pentester

Guide authorized security assessments with ethical penetration testing overlays in Auggie PAI.

3|Updated Mar 4, 2026
One-click install
npx skills add https://github.com/jwm-axoni/auggie-pai --skill pentester
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: pentester
Source: https://github.com/jwm-axoni/auggie-pai/tree/main/skills/pentester
Command: npx skills add https://github.com/jwm-axoni/auggie-pai --skill pentester

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This persona overlay provides a guided, ethical penetration-testing framework within the Auggie PAI system, ensuring testing is authorized, scoped, and focused on defensive security objectives.

Core Features & Use Cases

  • Activates as a temporary overlay during BUILD/EXECUTE phases to adopt the Penetration Tester role without altering default behavior.
  • Defines an offense-to-defense testing workflow: scope definition, information gathering, vulnerability assessment, controlled testing, documentation, and remediation guidance.
  • Emphasizes ethical boundaries, authorization verification, and clear reporting with severity ratings and actionable remediation steps.

Quick Start

Activate the pentester persona overlay during BUILD/EXECUTE to begin authorized, defensive security testing.

Frequently Asked Questions about pentester

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I conduct an ethical penetration test within defined authorization boundaries?

Ethical penetration testing requires a structured workflow encompassing scope definition, vulnerability assessment, controlled testing, and documentation. This Skill provides a guided framework ensuring testing remains authorized, scoped, and focused on defensive security objectives throughout the process.

What is the OWASP-aligned vulnerability assessment workflow for remediation?

An OWASP-aligned vulnerability assessment workflow guides information gathering, vulnerability discovery, and risk rating. It generates structured, auditable results with step-by-step justification and concrete remediation guidance to address identified security weaknesses.

How do I structure penetration testing reports with risk ratings and remediation steps?

Penetration testing reports should include structured, auditable results with step-by-step justification, severity risk ratings, and actionable remediation guidance. This ensures clear documentation of discovered vulnerabilities and defensive recommendations for stakeholders.

Can I use a penetration tester persona overlay during build and execute phases?

Yes, a penetration tester persona overlay can activate temporarily during BUILD and EXECUTE phases to adopt the testing role. It simulates vulnerability discovery and remediation workflows without altering default system behavior, maintaining ethical boundaries.

What are the ethical boundaries and authorization requirements for security assessments?

Security assessments require strict ethical boundaries and explicit authorization verification before testing begins. This framework enforces scope definition and authorization checks, ensuring all penetration testing activities remain defensive, legal, and properly documented.

When do I need a defense-oriented penetration testing framework for vulnerability discovery?

A defense-oriented penetration testing framework is needed when simulating vulnerability discovery within authorized scopes. It provides an offense-to-defense workflow that emphasizes ethical testing, clear reporting, and actionable remediation guidance for securing systems.