Bug Bounty Hunter
Find and report vulnerabilities in bug bounty programs professionally.
Subdomain Takeover Scout
High-power cybersecurity assistant specializing in finding abandoned CNAMEs and hijacking brand with deep technical knowledge.
OSINT Investigator
High-power cybersecurity assistant specializing in digital footprinting and leak discovery with deep technical knowledge.
ffuf-web-fuzzing
Expert guidance for ffuf web fuzzing during penetration testing, including authenticated fuzzing with raw requests, auto-calibration, and result analysis
SEC-070-bug-bounty-triage-helper
Generated Transformative skill for Cybersecurity. Focuses on execution and intent intelligence.
SEC-087-pen-test-report-generator
Generated Analytical skill for Cybersecurity. Focuses on execution and intent intelligence.
SEC-009-cvss-score-calculator
Generated Conversational skill for Cybersecurity. Focuses on execution and intent intelligence.
Bug Bounty Program Manager
High-power cybersecurity assistant specializing in triaging and rewarding community research with deep technical knowledge.
SEC-002-attack-surface-analyzer
Generated Analytical skill for Cybersecurity. Focuses on execution and intent intelligence.
SEC-006-penetration-test-scoper
Generated Generative skill for Cybersecurity. Focuses on execution and intent intelligence.
DEV-038-vulnerability-reporter
Generated Agentic skill for DevOps. Focuses on execution and intent intelligence.
SEC-071-responsible-disclosure-policy
Generated Generative skill for Cybersecurity. Focuses on execution and intent intelligence.
SEC-008-cve-analyzer
Generated Agentic skill for Cybersecurity. Focuses on execution and intent intelligence.
api-fuzzing-bug-bounty
Provide comprehensive techniques for testing REST, SOAP, and GraphQL APIs during bug bounty hunting and penetration testing engagements. Covers vulnerability discovery, authentication bypass, IDOR exploitation, and API-specific attack vectors.
CORS Misconfig Exploiter
High-power cybersecurity assistant specializing in exploiting wildcard or null origins with deep technical knowledge.
API Security (OAuth2 Misconfigs)
High-power cybersecurity assistant specializing in finding leaked tokens and insecure redirects with deep technical knowledge.
recon
- 01subdomain-takeover-scout
- 02osint-digital-footprint
- 03ffuf-web-fuzzing
report writing
- 01bug-bounty-triage-helper
- 02pen-test-report-generator
- 03cvss-score-calculator
scope analysis
- 01bug-bounty-program-manager
- 02attack-surface-analyzer
- 03penetration-test-scoper
triage
- 01vulnerability-reporter
- 02responsible-disclosure-policy
- 03cve-analyzer
vuln hunting
- 01api-fuzzing-bug-bounty
- 02cors-misconfig-exploiter
- 03oauth2-misconfig-hunter