一键导入
skills
This is a SKILL.md template to identify side skills, workflows and methodologies that can be extracted from conversations guided by the main skill.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
This is a SKILL.md template to identify side skills, workflows and methodologies that can be extracted from conversations guided by the main skill.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
Use when performing black-box web or API security testing through Burp Suite MCP. Maps attack surface from live traffic, validates exploitability across OWASP Top 10 (plus LLM, Zero Trust, and reliability risks when present), and produces evidence-first reports without patch code. Initializes .github/memory.md when missing.
Use when reviewing a repository for exploitability-first security risks across OWASP Top 10, OWASP LLM Top 10, Zero Trust, and reliability-with-security impact. Initializes .github/memory.md when missing. Do not use for direct patch generation.
基于 SOC 职业分类
| name | skills |
| description | This is a SKILL.md template to identify side skills, workflows and methodologies that can be extracted from conversations guided by the main skill. |
This SKILL file stores the side skills, workflows and methodologies that can be extracted from conversations guided by the main skill. It serves as a reference for identifying and developing additional skills that complement the main skill's objectives.
This skill focuses on learning from HackerOne reports using MCP to automate agent learning from valid bug bounty findings. It involves acccessing, parsing, and analyzing report content to extract key insights and remediation steps, which are then memorized for continuous improvement of agent skills in vulnerability detection and report generation.