penetration-testing

Guide authorized penetration testing through reconnaissance, scanning, exploitation, and reporting phases.

46|4|Updated Jan 27, 2026
One-click install
npx skills add https://github.com/BagelHole/DevOps-Security-Agent-Skills --skill penetration-testing-bagelhole
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: penetration-testing
Source: https://github.com/BagelHole/DevOps-Security-Agent-Skills/tree/main/security/operations/penetration-testing
Command: npx skills add https://github.com/BagelHole/DevOps-Security-Agent-Skills --skill penetration-testing-bagelhole

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill addresses the need to proactively identify and validate security vulnerabilities within systems and networks before malicious actors can exploit them.

Core Features & Use Cases

  • Systematic Security Assessment: Guides users through the standard phases of penetration testing, from reconnaissance to reporting.
  • Vulnerability Identification: Employs various scanning and testing techniques to uncover weaknesses.
  • Use Case: A security team can use this skill to perform a scheduled security audit of a new web application, ensuring all critical vulnerabilities are identified and addressed before deployment.

Quick Start

Initiate a penetration test against example.com by performing reconnaissance and scanning.

Frequently Asked Questions about penetration-testing

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I conduct a penetration test to identify system vulnerabilities?

To conduct a penetration test, you systematically guide the process through reconnaissance, scanning, exploitation, and reporting phases to identify and validate system vulnerabilities before deployment.

What is ethical hacking and when do I need a security assessment?

Ethical hacking through security assessments is needed to proactively identify and validate security vulnerabilities within systems and networks before malicious actors can exploit them.

Can I use this to perform a security audit of a new web application?

Yes, you can use this to perform a scheduled security audit of a new web application, ensuring all critical vulnerabilities are identified and addressed before deployment.

What are the standard phases of a penetration testing workflow?

The standard phases of a penetration testing workflow include reconnaissance, scanning, exploitation, and reporting, which collectively support the validation of security controls.

Do I need defined rules of engagement before starting reconnaissance and scanning?

Yes, authorized penetration testing requires strict adherence to defined rules of engagement, including specific scope and testing windows, before initiating any reconnaissance or scanning activities.