bugcrowd-reporting

Identify Bugcrowd reporting patterns for VRT mapping, severity requests, and triage rebuttals.

Updated Jun 5, 2026
One-click install
npx skills add https://github.com/sseshachala/Claude-BugHunter-archive --skill bugcrowd-reporting-sseshachala
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: bugcrowd-reporting
Source: https://github.com/sseshachala/Claude-BugHunter-archive/tree/main/skills/bugcrowd-reporting
Command: npx skills add https://github.com/sseshachala/Claude-BugHunter-archive --skill bugcrowd-reporting-sseshachala

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Bugcrowd-specific reporting tactics complementing the generic report-writing: it provides VRT category selection, severity-request framing, OOS rebuttals, and cross-reference patterns to improve triage outcomes and focus areas alignment.

Core Features & Use Cases

  • Program-specific Bugcrowd reporting patterns that improve VRT mapping accuracy and triage decisions.
  • Templates for severity overrides and "Severity request" sections to ensure consistent impact communication.
  • Cross-reference guidance for chained findings and QA-vs-production targeting notes.
  • Guidance on researcher hygiene and workflow integration with other skills like report-writing and triage-validation.

Quick Start

Submit a Bugcrowd report with accurate VRT mapping, a severity-request paragraph, and cross-referenced chain notes.

Frequently Asked Questions about bugcrowd-reporting

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I map Bugcrowd vulnerabilities to the correct VRT category?

To map Bugcrowd vulnerabilities accurately, identify the specific Bugcrowd VRT category that matches the root cause and impact of your finding. This ensures triage processes the submission under the correct focus area and severity baseline.

How do I request a severity override when Bugcrowd triage underrates my finding?

To request a severity override during Bugcrowd triage, insert an explicit severity-request paragraph directly in the report body. Frame the request by detailing the full impact and chaining potential to justify the higher rating.

What is the best way to report chained findings on Bugcrowd?

The best way to report chained findings on Bugcrowd is to use cross-reference templates that link multiple vulnerabilities together. Explicitly document how the combined impact escalates the overall severity beyond the individual flaws.

How do I rebut an out of scope (OOS) triage decision on Bugcrowd?

To rebut an out of scope (OOS) triage decision, provide a robust response demonstrating how the vulnerability falls within the program's scope. Address QA versus production target considerations to clarify the true impact boundary.

Does Bugcrowd reporting require special formatting for QA versus production targets?

Bugcrowd reporting requires explicit notes when targeting QA versus production environments. Clarifying the target environment ensures triage accurately assesses the real-world impact and applies the correct scope considerations.