Topic · Security
Best bug bounty skills, page 2
Bug bounty skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 49 | Flags API endpoints whose data or actions look like they should need a login but currently don't, as part of authorized security testing. | uphiago/ | 1.3k | — | ~2k | Automated safety check: Pass | MIT | 1 mo ago |
| 50 | A skill your agent uses when starting or restructuring an authorized external web and API assessment. | uphiago/ | 1.3k | — | ~1.9k | Automated safety check: Pass | MIT | 1 mo ago |
| 51 | Mobile (Android + iOS) application penetration testing methodology. | SnailSploit/ | 7.3k | — | ~3.5k | Automated safety check: Pass | MIT | 18 days ago |
| 52 | Bugcrowd-specific reporting tactics complementing report-writing | sickn33/ | 47k | 1 repo | ~5.9k | Automated safety check: Pass | MIT | today |
| 53 | 53.Recon Perform structured reconnaissance and attack surface enumeration for authorized penetration tests, CTF challenges, and bug bounty programs. | briiirussell/ | 413 | — | ~1.1k | Automated safety check: Notes | MIT | 4 mo ago |
| 54 | Attack cameras via RTSP, ONVIF, Axis config when 554 open. An agent skill from uphiago/recon-skills. | uphiago/ | 1.3k | — | ~2.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 55 | Map subdomains via crt.sh and subfinder at recon kickoff. An agent skill from uphiago/recon-skills. | uphiago/ | 1.3k | — | ~3.3k | Automated safety check: Pass | MIT | 1 mo ago |
| 56 | 56.Visual Recon Screenshot all live hosts for rapid visual triage and technology fingerprinting. | uphiago/ | 1.3k | — | ~1.5k | Automated safety check: Pass | MIT | 1 mo ago |
| 57 | 57.Bug Bounty Complete bug bounty workflow | sickn33/ | 47k | 1 repo | ~5k | Automated safety check: Notes | MIT | today |
| 58 | Domain assessment and web application mapping - subdomain discovery, port scanning, endpoint enumeration, API discovery, and attack surface analysis. | transilienceai/ | 562 | — | ~1.4k | Automated safety check: Pass | MIT | 2 mo ago |
| 59 | Hunting skill for auth bypass vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~8.2k | Automated safety check: Pass | MIT | yesterday |
| 60 | Hunting skill for cache poison vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~5.7k | Automated safety check: Pass | MIT | yesterday |
| 61 | 61.Hunt Sqli Hunting skill for sqli vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~5.5k | Automated safety check: Pass | MIT | yesterday |
| 62 | Probe a target for accidentally-public admin / debug / introspection endpoints — Spring Boot Actuator, Apache server-status, Prometheus metrics, GraphQL playground, Swagger UI, phpMyAdmin… | jeremylongshore/ | 2.8k | — | ~2k | Automated safety check: Pass | MIT | today |
| 63 | Triage ASM/recon output for ownership before testing — separate the target's real assets from namespace-collision noise. | elementalsouls/ | 4.8k | — | ~1.9k | Automated safety check: Notes | MIT | yesterday |
| 64 | Hunting skill for business logic vulnerabilities. An agent skill from majiayu000/claude-skill-registry. | majiayu000/ | 666 | 2 repos | ~4.4k | Automated safety check: Pass | MIT | today |
| 65 | Draft and file a HackerOne report in the browser, with a proof-of-concept package and demo-video notes. | forefy/ | 152 | — | ~2.1k | Automated safety check: Pass | MIT | 3 days ago |
| 66 | 66.Pre Bounty Map a bug-bounty scope and rank targets by payout, crowding, and freshness. | forefy/ | 152 | — | ~2.1k | Automated safety check: Pass | MIT | 3 days ago |
| 67 | Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi — report templates, human tone guidelines, impact-first writing, CVSS 3.1 scoring, title formula, impact statement formula, severity… | elementalsouls/ | 4.8k | — | ~5.2k | Automated safety check: Pass | MIT | yesterday |
| 68 | Audit all open HackerOne-sourced VULN Jira tickets and their linked engineering child items to identify what needs action. | bitwarden/ | 154 | — | ~3.4k | Automated safety check: Pass | Unknown | today |
| 69 | Write security findings and assessment reports — severity scoring with CVSS and business impact, reproducible proof of concept, remediation guidance, executive summaries, and coordinated disclosure. | trilwu/ | 156 | — | ~3.4k | Automated safety check: Pass | MIT | 1 mo ago |
| 70 | 70.Hack Entry P0 primary router and operating doctrine for HackSkills. | yaklang/ | 2.4k | — | ~4.7k | Automated safety check: Notes | MIT | 25 days ago |
| 71 | 71.Web Recon Enumerate web technologies, headers, endpoints, and metadata from a target | NeoTheCapt/ | 142 | — | ~770 | Automated safety check: Pass | No licence | 2 mo ago |
| 72 | Reconnaissance and methodology playbook. An agent skill from langbyyi/CyberStrikeAI-SRC. | langbyyi/ | 134 | 1 repo | ~3.1k | Automated safety check: Warn | Apache-2.0 | yesterday |
| 73 | 73.Cyberful Operate Cyberful as an authorized application-security control room. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0-only | 1 mo ago |
| 74 | A skill your agent uses whenever the user wants to find, shortlist, vet, or enrich US cybersecurity firms — pen-testing/red team, security audits, vCISO, SOC 2 readiness, incident response, managed… | jeremylongshore/ | 2.8k | — | ~3.7k | Automated safety check: Notes | MIT | today |
| 75 | Plans and runs authorized reconnaissance to enumerate a target's external attack surface (DNS, subdomains, ports, web tech) and produces a prioritized report. | criptogus/ | 288 | — | ~1.2k | Automated safety check: Pass | CC-BY-SA-4.0 | 28 days ago |
Explore related skills
More topics in Security
- Security review636
- Web application vulnerabilities467
- Vulnerability scanning304
- Static analysis and SAST283
- Security operations246
- Supply chain security233
- Threat modeling228
- Penetration testing182
- Cryptography159
- Prompt injection and agent security157
- Red teaming and adversary simulation148
- Reverse engineering and malware130
- OSINT119
- Secure coding113
- Cloud security95
- Digital forensics88
- Smart contract auditing79
- Fuzzing76
- Network security66
- Capture the flag45
- Mobile application security42
- Access reviews and audit trails38