HaiTang
Community@jinyimeng01 · SuZhou
Code make world better
Agent Skills by HaiTang
Showing 25 vetted skills indexed across 1 GitHub repositories.
mastermind-workflow
Orchestrate phased bug bounty workflows with agent delegation and triage validation.
api-fuzz-agent
Analyze API endpoints and parameters through structured fuzzing workflows to discover security weaknesses.
exploit-agent
Validate suspected web vulnerabilities and generate structured exploit reports.
bypass-agent
Identify and validate access control bypasses for protected web endpoints.
ai-security-agent
Test AI and LLM applications for adversarial security weaknesses.
crypto-attack-agent
Analyze encrypted application data to identify cryptographic security weaknesses.
report-agent
Generate HackerOne-format vulnerability reports from validated security findings.
recon-agent
Extract API endpoints and metadata from web application JavaScript assets.
api-fuzz
Select semantic fuzzing payloads for API parameters based on attack patterns.
cache-poisoning
Detect and validate web cache poisoning vulnerabilities from unkeyed request components.
auth-bypass
Identify authentication bypass weaknesses in protected web application endpoints.
prototype-pollution
Detects prototype pollution vulnerabilities in Node.js, Python, and browser JavaScript.
graphql-test
Analyze GraphQL APIs for security weaknesses and authorization vulnerabilities.
passive-recon
Collect subdomains, certificate records, and historical URLs from public sources.
vuln-classes
Classifies web application vulnerabilities using detection signals and exploitation concepts.
source-leak
Detect exposed source code and credentials via targeted repository searches.
oauth-sso
Analyze OAuth 2.0 and SSO authentication implementations for security weaknesses during penetration tests.
websocket-test
Identify and validate WebSocket security weaknesses in real-time application channels.
ai-security
Evaluate LLM applications for prompt injection, jailbreaks, and unsafe tool usage vulnerabilities.
jwt-attack
Analyzes JWT authentication weaknesses including token validation and authorization handling patterns.
crypto-attack
Analyze encrypted application data to identify cryptographic implementations and reverse engineering opportunities.
http-smuggling
Detect HTTP request smuggling vulnerabilities via CL.TE, TE.CL, and TE.TE testing.
race-condition
Detect race conditions and TOCTOU vulnerabilities in web application workflows.
data-linkage
Map API response values to request parameters for endpoint linkage testing.