bb-methodology

Orchestrate bug bounty hunts with a non-linear 5-phase workflow.

Updated Apr 8, 2026
One-click install
npx skills add https://github.com/ajtazer/briyani-hunter --skill bb-methodology-ajtazer
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: bb-methodology
Source: https://github.com/ajtazer/briyani-hunter/tree/main/.gemini/skills/bb-methodology
Command: npx skills add https://github.com/ajtazer/briyani-hunter --skill bb-methodology-ajtazer

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Orchestrates bug bounty hunts by applying a structured, non-linear 5-phase workflow and a rigorous mindset to keep researchers focused and productive.

Core Features & Use Cases

  • Non-linear 5-Phase Workflow: Navigate between RECON, MAPPING, VULNERABILITY DISCOVERY, PROVE & ESCALATE, and VALIDATE & REPORT with flexible phase transitions.
  • Mindset & Decision Framework: Integrates developer psychology, anomaly detection, and What-If experiments to improve precision and reduce scope creep.
  • Phase-based Routing: Routes to other skills based on the current hunting phase and supports quick pivots when goals or scopes change.
  • Use Case: Start a session, switch targets, or ask "what should I do next" to get guided actions aligned with your current phase.
  • Guardrails & Escalation: Provides gates, checks, and escalation paths to maximize impact while maintaining safety.

Quick Start

Start the session by loading the 5-phase methodology to guide you through target selection, recon, mapping, discovery, proving, and reporting.

Frequently Asked Questions about bb-methodology

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I structure a bug bounty hunt to stay focused and avoid scope creep?

Structure a bug bounty hunt by applying a non-linear 5-phase workflow: RECON, MAPPING, VULNERABILITY DISCOVERY, PROVE & ESCALATE, and VALIDATE & REPORT. This methodology integrates decision-gating and developer psychology to maintain focus and ensure consistent, high-impact results.

What is a non-linear workflow for bug bounty hunting?

A non-linear workflow for bug bounty hunting allows flexible phase transitions between recon, mapping, vulnerability discovery, proving, and reporting. It uses robust phase-mapping and decision-gating to support quick pivots when targets or scopes change mid-hunt.

How do I decide what to do next during a bug bounty session?

To decide what to do next during a bug bounty session, ask for guidance to trigger phase-based routing. The methodology applies anomaly detection and What-If experiments to route you to aligned actions based on your current hunting phase.

Can I switch targets mid-hunt without losing my workflow progress?

Yes, you can switch targets mid-hunt without losing progress. The bug bounty methodology supports quick pivots when goals or scopes change, applying decision-gating and phase transitions to realign your session with the new target.

What's the best way to escalate vulnerabilities during a bug bounty hunt?

The best way to escalate vulnerabilities during a bug bounty hunt is to enter the PROVE & ESCALATE phase. This methodology provides specific gates, checks, and escalation paths to maximize impact while maintaining safety before validation.