recon-for-sec

Route reconnaissance and methodology planning for a new security target.

120|8|Updated Jun 2, 2026
One-click install
npx skills add https://github.com/Prohao42/aimy-sikll --skill recon-for-sec-prohao42
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: recon-for-sec
Source: https://github.com/Prohao42/aimy-sikll/tree/main/ai-mian/hack-skills/skills/recon-for-sec
Command: npx skills add https://github.com/Prohao42/aimy-sikll --skill recon-for-sec-prohao42

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Entry P1 category router for reconnaissance and methodology. Use when mapping scope, discovering assets, fingerprinting technology, building endpoint inventory, and choosing the first high-value security testing path.

Core Features & Use Cases

  • Structured Reconnaissance Routing: maps scope, assets, and tech fingerprinting to plan testing routes.
  • Asset Discovery & Inventory: builds an initial endpoint inventory for targeted testing.
  • Flow to Downstream Skills: routes to api-sec, auth-sec, injection-checking, or business-logic-vuln for next steps.

Quick Start

Input a new target to initialize the Recon and Methodology Router and generate the initial testing plan.

Frequently Asked Questions about recon-for-sec

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I plan reconnaissance methodology for a new security testing target?

Reconnaissance methodology planning maps scope, discovers assets, and fingerprints technology to choose the first high-value security testing path for a new target.

What is the best way to build an endpoint inventory during asset discovery?

Asset discovery for endpoint inventory involves mapping scope and fingerprinting technology to build an initial endpoint inventory for targeted security testing.

How do I route security testing after completing reconnaissance and threat modeling?

Reconnaissance routing directs completed threat modeling to downstream skills like api-sec, auth-sec, injection-checking, or business-logic-vuln for next steps.

Does this reconnaissance routing require any specific dependencies or components?

This reconnaissance routing requires no specific dependencies or components, functioning as an entry router to map scope and plan security testing routes.

Can I use this for technology fingerprinting and scoping early-stage security testing?

Technology fingerprinting and scoping are supported for early-stage security testing, mapping assets to generate an initial testing plan and route to downstream skills.

When should I use a structured reconnaissance router instead of direct vulnerability scanning?

Use a structured reconnaissance router when mapping scope, discovering assets, or building endpoint inventory before selecting a high-value testing path for vulnerability scanning.