red-team-planner

Design scoped red team campaigns with rules of engagement documents.

3|3|Updated Mar 8, 2026
One-click install
npx skills add https://github.com/jaskaranhundal/usap-skills --skill red-team-planner
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-planner
Source: https://github.com/jaskaranhundal/usap-skills/tree/main/red-team/red-team-planner
Command: npx skills add https://github.com/jaskaranhundal/usap-skills --skill red-team-planner

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

This Skill streamlines the planning and scoping of red team engagements, ensuring clear objectives, defined rules of engagement, and adherence to authorization boundaries.

Core Features & Use Cases

  • Campaign Planning: Design comprehensive red team campaigns with defined objectives and attack paths.
  • Rules of Engagement: Generate and enforce strict rules of engagement, including scope and authorization verification.
  • Use Case: A CISO needs to plan a new red team exercise. They use this Skill to define the target scope, identify crown jewel assets, map potential attack paths, and generate a formal rules of engagement document for executive approval.

Quick Start

Use the red-team-planner skill to produce a campaign plan document for a simulated phishing engagement.

Frequently Asked Questions about red-team-planner

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I plan a red team engagement with defined rules of engagement?

Red team engagement planning is streamlined by defining target scope, identifying crown jewel assets, mapping attack paths, and generating a formal rules of engagement document for executive approval.

What is adversary simulation planning and how does it map to MITRE ATT&CK?

Adversary simulation planning designs objective-driven campaigns by defining target prioritization and campaign blueprints, mapping potential attack paths directly to MITRE ATT&CK techniques.

Can I use this to generate a campaign blueprint for a simulated phishing engagement?

Yes, you can produce a comprehensive campaign plan document for a simulated phishing engagement by defining objectives, scoping targets, and establishing authorization boundaries.

Does this skill execute attacks or only plan the red team campaign?

This skill operates strictly as a planning intelligence rather than an execution engine, feeding downstream execution agents with campaign blueprints only upon human approval.

How do I enforce authorization boundaries during red team scoping?

Authorization boundaries are enforced by generating and applying strict rules of engagement that include scope definitions and explicit authorization verification before campaign execution.

What are the limitations of using a planning intelligence for adversary simulation?

The primary limitation is that it cannot execute attacks; it designs scoped campaign blueprints and maps attack paths to MITRE ATT&CK, requiring separate execution agents to carry out the simulation.