Agent Skillszakirkun/deep-eye › bug-bounty

bug-bounty

GitHub

用于漏洞赏金计划的安全测试技能,利用 Deep Eye 进行资产侦察与扫描,专注于高价值漏洞发现及高质量报告撰写,严格限定在目标范围内执行。

.agents/skills/bug-bounty/SKILL.md zakirkun/deep-eye

Trigger Scenarios

需要执行漏洞赏金测试 生成 Bugcrowd/HackerOne 风格报告 使用 Deep Eye 进行安全侦察

Install

npx skills add zakirkun/deep-eye --skill bug-bounty -g -y
More Options

Non-standard path

npx skills add https://github.com/zakirkun/deep-eye/tree/main/.agents/skills/bug-bounty -g -y

Use without installing

npx skills use zakirkun/deep-eye@bug-bounty

指定 Agent (Claude Code)

npx skills add zakirkun/deep-eye --skill bug-bounty -a claude-code -g -y

安装 repo 全部 skill

npx skills add zakirkun/deep-eye --all -g -y

预览 repo 内 skill

npx skills add zakirkun/deep-eye --list

SKILL.md

Frontmatter
{
    "name": "bug-bounty",
    "description": "Bug bounty workflow using Deep Eye for recon\/scan and high-signal report writing (HackerOne\/Bugcrowd). Use for bug bounty, VDP, HackerOne, Bugcrowd, bounty report, \/bug-bounty. Only in-scope program assets."
}

Deep Eye — Bug Bounty Skill

Policy first. Deep Eye accelerates surface coverage; impact + PoC win bounties.

Preconditions

  1. Program policy read (scope, OOS, rate limits, safe harbor).
  2. In-scope only — no third-party collateral.
  3. Local config; never commit API keys or session cookies.

ROI module pack

Enable in vulnerability_scanner.enabled_checks:

enabled_checks:
  - idor
  - api_bola_deep
  - jwt_deep
  - oauth_testing
  - graphql_deep
  - ssrf_cloud
  - cloud_misconfig
  - cors_csp
  - open_redirect_deep
  - stored_xss
  - sql_injection
  - xss
  - ssrf
  - mass_assignment

Optional: ai_triage.enabled, bug_bounty.enabled (Markdown under reports/bounty/).

Commands

python deep_eye.py --setup
python deep_eye.py -u https://IN_SCOPE -v --formats json,html
python deep_eye.py -u https://IN_SCOPE --scope-nl "only /api/* host target.com"
python deep_eye.py -u https://IN_SCOPE --retest-new reports/prior.json

OpenAPI: openapi.enabled: true + source.

Hunt order

  1. Authz — idor, api_bola_deep
  2. Token/auth — jwt_deep, oauth_testing, login_replay
  3. SSRF/cloud — ssrf_cloud, cloud_misconfig
  4. GraphQL — graphql_deep
  5. Stored XSS chains — stored_xss
  6. Secrets — only if actionable (secret_scanning)

Report template

## Summary
## Steps to reproduce
## PoC
## Impact
## Remediation
## Environment

Finding keys: type, severity, url, parameter, payload, evidence, remediation.

Rules

Respect rate limits; redact PII; check duplicates; show delta impact on partial dupes.

Version History

  • dc5059c Current 2026-08-20 02:49

Same Skill Collection

.agents/skills/blue-team/SKILL.md
.agents/skills/ctf/SKILL.md
.agents/skills/pentest/SKILL.md
.agents/skills/red-team/SKILL.md
.agents/skills/security-ops/SKILL.md

Metadata

Files
0
Version
dc5059c
Hash
f6deb795
Indexed
2026-08-20 02:49

inicio - Wiki
Copyright © 2011-2026 iteam. Current version is 2.155.2. UTC+08:00, 2026-08-22 03:52
浙ICP备14020137号-1 $mapa de visitantes$