quick

Automate time-boxed vulnerability assessments for web and API targets.

846|152|Updated Mar 13, 2026
One-click install
npx skills add https://github.com/xalgord/xalgorix --skill quick-xalgord
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: quick
Source: https://github.com/xalgord/xalgorix/tree/main/internal/tools/skills/data/scan_modes/quick
Command: npx skills add https://github.com/xalgord/xalgorix --skill quick-xalgord

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Automates a time-boxed assessment to surface high-impact vulnerabilities quickly, reducing dwell time and enabling fast remediation planning.

Core Features & Use Cases

  • Time-boxed assessment: Delivers focused testing within a defined window to maximize high-risk coverage.
  • Prioritized results: Emphasizes authentication bypass, broken access control, remote code execution, SQL injection, SSRF, and exposed secrets.
  • Use Case: Security teams can run this mode during sprint planning to identify the most dangerous issues in a target system.

Quick Start

Run a time-boxed rapid assessment on a target system to surface high-impact vulnerabilities within a defined window.

Frequently Asked Questions about quick

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate rapid vulnerability triage for web and API targets?

Automated rapid vulnerability triage applies a time-boxed assessment to surface high-severity issues like authentication bypass and SQL injection on web and API targets. This approach prioritizes critical attack surfaces and delivers deterministic outputs within a fixed time frame.

What is time-boxed security testing and when do I need it?

Time-boxed security testing is a focused assessment method that delivers high-risk vulnerability coverage within a defined window. You need it during sprint planning or when fast remediation planning is required to reduce dwell time for security teams.

Can I use automated pentesting for exposed secrets and SSRF detection?

Automated pentesting can detect exposed secrets and SSRF by prioritizing these specific high-impact vulnerabilities during a rapid triage assessment. The testing emphasizes critical attack surfaces including broken access control and authentication bypass.

Does rapid vulnerability assessment require non-destructive testing practices?

Rapid vulnerability assessment requires safe, non-destructive testing practices to ensure target systems remain stable. It applies structured guidance to safely identify critical issues like remote code execution and SQL injection without causing system damage.

What are the limitations of time-boxed vulnerability assessments?

Time-boxed vulnerability assessments are limited by their fixed time frame, focusing strictly on high-severity issues like SQL injection and exposed secrets. They prioritize rapid triage over exhaustive coverage, meaning lower-severity vulnerabilities may remain undetected.

How do I prepare a target system for high-risk vulnerability scanning?

Preparing a target system for high-risk vulnerability scanning involves defining the scope for both web and API targets. You must establish a fixed time window and ensure structured guidance is in place for safe, non-destructive testing practices.