pentest-orchestration

Automate web application penetration testing with specialized agents for reconnaissance, SSRF, and XSS.

Updated Apr 21, 2026
One-click install
npx skills add https://github.com/jayjpatel9717/kurukshetra --skill pentest-orchestration
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: pentest-orchestration
Source: https://github.com/jayjpatel9717/kurukshetra/tree/main/squads/pentest/agents/krishna/skills/pentest-orchestration
Command: npx skills add https://github.com/jayjpatel9717/kurukshetra --skill pentest-orchestration

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill automates the entire pentest lifecycle, from scoping to reporting, providing a thorough and efficient security assessment for web applications.

Core Features & Use Cases

  • End-to-End Orchestration: Manages the entire pentest process, from recon to final report, without human intervention.
  • Specialist Agents: Dispatches specialized agents like ARJUN for recon, BHEEM for SSRF, NAKUL for XSS, and others for specific security tasks.
  • Engagement Workflow: Follows a strict engagement workflow with 5 phases: Recon, Crawl, Testing, Validation, and Reporting.

Quick Start

Execute a full security audit on 'example.com' with the pentest-orchestration skill.

Frequently Asked Questions about pentest-orchestration

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate the full web application penetration testing lifecycle?

Automate web application penetration testing by orchestrating specialist agents across five engagement phases: Recon, Crawl, Testing, Validation, and Reporting. This coordinates the entire process from scoping to final report generation without requiring human intervention.

What is security orchestration for vulnerability identification?

Security orchestration for vulnerability identification coordinates multiple specialized agents to test web applications. It dispatches dedicated agents like ARJUN for reconnaissance, BHEEM for SSRF, and NAKUL for XSS to ensure thorough security assessments.

Can I use this pentest orchestration workflow for specific vulnerabilities like XSS and SSRF?

Yes, pentest orchestration supports testing for specific vulnerabilities like XSS and SSRF. It dispatches specialized agents such as BHEEM for SSRF and NAKUL for XSS during the dedicated Testing phase of the security assessment workflow.

How do I generate penetration testing reports automatically?

Generate penetration testing reports automatically by reaching the final Reporting phase in the engagement workflow. The orchestration process manages this automatically after completing the preceding Recon, Crawl, Testing, and Validation phases.

Does automated penetration testing require any external dependencies?

No, automated penetration testing via this orchestration requires no external dependencies. It utilizes internal scripts and references alongside its specialized agents to execute the full security assessment and reporting workflow.