red-team

Plans and documents authorized red-team engagements with ATT&CK-aligned methodology.

30|6|Updated Feb 2, 2026
One-click install
npx skills add https://github.com/geekatron/jerry --skill red-team
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team
Source: https://github.com/geekatron/jerry/tree/main/skills/red-team
Command: npx skills add https://github.com/geekatron/jerry --skill red-team

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Offensive security programs often lack standardized, governance-backed guidance for planning, executing, and documenting red-team engagements. This skill provides a comprehensive, methodology-driven framework to ensure scoped, authorized, and auditable red-team activities that align with professional standards and organizational policies.

Core Features & Use Cases

  • PTES/OSSTMM/NIST-aligned engagement planning and scope governance to prevent scope creep and ensure compliance.
  • Coordination across 공격 surface discovery, vulnerability assessment, exploitation planning, and engagement reporting with integrated cross-skill workflows.
  • Output-quality controls including evidence management, risk articulation, and executive-friendly reporting for stakeholders.

Quick Start

Define a new red-team engagement scope using the standard lead process.

Frequently Asked Questions about red-team

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I plan a red-team engagement that stays within an authorized scope?

A structured red-team engagement aligns with PTES and NIST methodologies to enforce scope authorization, govern offensive security activities, and prevent scope creep while maintaining auditable compliance throughout the operation.

What is ATT&CK-aligned technique usage in offensive security operations?

ATT&CK-aligned technique usage maps offensive security exploitation methods to the MITRE ATT&CK framework during red-team engagements, ensuring structured vulnerability analysis and evidence-heavy reporting within approved operational scopes.

How do I document red-team engagement reports for executive stakeholders?

Red-team engagement reports for executive stakeholders require evidence-heavy output quality controls, clear risk articulation, and structured methodology-driven documentation to translate technical exploitation findings into governance-backed executive summaries.

Can I use this for penetration testing across full attack surface discovery?

Yes, this methodology-driven framework coordinates penetration testing across attack surface discovery, vulnerability assessment, and exploitation planning, integrating cross-skill workflows to maintain scope authorization and governance throughout the offensive security engagement.

Do I need formal scope authorization before starting a red-team engagement?

Yes, formal scope authorization is a strict requirement before starting any red-team engagement, ensuring all reconnaissance, vulnerability analysis, and exploitation methodology activities remain governed, auditable, and compliant with organizational policies.