recon-solar-installers

Scan solar installer domains for exposed endpoints and API keys.

1.1k|191|Updated Jun 24, 2026
One-click install
npx skills add https://github.com/uphiago/recon-skills --skill recon-solar-installers
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: recon-solar-installers
Source: https://github.com/uphiago/recon-skills/tree/main/redteam/recon-solar-installers
Command: npx skills add https://github.com/uphiago/recon-skills --skill recon-solar-installers

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Solar panel installer and renewable energy company websites often have under-secured high-value assets like financing tools, customer portals, and energy monitoring integrations, making them prime targets for data theft and compromise during authorized security assessments.

Core Features & Use Cases

  • Sector-specific domain discovery: Uses solar industry naming patterns to find all associated domains for a target company.
  • High-value endpoint scanning: Checks for common solar-specific paths like financing calculators, tax credit forms, and referral portals that often have weak security.
  • Sensitive data exposure detection: Finds exposed energy platform API keys (Enphase, SolarEdge, Tesla) and WordPress misconfigurations that leak customer data.
  • Use Case: A penetration tester targeting a solar installation company can use this skill to quickly locate exposed customer loan application data and unsecured energy monitoring API keys in minutes.

Quick Start

Use the recon-solar-installers skill to perform a full sector-specific recon scan on a target solar company domain to identify exposed financing endpoints, energy API keys, and WordPress security flaws.

Frequently Asked Questions about recon-solar-installers

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I find exposed energy platform API keys on solar installer websites?

To find exposed energy platform API keys on solar installer websites, you can perform a sector-focused reconnaissance scan that detects unsecured SolarEdge, Enphase, and Tesla energy monitoring integrations leaking sensitive customer data.

What is the best way to scan solar company domains for financing endpoint vulnerabilities?

The best way to scan solar company domains for financing endpoint vulnerabilities is using sector-specific reconnaissance that targets high-sensitivity assets like financing calculators, tax credit forms, and customer referral portals with weak security controls.

How does domain discovery work for finding associated solar industry domains?

Domain discovery for finding associated solar industry domains works by applying solar industry naming patterns to identify all related domains for a target company, ensuring comprehensive attack surface coverage during red team engagements.

Can I detect WordPress security misconfigurations on renewable energy company sites?

Yes, you can detect WordPress security misconfigurations on renewable energy company sites by running a reconnaissance scan that checks for WordPress configuration flaws leaking customer loan application data and other sensitive information.

When do I need sector-focused reconnaissance for authorized penetration testing?

You need sector-focused reconnaissance for authorized penetration testing when targeting solar panel installation companies with high-value assets like customer portals and energy monitoring integrations that require prioritized vulnerability identification.