Agent skill

Proxychains Tunnel

by SpecterOps in SpecterOps/skills

Run in-scope network commands through a SOCKS5 tunnel with proxychains4, including tunnel readiness checks and evidence capture.

Apache-2.0Auto-check passed

Install Proxychains Tunnel

skills CLI
$ npx skills add SpecterOps/skills --skill proxychains-tunnel -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install SpecterOps/skills proxychains-tunnel --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/SpecterOps/skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/ops-infrastructure/skills/proxychains-tunnel .claude/skills/proxychains-tunnel && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
proxychains-tunnel
GitHub stars
702
Token cost
~826 tokens
SKILL.md length
313 words
Files
4 (incl. assets)
Skills in repo
38
Repo updated
First seen
Licence
Apache-2.0

At a glance

Run in-scope network commands through a SOCKS5 tunnel with proxychains4, including tunnel readiness checks and evidence capture.

  • Works in 4 steps: Confirm target is in scope for the… → Confirm proxychains4 is installed. → Build an isolated proxychains config for… → …
  • Traffic must traverse a local SOCKS proxy (for example pivoting through SSH dynamic forwarding)
  • SKILL.md covers Input Contract, Preconditions, Execution Workflow and OPSEC Gate, plus 1 more section
  • Calls curl; reaches icanhazip.com

What it does

Proxychains Tunnel is an agent skill from SpecterOps/skills. Run in-scope network commands through a SOCKS5 tunnel with proxychains4, including tunnel readiness checks and evidence capture. Use when traffic must traverse a local SOCKS proxy (for example pivoting through SSH dynamic forwarding).

Its SKILL.md is about 830 tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including assets (for example `agents/openai.yaml`).

The repository describes itself as: A marketplace for LLM skills. The licence is Apache-2.0.

When your agent uses it

  • Traffic must traverse a local SOCKS proxy (for example pivoting through SSH dynamic forwarding)

Example prompts

  • “/proxychains-tunnel”

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. Confirm target is in scope for the active engagement before executing commands.
  2. Confirm proxychains4 is installed.
  3. Build an isolated proxychains config for each run instead of mutating global config.
  4. Validate local proxy listener before running target command.

What it can do on your machine

Read from SKILL.md and the folder at commit e655f93. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • curl

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • icanhazip.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Proxychains Tunnel loads about 826 tokens when it runs. Until then it costs about 63 tokens; SKILL.md has 313 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~63
When it runs · the whole SKILL.md, loaded when a task matches
~826

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from SpecterOps/skills at commit e655f93, republished under its Apache-2.0 licence (© SpecterOps). 313 words, ~826 tokens.

Download SKILL.mdSave it as .claude/skills/proxychains-tunnel/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.
name
proxychains-tunnel
description
Run in-scope network commands through a SOCKS5 tunnel with proxychains4, including tunnel readiness checks and evidence capture. Use when traffic must traverse a local SOCKS proxy (for example pivoting through SSH dynamic forwarding).
metadata.author
GhostWorks

Proxychains Tunnel

Run scoped commands through proxychains4 when a task requires a SOCKS5 tunnel (for example, internal recon through a pivot host).

Input Contract

Accept input as: SOCKS_HOST:SOCKS_PORT COMMAND [MODE] [NOISE]

Mode:

  • plan: return command plan only
  • execute (default): run checks and command sequence

Noise:

  • low (default): single-host validation and bounded probing
  • medium: broader enumeration
  • high: aggressive/noisy actions (approval required)

Examples:

  • $proxychains-tunnel 127.0.0.1:8080 "nmap -Pn -p 445 192.0.2.21" execute low
  • $proxychains-tunnel 127.0.0.1:8080 "smbclient -L //192.0.2.21 -N" execute low
  • $proxychains-tunnel 127.0.0.1:1080 "crackmapexec smb 192.0.2.0/24 -u '' -p ''" plan medium

Natural-language mapping example:

  • Request: Use the Socks5 tunnel on 127.0.0.1:8080 to check port 445
  • Command intent: nmap -Pn -p 445 <target>
  • Execution pattern: proxychains4 <command>

Preconditions

  1. Confirm target is in scope for the active engagement before executing commands.
  2. Confirm proxychains4 is installed.
  3. Build an isolated proxychains config for each run instead of mutating global config.
  4. Validate local proxy listener before running target command.

Execution Workflow

  1. Parse and validate:
  • split SOCKS_HOST:SOCKS_PORT,
  • parse target command and identify likely noise profile.
  1. Create temporary config:
bash
cat > /tmp/proxychains-codex.conf <<'EOF'
strict_chain
proxy_dns
tcp_read_time_out 15000
tcp_connect_time_out 8000
[ProxyList]
socks5 127.0.0.1 8080
EOF

Replace the socks5 endpoint with provided SOCKS_HOST:SOCKS_PORT.

  1. Readiness checks:
  • nc -zv <SOCKS_HOST> <SOCKS_PORT>
  • optional egress check:
    • direct: curl -4 -s https://icanhazip.com
    • proxied: proxychains4 -q -f /tmp/proxychains-codex.conf curl -4 -s https://icanhazip.com
  • fail fast if tunnel is down.
  1. Execute proxied command:
bash
proxychains4 -q -f /tmp/proxychains-codex.conf <COMMAND>

For the port-445 example:

bash
proxychains4 -q -f /tmp/proxychains-codex.conf nmap -Pn -p 445 192.0.2.21
  1. Cleanup:
  • remove temp config: rm -f /tmp/proxychains-codex.conf

OPSEC Gate

Require explicit operator confirmation before OPSEC-dangerous actions, including:

  • subnet-wide scans through the tunnel,
  • aggressive timing or full-port scans,
  • brute force or spraying via proxied services,
  • exploit execution through the tunnel.

Before requesting confirmation, provide:

  • exact command,
  • objective,
  • expected impact,
  • assumptions/prerequisites,
  • telemetry and detection surfaces (host/network/identity/EDR-SIEM).

Reporting Requirements

For each tunneled validation, include:

  • SOCKS endpoint and config mode used (strict_chain, proxy_dns),
  • exact command executed (with proxychains4 wrapper),
  • readiness-check output and command output,
  • timestamp (UTC ISO 8601),
  • confirmed result vs inference,
  • remediation or next validation step.

© SpecterOps, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 3 other files (assets) in plugins/ops-infrastructure/skills/proxychains-tunnel of SpecterOps/skills.

  • SKILL.md
  • agents/openai.yaml
  • assets/icon.png
  • assets/icon.svg

Open the folder on GitHubat commit e655f93

Compare with similar skills

Proxychains Tunnel next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Proxychains Tunnel compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Proxychains Tunnel this skillSpecterOps/skills702—~826Automated safety check: PassApache-2.0
Proxychains Network Fallback2025Emma/vibe-coding-cn23k1 repos~1.1kAutomated safety check: NotesMIT
OmniRoute Tunnel CLIdiegosouzapw/OmniRoute74k—~339Automated safety check: PassMIT
OmniRoute Tunnelsdiegosouzapw/OmniRoute74k—~209Automated safety check: PassMIT
Performing DNS Tunneling Detectionmukul975/Anthropic-Cybersecurity-Skills34k—~636Automated safety check: PassApache-2.0
Hunting For DNS Tunneling With Zeekmukul975/Anthropic-Cybersecurity-Skills34k—~1.7kAutomated safety check: PassApache-2.0

Similar skills

  • Proxychains Network Fallback

    2025Emma/vibe-coding-cn

    Retries failed network commands through proxychains4 and a local proxy when it sees timeouts, DNS failures or blocked access.

    23k GitHub starsUsed in 1 repo~1.1k tokens
    DevOps & CloudAuto-check: notes
  • OmniRoute Tunnel CLI

    diegosouzapw/OmniRoute

    Starts, stops, and inspects ngrok, Cloudflare, or custom tunnel connections from the command line, including auth and reachability.

    74k GitHub stars~339 tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • OmniRoute Tunnels

    diegosouzapw/OmniRoute

    Create and manage secure tunnels (ngrok, Cloudflare Tunnel, custom) to expose OmniRoute to the internet or share access with remote agents and CI pipelines.

    74k GitHub stars~209 tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Performing DNS Tunneling Detection

    mukul975/Anthropic-Cybersecurity-Skills

    Detects DNS tunneling by computing Shannon entropy of DNS query names, analyzing query length distributions, inspecting TXT record payloads, and identifying high subdomain cardinality.

    34k GitHub stars~636 tokensUpdated 1 mo ago
    DevOps & CloudAuto-check passed
  • Hunting For DNS Tunneling With Zeek

    mukul975/Anthropic-Cybersecurity-Skills

    Detects DNS tunneling and covert-channel data exfiltration by analyzing Zeek dns.log for high-entropy subdomain queries, excessive query volume, abnormally long query lengths, and unusual DNS record…

    34k GitHub stars~1.7k tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Cloudflare Tunnel

    xiaoyuboi/cloudflare-tunnel-skill

    A skill your agent uses when a user wants to expose a local HTTP/HTTPS service to the public internet with Cloudflare Tunnel.

    254 GitHub stars~1.4k tokensUpdated 3 mo ago
    Auto-check passed

More from SpecterOps/skills

All 38 skills in this repo
  • Codex Activity Report

    SpecterOps/skills

    Generate a normalized UTC timeline and evidence-based narrative from Codex activity artifacts.

    702 GitHub stars~805 tokensUpdated 14 days ago
    Auto-check passed
  • Com Proxy Triage

    SpecterOps/skills

    A skill your agent uses when the user wants to triage Windows COM proxy/hijack candidates by capturing HKCU\Software\Classes\CLSID\{...}\InProcServer32 NAME NOT FOUND lookups for a process, mapping…

    702 GitHub stars~1.5k tokensUpdated 14 days ago
    Auto-check passed
  • Cwe Code Review

    SpecterOps/skills

    Perform CWE-grounded security code reviews and precise weakness mapping using a locally derived MITRE CWE corpus, relationship graphs, mapping notes, detection methods, mitigations, and schema…

    702 GitHub stars~2.4k tokensUpdated 14 days ago
    Auto-check passed
  • Ghostwriter Oplog

    SpecterOps/skills

    A skill your agent uses for Ghostwriter operation log entries from Codex, including config guidance, quick notes, evidence-backed entries, and guided oplog capture through the Ghostwriter MCP tools.

    702 GitHub stars~665 tokensUpdated 14 days ago
    Auto-check passed
  • Nmap Parse

    SpecterOps/skills

    Parse nmap scan output and generate actionable recon notes. An agent skill from SpecterOps/skills.

    702 GitHub stars~738 tokensUpdated 14 days ago
    Auto-check passed
  • Osint Recon

    SpecterOps/skills

    Perform OSINT and external reconnaissance for approved targets.

    702 GitHub stars~813 tokensUpdated 14 days ago
    Auto-check passed

Questions about Proxychains Tunnel

What does Proxychains Tunnel do?

Run in-scope network commands through a SOCKS5 tunnel with proxychains4, including tunnel readiness checks and evidence capture. Proxychains Tunnel is an agent skill from SpecterOps/skills. Run in-scope network commands through a SOCKS5 tunnel with proxychains4, including tunnel readiness checks and evidence capture.

When should I use Proxychains Tunnel?

Proxychains Tunnel fits situations like: traffic must traverse a local SOCKS proxy (for example pivoting through SSH dynamic forwarding).

How do I install Proxychains Tunnel in Claude Code?

Run `npx skills add SpecterOps/skills --skill proxychains-tunnel -a claude-code`. Or copy the skill folder (plugins/ops-infrastructure/skills/proxychains-tunnel in SpecterOps/skills) into .claude/skills/proxychains-tunnel in your project. Claude Code loads it when a task matches its description.

How do I install Proxychains Tunnel in Codex?

Run `npx skills add SpecterOps/skills --skill proxychains-tunnel -a codex`. Or copy the skill folder (plugins/ops-infrastructure/skills/proxychains-tunnel in SpecterOps/skills) into .agents/skills/proxychains-tunnel in your project. Codex loads it when a task matches its description.

Can I use Proxychains Tunnel in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add SpecterOps/skills --skill proxychains-tunnel -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/proxychains-tunnel, .gemini/skills/proxychains-tunnel, .github/skills/proxychains-tunnel and .opencode/skills/proxychains-tunnel in your project.

What does Proxychains Tunnel need to run?

Going by SKILL.md and its folder, Proxychains Tunnel needs the command-line tools its instructions call (curl).

Does Proxychains Tunnel access the network?

SKILL.md names 1 domain. In commands or code: icanhazip.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Proxychains Tunnel safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Proxychains Tunnel use?

Proxychains Tunnel is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Proxychains Tunnel use?

About 826 tokens (SKILL.md is roughly 3.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Proxychains Tunnel?

Skills that share tags, products or a category with Proxychains Tunnel: Proxychains Network Fallback (2025Emma/vibe-coding-cn, 23k stars), OmniRoute Tunnel CLI (diegosouzapw/OmniRoute, 74k stars), OmniRoute Tunnels (diegosouzapw/OmniRoute, 74k stars) and Performing DNS Tunneling Detection (mukul975/Anthropic-Cybersecurity-Skills, 34k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Proxychains Tunnel?

SpecterOps (a GitHub organization) maintains it in SpecterOps/skills, which has 702 GitHub stars. The repository holds 38 skills in this directory. The repository was last updated on September 23, 2026.

Source: SpecterOps/skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.