communitytools
Autonomous penetration testing, bug bounty, and security reporting
All Skills in This Repository (5)
Pure Emerald Level Indicatorsdomain-assessment
Coordinate subdomain discovery and port scanning to build a domain attack surface inventory.
common-appsec-patterns
Coordinate subagents to identify and validate OWASP Top 10 web vulnerabilities.
web-application-pentesting
Coordinate web application penetration testing across REST APIs, SPAs, and microservices.
cve-testing
Coordinate CVE vulnerability testing across identified technology stacks and APIs.
web-application-mapping
Coordinate web-application reconnaissance to identify attack surfaces.
Frequently Asked Questions
FAQPage SchemaHow to install Community Security Tools?โผ
Run `npx skills add transilienceai/communitytools --all -g -y` in your terminal to install all skills globally.
What security testing does this suite cover?โผ
It covers the full pentest lifecycle: reconnaissance, injection, XSS, SSRF, authentication, cloud, mobile, Active Directory, APIs, and AI/LLM threat testing, plus DFIR and source-code scanning.
Can it run a full pentest automatically?โผ
Yes. The pentest-engagement skill takes a scope file or target list, expands the attack surface, tests every OWASP class, validates each finding blindly, and gates completion on full coverage.
Does it work with HackerOne and HackTheBox?โผ
Yes. Dedicated skills parse HackerOne scope CSVs and generate submission-ready reports, and automate HackTheBox login, VPN setup, and challenge solving.
Does it produce client-ready reports?โผ
Yes. It generates branded PDF reports with CVSS scoring, evidence, and remediation roadmaps, plus PCI SSS compliance gap assessments.
Related Repositories in Software Engineering
View All in Software Engineeringโopenclaw
Run a personal AI assistant across your devices and chat apps
superpowers
Gives coding agents a disciplined workflow from idea to merged code
react
AI agent skills for building, testing, and porting React core