一键导入
reporting
Reporting standards for single bug, full pentest, and recon-only outputs.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Reporting standards for single bug, full pentest, and recon-only outputs.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
End-to-end bug bounty phase flow for BearStrike AI.
Controlled exploitation, false-positive elimination, and PoC writing standards.
Tool selection policy for BearStrike based on target type, scan risk, and signal strength.
Pre-execution planning and priority-scored task list before running tools.
Recon workflow for domain, DNS, host, and web surface mapping.
Practical bug bounty methodology notes derived from recent public security reports and training resources.
| name | reporting |
| description | Reporting standards for single bug, full pentest, and recon-only outputs. |
All reports must be saved under:
reports/output/<target_slug>//run_/
Artifacts:
Use when one confirmed high-quality issue exists.
Required sections:
Use for multi-phase assessments.
Required sections:
Use when no exploitable bug is confirmed but strong intel exists.
Required sections:
Before finalizing, ensure:
If exploit details are included, provide:
Each finding should include:
When closing as false positive, document: