一键导入
planning
Pre-execution planning and priority-scored task list before running tools.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Pre-execution planning and priority-scored task list before running tools.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
End-to-end bug bounty phase flow for BearStrike AI.
Controlled exploitation, false-positive elimination, and PoC writing standards.
Tool selection policy for BearStrike based on target type, scan risk, and signal strength.
Recon workflow for domain, DNS, host, and web surface mapping.
Reporting standards for single bug, full pentest, and recon-only outputs.
Practical bug bounty methodology notes derived from recent public security reports and training resources.
| name | planning |
| description | Pre-execution planning and priority-scored task list before running tools. |
Create a clear, low-noise attack plan before any active testing.
Score each task by impact x confidence x feasibility (1-5 each).
Produce TODO list with:
Never run exploitation until at least one strong vulnerability signal is confirmed in recon/enum.
Prioritize bug classes that repeatedly show high bounty impact:
Before heavy scans, build a shortlist of high-value endpoint clusters:
For each cluster, define: