recon-fire-restoration

Identify security vulnerabilities in restoration company websites via reconnaissance.

1.1k|191|Updated Jun 24, 2026
One-click install
npx skills add https://github.com/uphiago/recon-skills --skill recon-fire-restoration
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: recon-fire-restoration
Source: https://github.com/uphiago/recon-skills/tree/main/redteam/recon-fire-restoration
Command: npx skills add https://github.com/uphiago/recon-skills --skill recon-fire-restoration

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill addresses the challenge of conducting targeted reconnaissance on fire damage, water damage, mold remediation, and disaster cleanup company websites, which frequently handle sensitive customer personally identifiable information (PII) including property addresses, insurance claim details, and damage photos via emergency intake forms, making them high-value targets for security assessment.

Core Features & Use Cases

  • Sector-specific domain discovery: Uses tailored Google dorks and certificate transparency log queries to locate restoration company web assets, including franchise locations and independent contractor sites.
  • CMS and configuration auditing: Checks for common WordPress deployments, exposed debug logs containing intake form PII, sensitive configuration files, and outdated page builder plugins.
  • Attack chain mapping: Identifies high-impact vulnerability chains specific to the restoration sector, including CORS credential reflection, photo gallery EXIF data leaks, and franchise portal IDOR vulnerabilities. Use case: A penetration tester scoping a Servpro franchise engagement can use this skill to quickly map the target's attack surface, locate exposed customer data, and prioritize remediation for sector-specific weaknesses.

Quick Start

Use the recon-fire-restoration skill to perform targeted reconnaissance on a fire damage restoration company website and identify exposed customer PII and common vulnerability chains.

Frequently Asked Questions about recon-fire-restoration

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I find exposed PII on restoration company websites during a pentest?

To find exposed PII on restoration company websites, you audit emergency intake forms and debug logs for property addresses, insurance claim details, and damage photos. This reconnaissance process targets fire and water damage services using tailored Google dorks and certificate transparency log queries.

What vulnerabilities are common in WordPress restoration franchise websites?

Common vulnerabilities in WordPress restoration franchise websites include CORS credential reflection, photo gallery EXIF data leaks, and franchise portal IDOR vulnerabilities. Attack chain mapping also identifies exposed configuration files and outdated page builder plugins.

Can I use this to test ServiceTitan and Housecall Pro tech stacks?

Yes, you can test ServiceTitan and Housecall Pro tech stacks used by restoration sector organizations. This reconnaissance process audits CMS configurations and maps attack chains specific to disaster cleanup companies using these platforms.

How do I discover domain assets for independent disaster cleanup contractors?

You discover domain assets for independent disaster cleanup contractors by using sector-specific Google dorks and certificate transparency log queries. This domain discovery process locates franchise locations and independent contractor sites for security assessment.

What is the best way to map attack chains for mold remediation company websites?

The best way to map attack chains for mold remediation company websites is to identify high-impact vulnerability chains specific to the restoration sector. This includes detecting sensitive configuration files, CORS credential reflection, and photo gallery EXIF data leaks.

Are there limitations when scoping reconnaissance for restoration sector organizations?

Reconnaissance for restoration sector organizations is limited to authorized penetration testing engagements targeting fire damage, water damage, mold remediation, and disaster cleanup companies. This approach focuses on sector-specific weaknesses and does not apply to general web assets.