Rifteo avatar

Rifteo

Official

@rifteo

0Followers
|
6Public Repos
|
34Published Skills

Offers specialized offensive security testing, vulnerability assessment, and compliance reporting capabilities for enterprise penetration testing and audit operations.

Skills Distribution
DomainCybersecurit...Vulnerability Rese.. (40%)Penetration Testing (30%)Compliance & Risk .. (30%)

Agent Skills by Rifteo

Showing 34 vetted skills indexed across 1 GitHub repositories.

RifteoRifteo
30

compliance-gap-analyzer

Categorize and prioritize compliance gaps against ISO frameworks from audit findings.

Official
Advanced
RifteoRifteo
30

check-exploit

Searches exploit databases and returns a triage table of findings for a given service, version, or CVE.

Official
Advanced
RifteoRifteo
30

less-aggressive-attack

Generate non-destructive Active Directory pentesting plans with Python.

Official
Advanced
RifteoRifteo
30

js-analyzer

Analyze JavaScript files to uncover security vulnerabilities in web applications.

Official
Advanced
RifteoRifteo
30

redmind

Instill offensive security mindsets in AI agents for vulnerability and attack surface mapping.

Official
Advanced
RifteoRifteo
30

xxe-phantom

Detect and exploit XML External Entity vulnerabilities in web applications.

Official
Advanced
RifteoRifteo
30

jwt-cracker

Automate JWT token testing and cracking to uncover vulnerabilities.

Official
Advanced
RifteoRifteo
30

less-noise-attack

Execute low-noise offensive security operations with passive reconnaissance and bounded enumeration.

Official
Advanced
RifteoRifteo
30

finding-writer

Convert unstructured pentest notes into formal audit findings.

Official
Intermediate
RifteoRifteo
30

nuclei-template-writer

Generate Nuclei YAML templates from HTTP request/response pairs or vulnerability descriptions.

Official
Advanced
RifteoRifteo
30

idor-hunter

Detect IDOR vulnerabilities in web applications and APIs with multi-account testing.

Official
Advanced
RifteoRifteo
30

clickjacking-hunter

Detect and bypass clickjacking vulnerabilities by analyzing HTTP headers and generating PoC HTML pages.

Official
Advanced
RifteoRifteo
30

hpp-hunter

Automate HTTP Parameter Pollution and WAF bypass vulnerability testing.

Official
Advanced
RifteoRifteo
30

xss-hunter

Discover and exploit Cross-Site Scripting vulnerabilities with structured testing and CSP bypass strategies.

Official
Advanced
RifteoRifteo
30

engagement-handoff

Generate a handoff document detailing security engagement findings, coverage, and next steps.

Official
Advanced
RifteoRifteo
30

scope-grill

Build a structured penetration testing engagement brief with scope and rules of engagement.

Official
Advanced
RifteoRifteo
30

skill-benchmark

Evaluate SKILL.md files against quality and agent compatibility rubrics.

Official
Advanced
RifteoRifteo
30

ssti-hunter

Detect, fingerprint, and exploit Server-Side Template Injection vulnerabilities in web applications.

Official
Advanced
RifteoRifteo
30

deadangle

Validate and label security findings as confirmed, inferred, or assumed.

Official
Advanced
RifteoRifteo
30

ssrf-hunter

Detect Server-Side Request Forgery vulnerabilities in web applications.

Official
Advanced
RifteoRifteo
30

find-skills

Discover and install Rifteo agent skills for security and audit tasks.

Official
Basic
RifteoRifteo
30

bugbounty-reporter

Create and submit bug bounty reports with structured sections.

Official
Advanced
RifteoRifteo
30

economist-attack

Prioritize offensive security testing by analyzing effort versus potential impact.

Official
Advanced
RifteoRifteo
30

cvss-scorer

Compute CVSS v3.1 scores and vectors from vulnerability descriptions.

Official
Advanced

Frequently Asked Questions About Rifteo

FAQPage Schema
What specific security tasks can Rifteo perform?

Rifteo enables vulnerability detection for IDOR, SSTI, SSRF, and XSS, alongside CVSS scoring, compliance gap analysis against ISO frameworks, and the generation of structured penetration testing reports and bug bounty submissions.

Who is the target persona for these security capabilities?

These capabilities are designed for penetration testers, security researchers, and compliance auditors who require structured methodologies for vulnerability validation, risk assessment, and formal documentation of security engagement findings.

What are the prerequisites for running these security modules?

Users require a compatible environment capable of executing security-focused logic, access to target web application endpoints for testing, and valid credentials for environments where authenticated vulnerability scanning or Active Directory reconnaissance is performed.