bb-local-toolkit
CommunityWin bug bounties with real-impact proof.
Education & Research#ssrf#bug bounty#recon#vulnerability hunting#authorization bypass#oauth oidc#ai security testing
AuthorCarlos-Reyes-UTP
Version1.0.0
Installs0
System Documentation
What problem does it solve?
This Skill helps you run an end-to-end bug bounty workflow that turns recon and testing into only report-worthy, real-world exploitable findings.
Core Features & Use Cases
- Full Bug Bounty Pipeline: Guides Recon -> Learn -> Hunt -> Validate -> Report with explicit decision gates to prevent theoretical or low-impact results.
- Cluster Hunting & Chaining: Uses A->B signal methodology to systematically pivot from an initial bug class into higher-value exploit chains.
- Validation-First Reporting: Enforces scope checks, reproducibility, data-leak verification, CVSS 3.1 framing, and human-tone writeups with templates and checklists.
- Broad Coverage (Web + API + AI): Includes practical tactics for IDOR, SSRF, XSS, auth bypass, OAuth/OIDC chains, cloud misconfigs, race conditions, GraphQL auth gaps, and LLM/agentic AI security (prompt/indirect injection, exfil, tool RCE, ASI01-ASI10).
- Source/Tech Recon Tooling: Provides OSINT and fingerprinting guidance, plus language-specific greps for common dangerous sinks across JS/Python/PHP/Go/Ruby/Rust.
Quick Start
Use it to plan and execute a complete bug bounty run for a new target by following the Recon -> Learn -> Hunt -> Validate -> Report steps and applying the 7-Question Gate before writing anything.
Dependency Matrix
Required Modules
None requiredComponents
Standard package💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: bb-local-toolkit Download link: https://github.com/Carlos-Reyes-UTP/Desarrollo-de-Sistema-de-Ventas-Empresas-de-Moda/archive/main.zip#bb-local-toolkit Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.