bounty-hunter

Automate smart contract vulnerability hunting for DeFi bug bounties.

1|Updated Feb 14, 2026
One-click install
npx skills add https://github.com/Lulzx/lulz --skill bounty-hunter-lulzx
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: bounty-hunter
Source: https://github.com/Lulzx/lulz/tree/main
Command: npx skills add https://github.com/Lulzx/lulz --skill bounty-hunter-lulzx

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill streamlines the complex and time-consuming process of smart contract vulnerability hunting for bug bounties, from target selection to PoC generation and submission.

Core Features & Use Cases

  • Automated Target Selection: Identifies and ranks high-value bounty targets using public APIs.
  • Systematic Hunt Framework: Provides a structured approach to auditing, focusing on high-payout vulnerability categories.
  • PoC Generation Guidance: Offers templates and best practices for creating reproducible exploit Proofs of Concept.
  • Submission Best Practices: Guides users on crafting effective bug reports and navigating the submission process.

Quick Start

Use the bounty hunter skill to find and rank the top 5 smart contract bug bounty programs launched this month on Immunefi.

Frequently Asked Questions about bounty-hunter

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I find and rank high-value smart contract bug bounty targets?

To find high-value smart contract bug bounty targets, you can analyze public APIs from platforms like Immunefi and Sherlock to identify and automatically rank recently launched programs based on payout potential.

What is a structured methodology for DeFi vulnerability research?

A structured DeFi vulnerability research methodology provides a systematic auditing framework that prioritizes high-payout exploit categories, ensuring you focus on the most impactful smart contract security flaws first.

Do I need to know Solidity and smart contract security to hunt for DeFi exploits?

Yes, you need a solid understanding of Solidity, smart contract security principles, and DeFi protocols to effectively use this systematic approach for vulnerability research and exploit development.

What is the best way to write and submit bug bounty reports for smart contract vulnerabilities?

The best way to write and submit bug bounty reports is to follow structured submission best practices, which guide you in crafting effective bug reports and navigating the platform submission process smoothly.

Can I automate target selection for Immunefi and Sherlock bug bounties?

Yes, you can automate target selection for Immunefi and Sherlock bug bounties by leveraging public API analysis to systematize and rank active smart contract programs automatically.