Forensify
alexgreensh/repo-forensics
Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics.
Run a sustained, multi-agent vulnerability-discovery campaign against a target — split its attack surface into slices, hunt each slice with a builder agent, and have a separate critic with fresh…
$ npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install trilwu/secskills orchestrating-vulnerability-research --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/trilwu/secskills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/secskills-core/skills/orchestrating-vulnerability-research .claude/skills/orchestrating-vulnerability-research && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "orchestrating-vulnerability-research" agent skill from https://github.com/trilwu/secskills/tree/main/secskills-core/skills/orchestrating-vulnerability-research into .claude/skills/orchestrating-vulnerability-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "orchestrating-vulnerability-research", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/trilwu/secskills/tree/main/secskills-core/skills/orchestrating-vulnerability-researchType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install trilwu/secskills orchestrating-vulnerability-research --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/trilwu/secskills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/secskills-core/skills/orchestrating-vulnerability-research .agents/skills/orchestrating-vulnerability-research && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "orchestrating-vulnerability-research" agent skill from https://github.com/trilwu/secskills/tree/main/secskills-core/skills/orchestrating-vulnerability-research into .agents/skills/orchestrating-vulnerability-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "orchestrating-vulnerability-research", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install trilwu/secskills orchestrating-vulnerability-research --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/trilwu/secskills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/secskills-core/skills/orchestrating-vulnerability-research .cursor/skills/orchestrating-vulnerability-research && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "orchestrating-vulnerability-research" agent skill from https://github.com/trilwu/secskills/tree/main/secskills-core/skills/orchestrating-vulnerability-research into .cursor/skills/orchestrating-vulnerability-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "orchestrating-vulnerability-research", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/trilwu/secskills.git --path secskills-core/skills/orchestrating-vulnerability-research--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install trilwu/secskills orchestrating-vulnerability-research --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/trilwu/secskills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/secskills-core/skills/orchestrating-vulnerability-research .gemini/skills/orchestrating-vulnerability-research && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "orchestrating-vulnerability-research" agent skill from https://github.com/trilwu/secskills/tree/main/secskills-core/skills/orchestrating-vulnerability-research into .gemini/skills/orchestrating-vulnerability-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "orchestrating-vulnerability-research", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install trilwu/secskills orchestrating-vulnerability-researchInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/trilwu/secskills.git skills-src && mkdir -p .github/skills && cp -r skills-src/secskills-core/skills/orchestrating-vulnerability-research .github/skills/orchestrating-vulnerability-research && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "orchestrating-vulnerability-research" agent skill from https://github.com/trilwu/secskills/tree/main/secskills-core/skills/orchestrating-vulnerability-research into .github/skills/orchestrating-vulnerability-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "orchestrating-vulnerability-research", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install trilwu/secskills orchestrating-vulnerability-research --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/trilwu/secskills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/secskills-core/skills/orchestrating-vulnerability-research .opencode/skills/orchestrating-vulnerability-research && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "orchestrating-vulnerability-research" agent skill from https://github.com/trilwu/secskills/tree/main/secskills-core/skills/orchestrating-vulnerability-research into .opencode/skills/orchestrating-vulnerability-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "orchestrating-vulnerability-research", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
orchestrating-vulnerability-researchRun a sustained, multi-agent vulnerability-discovery campaign against a target — split its attack surface into slices, hunt each slice with a builder agent, and have a separate critic with fresh…
Orchestrating Vulnerability Research is an agent skill from trilwu/secskills. Run a sustained, multi-agent vulnerability-discovery campaign against a target — split its attack surface into slices, hunt each slice with a builder agent, and have a separate critic with fresh context adversarially refute every candidate against the real artifact (a reproduced crash, a working request, a proven bypass) before it counts as a finding. Use when tasked to find previously-unknown bugs across a whole codebase, a binary, or a named live target; when you want to fan out many agents and loop until…
Its SKILL.md is about 3.5k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Threat modeling. The repository describes itself as: Transform Claude Code into your personal security engineer. The licence is MIT.
5 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit ca53957. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md.
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Orchestrating Vulnerability Research loads about 3.5k tokens when it runs. Until then it costs about 223 tokens; SKILL.md has 1,936 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from trilwu/secskills at commit ca53957, republished under its MIT licence (© trilwu). 1,936 words, ~3,450 tokens.
.claude/skills/orchestrating-vulnerability-research/SKILL.md (or your agent's skills folder).One agent hunting one target rationalizes. It finds a "probably exploitable" path, writes a confident paragraph, and grades its own paragraph as a finding. The paragraph is not the bug. This skill is the harness that stops that: give the hunt a bar it cannot talk its way around, split the target so pieces are worked in parallel, and never let the agent that built a candidate be the one that decides it is real.
It is a loop, not a pass. You run it until findings are proven or the target is genuinely exhausted — not until the first plausible writeup appears.
auditing-code-for-vulnerabilities
directly; this skill dispatches it, it does not replace itanalyzing-binariestesting-web-applications or testing-apisreporting-security-findingsmaintaining-engagement-state; this skill produces that record, it does not
define its formathunting-web-backdoorsFive roles, run as a loop over each slice of the target. The lead never hunts and never grades; it decomposes, dispatches, and reconciles.
decompose → build → critique → iterate → smooth
lead hunter critic hunter leadThe lead breaks the target into pieces that can each be hunted and judged on their own, without cross-talk. A good slice has one entry surface and a bounded reachable set. Slice by whichever axis makes pieces independent:
| Target | Slice by |
|---|---|
| Codebase | Entry point (route/handler/consumer), or bug class × component |
| Binary | Exported/reachable function cluster, parser, or IPC/RPC surface |
| Named live target | Host/service, then endpoint or protocol |
Write the slice list down before dispatching. A slice carries: what it covers, the reachable sink set, and the bar a finding here must clear (below). Slices that share state are a smell — merge them, or the critics will disagree because they saw different halves.
Dispatch one builder agent per slice with fresh context, pointed at the right
domain skill for that artifact (auditing-code-for-vulnerabilities,
analyzing-binaries, testing-web-applications). Give it the slice, the assets
to protect, and the bar — not a script of steps. Told how, it performs the
steps and reports success; told the goal and the bar, it has to actually reach
them. Each hunter returns candidates: (location, bug class, the trigger it claims, the evidence it has).
Run slices in parallel; they are independent by construction. Depth per slice beats breadth across slices — one fully triggered bug is worth twenty "suspicious" notes.
This is the rule the whole skill exists to enforce: the builder never grades its own work. Each candidate goes to a different agent with fresh context whose job is to refute it, and which inspects the real artifact — the running binary, the actual HTTP response, the executed test, the re-read source — never the hunter's summary of it.
The bar is a demonstrated trigger, and the critic asks only whether it was met:
memcpy looks unbounded."If the bar is not met, the critic names the single biggest gap between the candidate and a proven bug — the missing reachability step, the validator the hunter did not account for, the input it never actually ran. That gap is the next round's work order. A critic that says only "not proven" has failed; it must say what would prove or kill it.
Bias the critic toward refutation. A candidate that survives an agent genuinely trying to break it is worth ten a builder pronounced exploitable. For high-stakes candidates, run more than one critic with different lenses (reachability, the mitigating control, does-it-actually-run) rather than three identical ones.
The builder takes the critic's gap and closes it: builds the reachability step, writes the input that actually triggers, accounts for the validator. Then the candidate goes back to a critic. Repeat until one of three stop conditions:
reporting-security-findings.Never let a slice loop forever. The failure mode of a loop is not stopping too early — it is a builder and a lax critic passing an unproven candidate back and forth until it sounds proven.
Slices were hunted blind to each other; the lead is the only one that sees all results. After the per-slice loops settle:
reporting-security-findings.The bar is the reference standard the critic compares against — the thing the agent cannot argue with. Set it per slice before hunting, and make it a demonstration, not a description:
id, no tenant scope on the
query, here is the request that returns another tenant's row."If a slice cannot express a concrete bar, it is not decomposed enough. Split it until each piece has a demonstrable pass/fail the critic can check.
In an agentic harness (Claude Code, with subagents), the loop maps directly:
maintaining-engagement-state) — the loop can run
for a long time and must survive a restart without re-hunting cleared paths.Automated discovery tools are builders inside a slice, not a substitute for the loop. A fuzzer (AFL++, libFuzzer), a taint engine (CodeQL), or a scanner produces candidates; they still go to an independent critic and the same bar. Unverified tool output promoted straight to a finding is the exact failure this harness exists to prevent.
A discovery campaign is more dangerous than a single test, because it fans out and iterates.
reporting-security-findings.auditing-code-for-vulnerabilities — the per-slice hunter for source codeanalyzing-binaries — the per-slice hunter for compiled targetstesting-web-applications, testing-apis — the per-slice hunters black-boxreporting-security-findings — where proven findings gomaintaining-engagement-state — where the slice list, worklist, and verdicts live© trilwu, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in secskills-core/skills/orchestrating-vulnerability-research of trilwu/secskills.
Open the folder on GitHubat commit ca53957
Orchestrating Vulnerability Research next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Orchestrating Vulnerability Research this skilltrilwu/secskills | 157 | — | ~3.5k | Automated safety check: Pass | MIT | |
| Forensifyalexgreensh/repo-forensics | 188 | — | ~2.5k | Automated safety check: Notes | Custom licence | |
| MCP Gateway SecurityHack23/cia | 239 | — | ~2.4k | Automated safety check: Pass | Apache-2.0 | |
| Fla Ascend Performancefla-org/flash-linear-attention | 5.8k | — | ~6.3k | Automated safety check: Pass | MIT | |
| Create Rulecartography-cncf/cartography | 4.1k | — | ~3k | Automated safety check: Pass | Apache-2.0 | |
| Commit Security Scancodexstar69/bug-hunter | 519 | — | ~629 | Automated safety check: Pass | MIT |
alexgreensh/repo-forensics
Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics.
Hack23/cia
MCP gateway security patterns, token management, request validation, and audit logging for MCP communications
fla-org/flash-linear-attention
Guidelines for Ascend NPU kernel / Triton-Ascend backend performance work in the FLA repo.
cartography-cncf/cartography
Author a Cartography security rule (one or more Cypher Facts plus a Pydantic Finding output model) under cartography/rules/data/rules/.
codexstar69/bug-hunter
Scan code changes for security vulnerabilities using Bug Hunter-native artifacts and STRIDE context.
wshobson/agents
Match identified threats to preventive, detective and corrective controls across network, application, data, endpoint and process layers to plan remediation.
trilwu/secskills
Audit source code for exploitable vulnerabilities using threat-model-driven review, taint tracing, invariant checking, and variant analysis.
trilwu/secskills
Perform OSINT, subdomain enumeration, port scanning, web reconnaissance, email harvesting, and cloud asset discovery for initial access.
trilwu/secskills
Assess and harden LLM applications and agentic systems against prompt injection, tool misuse, excessive agency, memory poisoning, RAG data leakage, and model supply-chain risk, mapped to the OWASP…
trilwu/secskills
Reverse engineer compiled binaries, firmware, and mobile app packages using triage, static disassembly, decompilation, and dynamic instrumentation.
trilwu/secskills
Reverse engineer Go binaries by recovering function names and types from pclntab and moduledata using GoReSym, redress, and IDA/Ghidra Go plugins, and by reading Go's non-standard calling…
trilwu/secskills
Analyze iOS applications at the binary level — decrypting FairPlay-protected IPAs with frida-ios-dump or bagbak, inspecting Mach-O load commands, recovering Objective-C headers with class-dump, and…
Categories
Run a sustained, multi-agent vulnerability-discovery campaign against a target — split its attack surface into slices, hunt each slice with a builder agent, and have a separate critic with fresh…. Orchestrating Vulnerability Research is an agent skill from trilwu/secskills. Run a sustained, multi-agent vulnerability-discovery campaign against a target — split its attack surface into slices, hunt each slice with a builder agent, and have a separate critic with fresh context adversarially refute every candidate against the real artifact (a reproduced crash, a working request, a proven bypass) before it counts as a finding.
Orchestrating Vulnerability Research fits situations like: tasked to find previously-unknown bugs across a whole codebase; A named live target; you want to fan out many agents and loop until findings are proven rather than plausible; A single audit pass has stalled and you need builder/critic separation so the hunter never grades its own work.
Run `npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a claude-code`. Or copy the skill folder (secskills-core/skills/orchestrating-vulnerability-research in trilwu/secskills) into .claude/skills/orchestrating-vulnerability-research in your project. Claude Code loads it when a task matches its description.
Run `npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a codex`. Or copy the skill folder (secskills-core/skills/orchestrating-vulnerability-research in trilwu/secskills) into .agents/skills/orchestrating-vulnerability-research in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add trilwu/secskills --skill orchestrating-vulnerability-research -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/orchestrating-vulnerability-research, .gemini/skills/orchestrating-vulnerability-research, .github/skills/orchestrating-vulnerability-research and .opencode/skills/orchestrating-vulnerability-research in your project.
SKILL.md names no scripts, command-line tools or credentials: Orchestrating Vulnerability Research is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Orchestrating Vulnerability Research is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 3.5k tokens (SKILL.md is roughly 14k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Orchestrating Vulnerability Research: Forensify (alexgreensh/repo-forensics, 188 stars), MCP Gateway Security (Hack23/cia, 239 stars), Fla Ascend Performance (fla-org/flash-linear-attention, 5.8k stars) and Create Rule (cartography-cncf/cartography, 4.1k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
trilwu (a GitHub user) maintains it in trilwu/secskills, which has 157 GitHub stars. The repository holds 50 skills in this directory. The repository was last updated on September 4, 2026.
Source: trilwu/secskills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.