What problem does it solve? Penetration testers often produce technically strong findings that get lost in poorly structured reports, leaving clients unable to understand risk, reproduce issues, or prioritize fixes. This Skill provides a complete professional methodology for authoring engagement deliverables that executives can read and developers can act on. ## Core Features & Use Cases - Structured Finding Templates: Standardized format covering severity, affected scope, reproduction steps, impact, remediation, and retest notes, with CVSS v3.1/v4.0 and OWASP risk scoring guidance. - Executive Summary & Risk Communication: Risk-led narrative techniques for non-technical readers, severity heatmaps, attack chain narratives, and strategic programmatic recommendations. - Evidence Hygiene & Deliverables: Timestamped evidence logging, credential redaction rules, chain-of-custody practices, and multi-format output (PDF, DOCX, HTML, JSON for SIEM ingestion) generated from a single Markdown source via Pandoc. - Use Case: At the end of a red team engagement, use this Skill to convert raw findings and evidence logs into a client-ready report with an executive summary, scored findings, and a retest tracking table. ## Quick Start Use the offensive-reporting skill to draft a penetration test report from my engagement findings, including an executive summary, CVSS-scored technical findings, and a retest plan.