pentest-checklist

Generate penetration testing checklists for scoping, monitoring, remediation, and cleanup.

Updated May 27, 2026
One-click install
npx skills add https://github.com/hoanghn61/.agents --skill pentest-checklist-hoanghn61
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: pentest-checklist
Source: https://github.com/hoanghn61/.agents/tree/main/skills
Command: npx skills add https://github.com/hoanghn61/.agents --skill pentest-checklist-hoanghn61

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

The pentest-checklist Skill reduces the risk of overlooked steps by providing a structured, end-to-end checklist for planning, executing, and closing a penetration test.

Core Features & Use Cases

  • Scope and authorization readiness: Ensures objectives, scope boundaries, constraints, and approvals are clearly defined before testing.
  • Operational safety & monitoring: Provides guidance for preparing a safe test environment, enabling logging/monitoring, and managing test impact.
  • Remediation and cleanup discipline: Helps teams reserve remediation time, verify fixes, and remove test artifacts afterward.

Quick Start

Use the pentest-checklist Skill to produce a pre-test and post-test checklist for your authorized engagement plan.

Frequently Asked Questions about pentest-checklist

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What is a penetration testing checklist and when do I need one?

A penetration testing checklist structures scoping, environment preparation, monitoring, remediation, and cleanup phases. You need one for authorized engagements like external, internal, web application, and social engineering tests to ensure compliance-ready documentation and prevent overlooked operational steps.

How do I plan a penetration test scope and define authorization boundaries?

Plan a penetration test scope by defining clear objectives, scope boundaries, constraints, and approvals before testing begins. Structuring scope management ensures engagement readiness, establishes test stop conditions, and produces compliance-ready documentation for responsible execution.

How do I verify remediation and perform cleanup after a pentest?

Verify remediation by reserving time post-test to validate fixes and remove test artifacts. Remediation verification disciplines the closing phase by checking applied fixes against the original findings and cleaning up the environment.

Does this pentest planning checklist support red team and social engineering engagements?

This pentest planning checklist supports red team and social engineering engagements alongside external, internal, and web application tests. It structures phases, outputs, constraints, and stop conditions for responsible execution across these varied engagement types.

How do I enable security monitoring during a penetration test?

Enable security monitoring during a penetration test by preparing a safe test environment and configuring logging before execution. Operational safety guidance ensures test impact is managed while maintaining compliance-ready documentation throughout the engagement.