bb-methodology

Orchestrate bug bounty hunting through a five-phase reconnaissance-to-reporting workflow.

13|2|Updated Jun 1, 2026
One-click install
npx skills add https://github.com/pdparchitect/rook --skill bb-methodology-pdparchitect
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: bb-methodology
Source: https://github.com/pdparchitect/rook/tree/main/skills/bb-methodology
Command: npx skills add https://github.com/pdparchitect/rook --skill bb-methodology-pdparchitect

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill solves the problem of aimless hunting by providing a structured, non-linear 5-phase workflow that ensures every action is goal-oriented and evidence-based.

Core Features & Use Cases

  • 5-Phase Workflow: Guides you through Recon, Mapping, Discovery, Proof, and Reporting.
  • Critical Thinking Framework: Teaches you to reverse-engineer developer psychology and perform What-If experiments to find logic flaws.
  • Discipline Gates: Includes strict validation rules to prevent false positives and ensure findings are high-impact and reproducible.

Quick Start

Initiate a new bug bounty session by asking the skill to guide you through the initial mode confirmation and goal definition process.

Frequently Asked Questions about bb-methodology

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What is a structured methodology for bug bounty hunting and security research?

A structured bug bounty hunting methodology provides a non-linear 5-phase workflow covering reconnaissance, mapping, vulnerability discovery, proof-of-concept escalation, and professional report validation.

How do I prevent false positives during vulnerability assessment and exploit development?

Prevent false positives in vulnerability assessment by enforcing strict discipline gates and statistical validation rules, ensuring all findings are accurate, high-impact, and reproducible before submission.

How do I start a bug bounty session to find logic flaws through reconnaissance?

Start a bug bounty session by defining your goals and entering an initial reconnaissance mode, then apply critical thinking frameworks to reverse-engineer developer psychology and perform What-If experiments.

Can I use this bug bounty workflow for professional pentesting report submission?

Yes, you can use this workflow for professional pentesting report submission because it orchestrates the entire lifecycle and enforces quality gates to ensure findings are validated and ready for submission.

What is the best way to approach non-linear vulnerability discovery in pentesting?

The best way to approach non-linear vulnerability discovery is using a goal-oriented, evidence-based workflow that integrates critical thinking to find logic flaws rather than following a rigid linear checklist.