Prohao42Prohao42Communityยท50 Agent Skills Included

aimy-sikll

Automated penetration testing, vulnerability detection, and exploit playbooks

Automates web and API penetration testing with 65 modules covering recon, injection, auth bypass, and business logic flaws. Includes 80+ expert playbooks for SQL injection, XSS, SSRF, JWT attacks, cloud metadata abuse, and privilege escalation. Eliminates manual payload crafting and repetitive scanning with structured JSON output ready for direct agent execution.
npx skills add Prohao42/aimy-sikll --all -g -y

All Skills in This Repository (50)

Pure Emerald Level Indicators
๐Ÿ“ฆ In Repo
Prohao42Prohao42

file-access-vuln

Identify path traversal and local file inclusion risks in file access and upload workflows.

Community
Intermediate
๐Ÿ“ฆ In Repo
Prohao42Prohao42

dependency-confusion

Map internal package names to public registries to assess dependency-confusion risks.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

injection-checking

Route attacker-controlled input to specialized injection-testing sub-skills.

Community
Intermediate
๐Ÿ“ฆ In Repo
Prohao42Prohao42

prototype-pollution

Identify prototype pollution attack vectors in JavaScript applications via JSON and query strings.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

saml-sso-assertion-attacks

Validate SAML SSO assertions for signature coverage, audience constraints, and issuer trust.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

api-sec

Route API security testing to relevant sub-skills via the Skill Map.

Community
Intermediate
๐Ÿ“ฆ In Repo
Prohao42Prohao42

format-string-exploitation

Identify and exploit format string vulnerabilities to read or write process memory.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

http-host-header-attacks

Guide HTTP Host header injection and routing abuse security testing.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

steganography-techniques

Detect and extract hidden data from images, audio, text, and files.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

csv-formula-injection

Detect and mitigate spreadsheet formula injection risks in CSV workflows.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

websocket-security

Assess WebSocket security gaps in live ws/wss endpoints.

Community
Advanced
๐Ÿ“ฆ In Repo
Prohao42Prohao42

graphql-and-hidden-parameters

Probe GraphQL schemas and detect hidden fields affecting access control.

Community
Intermediate

Frequently Asked Questions

FAQPage Schema
How to install aimy-sikll?โ–ผ

Run `npx skills add Prohao42/aimy-sikll --all -g -y` in your terminal to install all skills in this suite globally.

What vulnerabilities can aimy-sikll detect?โ–ผ

It covers SQL injection, XSS, SSRF, command injection, SSTI, NoSQL injection, JWT attacks, IDOR, business logic flaws, and file upload issues across web apps and APIs.

Does aimy-sikll work with Claude Code and Cursor?โ–ผ

Yes. All skills follow the universal SKILL.md standard and run in Claude Code, Cursor, and other compatible agents with structured JSON output.

Can I run a full automated pentest with one command?โ–ผ

Yes. The `auto` command chains crawling, vulnerability detection, weaponization, and report generation into a single workflow against your authorized target.

Is aimy-sikll legal to use?โ–ผ

Only use it on systems you own or have written authorization to test, such as bug bounty programs. Unauthorized scanning or exploitation is illegal.

Related Repositories in Software Engineering

View All in Software Engineeringโ†’