bug-bounty

Automate end-to-end bug bounty workflows from recon through reporting.

Updated May 31, 2026
One-click install
npx skills add https://github.com/grivera82/pi-bughunter --skill bug-bounty-grivera82
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: bug-bounty
Source: https://github.com/grivera82/pi-bughunter/tree/main/skills/bug-bounty
Command: npx skills add https://github.com/grivera82/pi-bughunter --skill bug-bounty-grivera82

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill automates an end-to-end bug bounty workflow, guiding recon, learning, hunting, validation, and reporting to streamline authorized vulnerability research and documentation.

Core Features & Use Cases

  • Recon orchestration and scope management for subdomain enumeration, asset discovery, threat modeling, and engagement planning.
  • Structured hunting and validation workflows including the 7-Question Gate and A->B/C chain methodology to maximize impact.
  • Template-driven reporting and evidence hygiene to produce submission-ready results with audit trails.

Quick Start

Launch the bug bounty skill and start a new engagement folder with pi-hunt.

Frequently Asked Questions about bug-bounty

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate bug bounty recon and vulnerability reporting workflows?▼

Bug bounty workflow automation streamlines authorized vulnerability research by guiding recon, hunting, validation, and reporting. It provides structured recon orchestration, threat modeling, and template-driven reporting to produce submission-ready documentation with audit trails.

What is the A->B chain methodology for bug bounty vulnerability validation?▼

The A->B chain methodology is a structured hunting and validation workflow that maximizes vulnerability impact by chaining security findings logically. It works alongside the 7-Question Gate process to ensure proper validation and evidence hygiene before report submission.

How do I create submission-ready bug bounty reports with evidence hygiene?▼

Template-driven reporting produces submission-ready bug bounty reports by enforcing evidence hygiene and maintaining audit trails throughout the engagement. The framework automates evidence collection and structures documentation to meet platform submission requirements.

Can I use this bug bounty framework for enterprise apps and cloud services?▼

This bug bounty framework supports authorized engagements against enterprise apps, cloud services, and web platforms. It manages multiple engagement targets with modular, reusable components for recon and vulnerability hunting across diverse environments.

What is the 7-Question Gate process in bug bounty hunting?▼

The 7-Question Gate is a structured validation workflow in bug bounty hunting that ensures vulnerabilities meet quality standards before reporting. It serves as a functional requirement checkpoint for gate validation within the overall hunting methodology.

How do I manage scope and subdomain enumeration for multiple bug bounty targets?▼

Recon orchestration manages scope and subdomain enumeration across multiple engagement targets through automated asset discovery and threat modeling. The modular framework provides reusable components for planning and executing structured reconnaissance operations.