What problem does it solve?
This Skill automates the safe configuration, execution, and validation of vulnerability scans against authorised client targets, reducing manual setup and ensuring legal compliance while producing machine-readable outputs for downstream processing.
Core Features & Use Cases
- Scan orchestration: Selects and configures tool chains (httpx, webanalyze, subfinder, dnsx, Nuclei, Nmap) based on target profiles.
- Consent enforcement: Performs a mandatory legal compliance gate that verifies authorisation files and scan scope before any Layer 2 activity.
- Structured outputs: Emits standardized raw-output.json files with findings, metadata, and tool provenance for automated ingestion by the Finding Interpreter.
- Use Case: Run passive reconnaissance on a prospect domain, enrich subdomains via CT logs, and produce a validated JSON report for triage.
Quick Start
Run a Layer 1 passive reconnaissance scan for restaurant-nordlys.dk and produce the structured raw JSON output for review.