auto-hunt

Automate bug bounty hunting from reconnaissance through exploitation and reporting.

Updated Jul 1, 2026
One-click install
npx skills add https://github.com/bpnrockstar/UnifiedBugHunter --skill auto-hunt
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: auto-hunt
Source: https://github.com/bpnrockstar/UnifiedBugHunter/tree/main/skills/auto-hunt
Command: npx skills add https://github.com/bpnrockstar/UnifiedBugHunter --skill auto-hunt

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires subfinder, assetfinder, nuclei, httpx, katana, waybackurls, gau, nuclei, sqlmap, TREVORspray, Foundry, dalfox, sqlmap, TREVORspray, Foundry, dalfox, nuclei, and includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

This Skill automates the entire bug bounty hunting process, from reconnaissance to reporting, ensuring comprehensive coverage with zero blind spots.

Core Features & Use Cases

  • Autonomous Operation: Runs the complete hunting pipeline autonomously, from zero to report.
  • Closed-Loop Verification: Uses a verification system that keeps digging until every finding is proven or ruled out.
  • Cross-Target Pattern Learning: Improves over time by learning from previous targets.
  • Use Case: Load this skill when you have a target but no specific direction. It will autonomously run the complete hunting pipeline, including reconnaissance, attack surface mapping, vulnerability hunting, exploitation, and reporting.

Quick Start

Load the auto-hunt skill for a target and let it run autonomously to cover all aspects of bug bounty hunting.

Frequently Asked Questions about auto-hunt

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate bug bounty reconnaissance and vulnerability hunting end to end?

Bug bounty reconnaissance and vulnerability hunting can be automated end to end by loading the auto-hunt skill, which autonomously executes the complete pipeline from initial asset discovery to final report generation.

What is closed-loop verification in autonomous vulnerability detection?

Closed-loop verification in autonomous vulnerability detection is a mechanism that continuously validates findings by digging deeper until every identified vulnerability is either fully proven or definitively ruled out.

Do I need to install subfinder, nuclei, and sqlmap before running autonomous hunting?

Yes, you need to install multiple Python libraries and tools like subfinder, nuclei, and sqlmap, as the autonomous hunting pipeline requires these dependencies for reconnaissance, vulnerability detection, and exploitation.

Can I use this autonomous hunter if I only have a target domain but no specific attack direction?

Yes, you can use this autonomous hunter with only a target domain, as it is specifically designed to run the complete hunting pipeline when you have a target but lack a specific direction.

How does cross-target pattern learning improve vulnerability detection over time?

Cross-target pattern learning improves vulnerability detection over time by analyzing and learning from previous targets, allowing the autonomous hunter to identify patterns and enhance its coverage across new attack surfaces.

What vulnerability classes are covered by autonomous full-spectrum bug bounty hunting?

Autonomous full-spectrum bug bounty hunting covers 21+ vulnerability classes across all attack surfaces, ensuring comprehensive coverage with zero blind spots from reconnaissance through exploitation.