enrichment-module contract and its isolated wrapper (the actual fan-out and test call path), graph completeness, and the preset catalog that silently strips unknown settings. Miss the isolated wrapper and the tool never runs in parallel; miss the catalog and AI presets drop its config. Trigger: adding a tool to the recon pipeline; a new recon/.py or recon/mainreconmodules/.py enrichment module; editing the execution groups in recon/main.py or the IMAGES array in…

Its SKILL.md is about 1.9k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Security, covering Penetration testing and Bug bounty. The repository describes itself as: Open-source, self-hosted AI penetration testing framework: maps your attack surface into a graph, autonomously exploits it from a Kali sandbox with human approval gates, and… The licence is MIT.

When your agent uses it

  • Tasks that involve Penetration testing
  • Tasks that involve Bug bounty

Example prompts

  • “/recon-tool-integration”

Requirements

  • Python 3
  • Node.js
  • Docker

What it can do on your machine

Read from SKILL.md and the folder at commit d90c940. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • docker
    • python3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use docker, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Recon Tool Integration loads about 1.9k tokens when it runs. Until then it costs about 140 tokens; SKILL.md has 693 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~140
When it runs · the whole SKILL.md, loaded when a task matches
~1.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from samugit83/redamon at commit d90c940, republished under its MIT licence (© samugit83). 693 words, ~1,885 tokens.

Download SKILL.mdSave it as .claude/skills/recon-tool-integration/SKILL.md (or your agent's skills folder).
name
recon-tool-integration
description
Adding a new tool to the recon pipeline: the enrichment-module contract and its isolated wrapper (the actual fan-out and test call path), graph completeness, and the preset catalog that silently strips unknown settings. Miss the isolated wrapper and the tool never runs in parallel; miss the catalog and AI presets drop its config. Trigger: adding a tool to the recon pipeline; a new recon/*.py or recon/main_recon_modules/*.py enrichment module; editing the execution groups in recon/main.py or the IMAGES array in recon/entrypoint.sh.
license
MIT
metadata.author
redamon
metadata.version
1.0.0
metadata.scope
recon
metadata.auto_invoke
Adding a new tool to the recon pipeline, Editing recon execution groups, enrichment modules, or the recon image list

When to Use

  • Adding a brand-new scanning/enrichment tool to the scan pipeline.

For adding AI decision-making to an existing tool, use recon-ai-enrichment. For the graph write, use graph-db-writes. For the settings, use project-settings-cascade. This skill is the module + pipeline wiring.


Critical Rules

  • NEVER ship the enrichment module without its _isolated wrapper. run_<tool>_enrichment_isolated() is the actual call path for the GROUP 3b parallel fan-out AND for every unit test; the plain run_<tool>_enrichment() alone is never fan-out-safe. Reference: recon/main_recon_modules/censys_enrich.py:369.
  • NEVER vary the top-level result key. The module writes combined_result["<tool>"] and the wrapper returns snapshot.get("<tool>", {}) with the same identifier used everywhere else in the pipeline (censys_enrich.py:365).
  • NEVER collect a field and not write it to the graph. Every field in the output dict must land on a node/relationship or it is silent data loss - see graph-db-writes.
  • NEVER add a tool setting without updating BOTH preset layers. Add it to the Zod recon-preset-schema.ts and to RECON_PARAMETER_CATALOG in webapp/src/app/api/presets/generate/route.ts. Miss the Zod schema and AI-generated presets silently strip the setting; miss the catalog and the preset LLM never knows the tool exists.
  • ALWAYS prefix every print() log [symbol][ToolName] ([*] progress, [+] success, [-] skipped, [!] error). Recon stdout is tailed into the SSE recon drawer; a bare print() is invisibly formatted.
  • ALWAYS place a fan-out tool behind the deep-copy _isolated wrapper and in the correct execution group in recon/main.py; never parallelize across a dependency boundary (a tool needing live URLs cannot run before GROUP 4).
  • ALWAYS route a new external call through recon/helpers/circuit_breaker.py. An API endpoint goes through a Breaker (guarded_call, or a provider:endpoint breaker with record(classify_http(...))); its keys go through a KeyPool, not a raw main-key read. A loop over scan hosts (HTTP or a Docker tool) gates each host with host_health.allow(url) / scope.skip_if_down(url) and records the outcome with host_alive / host_failed — any HTTP response is life, only a connection failure counts. Never log a key or a response body: breaker messages carry the provider, endpoint and a refused key's 1-based rotation position only.
  • ALWAYS declare what the tool cut to the coverage accumulator. Open a scope = circuit_breaker.scope((), label="Tool", unit="host(s)") at the tool's start and call scope.finish("<phase>", sources=[...], host_source="<graph source>", payload=result) at its end — so the end-of-run prune KEEPS a paused source's or a skipped host's prior findings instead of deleting them as "gone", and the run shows partial — N sources skipped. host_source must equal the source value the tool writes to the graph. A tool whose findings carry no host field passes host_field=False (the skip is reported at the source level).
  • A new tool setting FAILS THE BUILD until it is in the registry. Every parameter is described once in recon_settings/registry.yaml, and a test walking Prisma.ProjectScalarFieldEnum fails until every column has an entry. Draft it with python3 tooling/scripts/extract_recon_registry.py, EDIT IT, then python3 recon_settings/build.py.
  • Tuning is OPEN and controlled at the point of use, not by being refused. A rate is capped to the engagement ceiling at scan start; a wordlist path outside the project's own directories is dropped. A container image is a closed values: list and an out-of-set value is REFUSED at the write, because accepting one and replacing it at scan start made get_recon_settings echo an image the scan would never run.
  • Two things stay closed, and only two. The engagement SCOPE (mcp: create_only, set once by create_project) and the engagement RECORD (mcp: never, deny_reason: engagement-record - the client, the contacts, the dates, the document). The engagement's LIMITS are ordinary mcp: settable fields in the engagement_limits group: they are reachable from the form and from MCP alike, and what makes them safe is that each is enforced at scan start whatever the setting says. See README.MCP.SERVER.md.
  • A settable field with no form input fails parity.test.ts, and so does a form input with no classification. Neither door may reach something the other cannot. form_section is joined from the tool's own entry, so a field lands beside its tool automatically.
  • A new rps field with traffic: active and no roe_capped: true fails the build. That gap is how three rate limits shipped reachable over MCP and outside the ceiling.
Show full SKILL.md (24 more words)Show less

Enrichment-module contract (copy target)

python
def run_censys_enrichment(combined_result: dict, settings: dict) -> dict:
    ...                                              # mutate in place
    combined_result["censys"] = censys_data          # top-level key == tool id, everywhere
    return combined_result

def run_censys_enrichment_isolated(combined_result: dict, settings: dict) -> dict:
    """Thread-safe: does not mutate combined_result. The fan-out + test call path."""
    import copy
    snapshot = copy.deepcopy(combined_result)
    run_censys_enrichment(snapshot, settings)
    return snapshot.get("censys", {})                 # returns only this tool's payload

From recon/main_recon_modules/censys_enrich.py.

Commands

bash
docker compose build recon                            # if you added a Docker-based tool (recon/entrypoint.sh IMAGES)
docker compose exec webapp npx prisma db push         # for new settings (NEVER prisma migrate)
./redamon.sh test unit                                # recon + root-recon sections

Resources

© samugit83, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/recon-tool-integration of samugit83/redamon.

Open the folder on GitHubat commit d90c940

Compare with similar skills

Recon Tool Integration next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Recon Tool Integration compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Recon Tool Integration this skillsamugit83/redamon3k—~1.9kAutomated safety check: PassMIT
Metabigor OSINT Reconj3ssie/metabigor1.9k—~2.4kAutomated safety check: PassMIT
Wooyun Legacytanweai/wooyun-legacy1.8k—~1.9kAutomated safety check: PassCustom licence
Client Request Signature Reversalawarexone/Agentic-Bug-Hunter5.3k—~4.7kAutomated safety check: PassMIT
Web3 Bug Bounty AI Toolstradecatlabs/vibe-coding-cn17k2 repos~3.9kAutomated safety check: WarnMIT
Bug Bounty Campaign DriverEncod3d-Sec/TORCH3291 repos~1.8kAutomated safety check: PassMIT

Similar skills

  • Metabigor OSINT Recon

    j3ssie/metabigor

    Operates the metabigor CLI to map a target's network ranges, subdomains, ports, related domains, CDNs and archived URLs from free sources without API keys.

    1.9k GitHub stars~2.4k tokensUpdated 2 mo ago
    SecurityAuto-check passed
  • Wooyun Legacy

    tanweai/wooyun-legacy

    WooYun business logic vulnerability methodology — 22,132 real cases across 6 domains (authentication bypass, authorization bypass, payment tampering, information disclosure, logic flaws…

    1.8k GitHub stars~1.9k tokensUpdated 2 mo ago
    SecurityAuto-check passed
  • Client Request Signature Reversal

    awarexone/Agentic-Bug-Hunter

    Recovers a client-side request signature or anti-bot token just far enough to replay blocked requests in bug bounty testing, starting from a captured packet.

    5.3k GitHub stars~4.7k tokensUpdated 3 days ago
    SecurityAuto-check passed
  • Web3 Bug Bounty AI Tools

    tradecatlabs/vibe-coding-cn

    A selection guide to AI-driven tools for Web3 bug bounty work, from autonomous web pentesters to smart contract bug finders, with notes on authorization.

    17k GitHub starsUsed in 2 repos~3.9k tokens
    SecurityAuto-check: warnings
  • Runs a bug-bounty engagement through a script that tracks the current pass, builds a board of rows from recon and prints the next required action each turn.

    329 GitHub starsUsed in 1 repo~1.8k tokens
    SecurityAuto-check passed
  • Adaptive Web Fuzzing

    Encod3d-Sec/TORCH

    Adaptive web fuzzing for pentests, bug bounty and CTF work: picks the smallest suitable SecLists wordlist per target surface and calibrates filters against soft-404 responses.

    329 GitHub starsUsed in 1 repo~1.3k tokens
    SecurityAuto-check passed

More from samugit83/redamon

All 15 skills in this repo
  • Add Community Skill

    samugit83/redamon

    Adding a Community Agent Skill: a Markdown attack-workflow file that users import from the catalog, which then competes in the Intent Router and is injected into the agent's system prompt.

    3k GitHub stars~775 tokensUpdated yesterday
    Auto-check passed
  • Add Partial Recon

    samugit83/redamon

    Adding partial-recon support for a tool: running a single pipeline phase on demand from the workflow graph, reading its inputs from the existing Neo4j graph and merging results back.

    3k GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed
  • Agentic Tool Integration

    samugit83/redamon

    Wiring a new tool the AI agent can call (not the recon pipeline): the tool registry, the phase map, the hardcoded dispatch chokepoint, and the duplicated execution paths that make a tool work in…

    3k GitHub stars~1.3k tokensUpdated yesterday
    Auto-check passed
  • Builtin Agent Skill

    samugit83/redamon

    Adding a built-in Agent Skill (an attack technique like ssrf, xxe, rce) that ships hardcoded in RedAmon: classified by the Intent Router, injected into the agent prompt, toggled per project, badged…

    3k GitHub stars~1.4k tokensUpdated yesterday
    Auto-check passed
  • Graph DB Writes

    samugit83/redamon

    Writing to the Neo4j attack-surface graph in RedAmon: the tenant-isolation MERGE key every entity node must carry, where graph methods live (mixins, not the client), and the schema places that must…

    3k GitHub stars~2.2k tokensUpdated yesterday
    Auto-check passed
  • LLM Provider Integration

    samugit83/redamon

    Adding an LLM provider to RedAmon: the credential boundary (keys must never reach scan containers), prefix-routed model ids, and the provider registry.

    3k GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Recon Tool Integration

What does Recon Tool Integration do?

Adding a new tool to the recon pipeline: the enrichment-module contract and its isolated wrapper (the actual fan-out and test call path), graph completeness, and the preset catalog that silently…. Recon Tool Integration is an agent skill from samugit83/redamon. Adding a new tool to the recon pipeline: the enrichment-module contract and its isolated wrapper (the actual fan-out and test call path), graph completeness, and the preset catalog that silently strips unknown settings.

When should I use Recon Tool Integration?

Recon Tool Integration fits situations like: tasks that involve Penetration testing; tasks that involve Bug bounty.

How do I install Recon Tool Integration in Claude Code?

Run `npx skills add samugit83/redamon --skill recon-tool-integration -a claude-code`. Or copy the skill folder (skills/recon-tool-integration in samugit83/redamon) into .claude/skills/recon-tool-integration in your project. Claude Code loads it when a task matches its description.

How do I install Recon Tool Integration in Codex?

Run `npx skills add samugit83/redamon --skill recon-tool-integration -a codex`. Or copy the skill folder (skills/recon-tool-integration in samugit83/redamon) into .agents/skills/recon-tool-integration in your project. Codex loads it when a task matches its description.

Can I use Recon Tool Integration in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add samugit83/redamon --skill recon-tool-integration -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/recon-tool-integration, .gemini/skills/recon-tool-integration, .github/skills/recon-tool-integration and .opencode/skills/recon-tool-integration in your project.

What does Recon Tool Integration need to run?

Going by SKILL.md and its folder, Recon Tool Integration needs the command-line tools its instructions call (docker and python3). Our summary lists: Python 3; Node.js; Docker.

Does Recon Tool Integration access the network?

SKILL.md contains no URLs. Its commands use docker, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Recon Tool Integration safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Recon Tool Integration use?

Recon Tool Integration is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Recon Tool Integration use?

About 1.9k tokens (SKILL.md is roughly 7.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Recon Tool Integration?

Skills that share tags, products or a category with Recon Tool Integration: Metabigor OSINT Recon (j3ssie/metabigor, 1.9k stars), Wooyun Legacy (tanweai/wooyun-legacy, 1.8k stars), Client Request Signature Reversal (awarexone/Agentic-Bug-Hunter, 5.3k stars) and Web3 Bug Bounty AI Tools (tradecatlabs/vibe-coding-cn, 17k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Recon Tool Integration?

samugit83 (a GitHub user) maintains it in samugit83/redamon, which has 2,961 GitHub stars. The repository holds 15 skills in this directory. The repository was last updated on October 7, 2026.

Source: samugit83/redamon on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.