forefyforefyCommunityยท2 Agent Skills Included

.context

Security audits for smart contracts, web apps, and cloud

Runs full security audits of smart contracts, web applications, cloud infrastructure, and endpoints using proven testing methodologies. Detects real vulnerabilities like SSRF, JWT forgery, broken access control, request smuggling, and exposed cloud buckets without manual scanner setup. Produces triaged, severity-ranked audit reports and bug-bounty submissions so researchers find and file issues faster.
npx skills add forefy/.context --all -g -y
Available:

Tells the agent to keep all security-review instruction files consistent in style, update tables of contents after edits, and never use emojis or comments in generated content.

All Skills in This Repository (2)

Pure Emerald Level Indicators

Frequently Asked Questions

FAQPage Schema
How to install .context?โ–ผ

Run `npx skills add forefy/.context --all -g -y` in your terminal to install all security auditing skills globally.

How to audit a smart contract with AI?โ–ผ

Install the suite, then ask your agent to audit the contract; the smart-contract-audit skill runs multi-expert analysis for Solidity, Vyper, Anchor, TON, and Move with language-specific vulnerability checks.

What security testing does .context cover?โ–ผ

It covers web app pentesting (SSRF, JWT attacks, IDOR, request smuggling), smart contract audits, cloud bucket exposure, endpoint threat hunting, blockchain forensics, and bug-bounty reporting.

Does .context work with Claude Code and Copilot?โ–ผ

Yes. All skills follow the open Agent Skills format and run in Claude Code, Copilot, Gemini, and Codex.

Can I file a HackerOne report automatically?โ–ผ

Yes. The hackerone-report skill drafts the writeup, builds a PoC package, and fills the submission form, leaving only login and the final submit click to you.

Related Repositories in Software Engineering

View All in Software Engineeringโ†’