Skip to main content

fofamap

Use FofaMap to validate FOFA syntax, search and profile internet assets, aggregate statistics, export bounded results, and manage authorized scan plans through its MCP tools. Trigger for FOFA queries, external attack-surface discovery, host intelligence, favicon searches, asset inventory, exposure analysis, or FOFA result exports.

설치로 이동

소스 정보

저장소
asaotomo/FofaMap
최근 소스 활동
2026년 8월 15일 23:27
감지된 SKILL.md 언어
영어
스타
730
포크
97

설치 방법

기본적으로 소스를 먼저 확인하는 Prompt가 선택됩니다. 직접 명령으로 전환하거나 로컬 사본을 다운로드할 수도 있습니다.

소스 파일 검토

설치 여부를 결정하기 전에 SKILL.md와 SkillsMP에 표시된 보조 파일을 읽어 보세요.

파일 탐색기
3 개 파일

SKILL.md 표시 중

SKILL.md
소스 지침 · 읽기 전용 미리보기
name
fofamap
description
Use FofaMap to validate FOFA syntax, search and profile internet assets, aggregate statistics, export bounded results, and manage authorized scan plans through its MCP tools. Trigger for FOFA queries, external attack-surface discovery, host intelligence, favicon searches, asset inventory, exposure analysis, or FOFA result exports.
# FofaMap Use the FofaMap MCP server for evidence-based FOFA asset research. Prefer the MCP tools over shell commands when they are available. ## Workflow 1. Clarify the target, ownership or authorization boundary, desired fields, time range, and result limit when these materially affect the request. Call `fofa_account` and `fofa_fields` when membership-dependent capabilities matter; these tools work even in hosts that do not expose MCP Resources. 2. If the user names a product, OA, VPN, middleware, database, camera, CMS, or ops panel, call `fofa_rules` **before** `fofa_search`. Use the returned `query` values verbatim. Do not invent `app=` names. An empty keyword lists the bundled catalog (no FOFA quota). 3. Call `fofa_validate_query` before spending FOFA quota. Repair invalid syntax before searching. 4. Call `fofa_search` for the first bounded page. Use the smallest useful field set and size. 5. Use `fofa_search_next` only when more records are needed, passing its opaque cursor unchanged. 6. Use `fofa_host_profile` only when `fofa_account` shows Host aggregation (not registered users). Use `fofa_stats` only when the account has the stats API (professional / business / enterprise). Personal, ordinary, and education accounts should use `fofa_search` instead of stats. 7. Use `fofa_export` for large or reusable result sets, then poll `fofa_job_status`. Return the artifact path instead of pasting large tables. 8. Use `fofa_icon_search` for an explicit public website favicon. Prefer `fofa_agent_run` for open-ended Chinese/English discovery intents; for organization website discovery, return its structured `website_candidates` first, preserving `corroborated`, `observed`, and `candidate` status instead of flattening them into confirmed ownership. 9. State that FOFA observations and even cross-consistent title/certificate/ICP clues indicate exposed or corroborated candidates, not legal ownership or vulnerability, unless separately verified. ## Safety - Treat searches, profiles, and statistics as passive intelligence collection, but still respect the user's scope and applicable rules. - Never call `nuclei_plan` unless the user explicitly asks for active scanning and identifies an authorized scope. - Review every target, template, and severity in the plan before asking for approval. - Call `nuclei_execute` only after explicit approval for that exact plan. Never broaden or reuse an approval token. - Do not interpret authentication, quota, timeout, or provider errors as an empty FOFA result. - Never place `FOFA_API_KEY`, provider keys, bearer tokens, or approval tokens in reports or committed files. ## Host Fallback If the host cannot expose MCP tools, use FofaMap's machine-readable CLI only for passive operations, for example `fofamap -q 'domain="example.com"' --output-format json --no-save` or `fofamap --rule 致远OA --output-format json --no-save`. Do not use the CLI to bypass host approval controls. Read [references/tool-catalog.md](references/tool-catalog.md) when exact tool selection, pagination, resources, or host capability differences matter.
GitHub에서 보기