Gabson0xGabson0xCommunityยท1 Agent Skills Included

bountyforge

Parallel security audits and submission-ready bug bounty reports

Runs eight parallel security checks against web apps, APIs, and smart contracts on EVM, Solana, Move, and TRON. Finds real vulnerabilities like IDOR, SSRF, auth bypass, and race conditions, then scores each with CVSS 3.1. Removes false positives through strict validation gates and deduplication. Produces submission-ready reports for HackerOne, Bugcrowd, Intigriti, and Immunefi.
npx skills add Gabson0x/bountyforge --all -g -y

All Skills in This Repository (1)

Pure Emerald Level Indicators

Frequently Asked Questions

FAQPage Schema
How to install BountyForge?โ–ผ

Run `npx skills add Gabson0x/bountyforge --all -g -y` in your terminal to install the skill globally.

What does BountyForge actually test?โ–ผ

It hunts vulnerabilities across web apps, APIs, and smart contracts on EVM, Solana, Move, and TRON, covering IDOR, SSRF, XSS, auth bypass, race conditions, and economic attacks.

Can BountyForge write bug bounty reports?โ–ผ

Yes. It formats confirmed findings into submission-ready reports for HackerOne, Bugcrowd, Intigriti, and Immunefi, complete with CVSS 3.1 scoring.

Does BountyForge work with Claude Code?โ–ผ

Yes. It runs as a standard skill in Claude Code and can orchestrate local tools like nmap, sqlmap, and ffuf when code execution is enabled.

How does BountyForge avoid false positives?โ–ผ

Every finding passes refutation, reachability, trigger, and impact gates plus a red-team triage review before it is promoted into a report.

Related Repositories in Software Engineering

View All in Software Engineeringโ†’